Commit Graph

295 Commits

Author SHA1 Message Date
Mike Reeves
27a9edbef7 Change Firewall Pillar Structure 2022-09-20 13:20:16 -04:00
Mike Reeves
9bdb364122 Firewall Fun 2022-09-19 09:39:42 -04:00
Mike Reeves
d7585e1b3d Firewall Fun 2022-09-17 10:03:18 -04:00
Mike Reeves
4a68a5e054 Firewall Fun 2022-09-17 09:57:43 -04:00
Mike Reeves
98ae6149dc Firewall Fun 2022-09-17 09:54:20 -04:00
Mike Reeves
e717579113 Firewall Fun 2022-09-17 09:51:26 -04:00
Mike Reeves
8a26b3fa04 Firewall Fun 2022-09-17 09:47:15 -04:00
Mike Reeves
724d5d952a Firewall Fun 2022-09-17 09:46:07 -04:00
Mike Reeves
b6a1040090 Firewall Fun 2022-09-17 09:42:35 -04:00
Mike Reeves
f3056c7057 Firewall Fun 2022-09-17 09:39:49 -04:00
Mike Reeves
4b1031efa4 Firewall Fun 2022-09-17 09:34:35 -04:00
Mike Reeves
d02c6808a4 Firewall Fun 2022-09-16 13:44:54 -04:00
Mike Reeves
1c9069690f Firewall Fun 2022-09-16 13:38:07 -04:00
Mike Reeves
0eb6388ea3 Firewall Fun 2022-09-16 13:34:11 -04:00
Mike Reeves
6649ffd8b5 Firewall Fun 2022-09-16 13:33:26 -04:00
Mike Reeves
70c95c7c7b Firewall Fun 2022-09-16 13:31:23 -04:00
Mike Reeves
bc1921bd0e Firewall Fun 2022-09-16 13:30:07 -04:00
Mike Reeves
384478836a Firewall Fun 2022-09-16 13:02:11 -04:00
Mike Reeves
f14a8f3d01 Firewall Fun 2022-09-16 12:55:56 -04:00
Mike Reeves
2bd9dd80e2 Move In Day 2022-09-07 09:06:25 -04:00
weslambert
6004dde54a Add strelka_frontend to heavynode, sensor, and standalone role FW portgroups 2022-03-28 16:05:07 -04:00
m0duspwnens
0970bbc983 default to false if local role doesnt exist 2022-02-24 17:55:50 -05:00
m0duspwnens
61ae61953f allow only manager to connect to ssh port for idh node 2022-02-23 15:14:11 -05:00
Josh Brower
99554d5db8 IDH - UDP vs TCP support 2022-02-22 14:10:05 -05:00
Josh Brower
0362afb260 IDH - Finalize Firewall config 2022-02-18 13:23:48 -05:00
Josh Brower
f995d0768f IDH - Initial firewall support 2022-02-17 15:54:20 -05:00
Josh Brower
a3602c9eb9 Initial support - IDH Node 2022-02-08 08:24:15 -05:00
m0duspwnens
2e4ed8062e simplify wazuh agent ip logic 2021-12-16 11:11:01 -05:00
m0duspwnens
176ef852c8 clean up assinged hostgroups for receiver 2021-12-15 08:28:40 -05:00
m0duspwnens
fe7247f876 update fw for receiver and add mine_functions for ip_addr 2021-12-10 15:28:40 -05:00
m0duspwnens
f8da5c7fe9 start of fw rules for receiver 2021-12-07 15:59:11 -05:00
Wes Lambert
a9b250c0f4 Add EG firewall config 2021-10-13 21:37:59 +00:00
Mike Reeves
7153f58a03 Add Firewall for Beats port 2021-04-13 20:17:26 -04:00
m0duspwnens
f7e99b4961 https://github.com/Security-Onion-Solutions/securityonion/issues/3709 2021-03-31 15:17:15 -04:00
m0duspwnens
68ce7a902d insert instead of append 2021-03-17 09:14:19 -04:00
m0duspwnens
38a497932c https://github.com/Security-Onion-Solutions/securityonion/issues/3288 2021-03-16 16:36:35 -04:00
m0duspwnens
7e4d7a6985 drop icmp timestamp replies https://github.com/Security-Onion-Solutions/securityonion/issues/1704 2021-02-11 11:09:21 -05:00
m0duspwnens
b693373d8d change how we allow or disallow states to be run https://github.com/Security-Onion-Solutions/securityonion/issues/2679 2021-01-20 15:09:53 -05:00
m0duspwnens
ad45779978 fix duplicate state name for fw 2020-12-18 15:01:55 -05:00
m0duspwnens
4bbedfa027 put portgroup name in statename 2020-12-18 14:14:45 -05:00
m0duspwnens
dbf82a891f add sensoroni port to minions for manager nodes 2020-12-18 13:06:14 -05:00
m0duspwnens
141d7a35c9 if true cluster enabled allow search nodes to talk to each other https://github.com/Security-Onion-Solutions/securityonion/issues/2079 2020-12-01 15:38:09 -05:00
Mike Reeves
697bc53aec Dockernet Modifications 2020-10-27 15:08:34 -04:00
m0duspwnens
ef1e05db3e only allow hosts in syslog host group to connect to manager type nodes 2020-10-21 14:41:03 -04:00
m0duspwnens
8805fef187 firewall to allow search nodes to connect to beats on manager 2020-10-21 12:43:28 -04:00
m0duspwnens
5f43380aa0 add firewall rules for syslog 2020-10-21 11:20:34 -04:00
Mike Reeves
73aade1223 Enable rest access from manager to sn 2020-10-11 11:02:20 -04:00
Mike Reeves
af9a19b6e8 Merge pull request #1321 from Security-Onion-Solutions/experimental
IDS Tools now with Airgap support
2020-09-10 19:05:16 -04:00
Mike Reeves
5d4e8925a3 Add Firewall Logic 2020-09-09 21:16:40 -04:00
m0duspwnens
09cc8ae1fb fail the state if it isnt in top 2020-09-09 16:48:50 -04:00