Josh Patterson
|
732d2605a7
|
Merge pull request #11008 from Security-Onion-Solutions/fix/esanno
Fix/esanno
|
2023-08-10 11:32:14 -04:00 |
|
m0duspwnens
|
4d497022db
|
replace . with _x_ for soc ui compat
|
2023-08-10 09:52:18 -04:00 |
|
Josh Brower
|
2680a50927
|
Merge pull request #11004 from Security-Onion-Solutions/2.4/esurlfix
Unset defaults
|
2023-08-10 08:50:56 -04:00 |
|
Josh Brower
|
874dab7535
|
Unset defaults
|
2023-08-09 19:02:53 -04:00 |
|
Josh Brower
|
fe9917ef1c
|
Merge pull request #11002 from Security-Onion-Solutions/2.4/fixfqdn
Move base_url to cert SAN
|
2023-08-09 16:41:09 -04:00 |
|
Josh Brower
|
e844cf11db
|
Move base_url to cert SAN
|
2023-08-09 16:38:27 -04:00 |
|
m0duspwnens
|
f9e272dd8f
|
add additional annotations for elasticsearch index settings
|
2023-08-09 16:09:23 -04:00 |
|
m0duspwnens
|
dfe916d7c8
|
add annotation for so-logs index
|
2023-08-09 15:19:17 -04:00 |
|
Josh Patterson
|
c3c769922d
|
Merge pull request #11000 from Security-Onion-Solutions/issue/10954
Issue/10954
|
2023-08-09 11:31:55 -04:00 |
|
m0duspwnens
|
30e3fbb41c
|
remove extra )
|
2023-08-09 11:21:16 -04:00 |
|
m0duspwnens
|
78694807ff
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10954
|
2023-08-09 11:19:19 -04:00 |
|
m0duspwnens
|
8844e305ab
|
use sensor.interface for suricata. make af-packet.interface ro in soc ui
|
2023-08-09 11:18:47 -04:00 |
|
Josh Brower
|
1a37c43c98
|
Merge pull request #10997 from Security-Onion-Solutions/2.4/autoupgrade
Enable Agent Upgrade Check during highstate
|
2023-08-09 10:58:26 -04:00 |
|
Josh Brower
|
bf78faa0f0
|
Enable upgrade check during state run
|
2023-08-09 10:43:34 -04:00 |
|
Josh Brower
|
204ef7e68f
|
Merge pull request #10994 from Security-Onion-Solutions/2.4/autoupgrade
RC2 Fixes
|
2023-08-09 09:47:57 -04:00 |
|
Josh Patterson
|
176608d2f9
|
Merge pull request #10995 from Security-Onion-Solutions/fix/desktop
Fix/desktop
|
2023-08-09 09:34:44 -04:00 |
|
m0duspwnens
|
28dfdbf06d
|
securityonion_desktop is just desktop
|
2023-08-09 08:51:39 -04:00 |
|
m0duspwnens
|
a443c654e5
|
fix desktop pillar in setup
|
2023-08-09 08:48:00 -04:00 |
|
m0duspwnens
|
6413050f2e
|
set doc_desktop_url before jinja
|
2023-08-09 08:39:46 -04:00 |
|
m0duspwnens
|
fe7a940082
|
add details for enabling in soc gui
|
2023-08-09 08:31:54 -04:00 |
|
Josh Brower
|
e586d6b967
|
Extract Elastic Agent tarball for airgap soup
|
2023-08-09 08:30:19 -04:00 |
|
m0duspwnens
|
2d25e352d4
|
write to adv_ pillar file since that is where it would be stored from using the soc ui
|
2023-08-09 08:18:13 -04:00 |
|
Josh Brower
|
4297d51a2d
|
Refactor for multiple agents
|
2023-08-09 08:14:52 -04:00 |
|
m0duspwnens
|
1440c72559
|
changes for desktop referencing Rocky/CentOS to OEL
|
2023-08-09 08:06:51 -04:00 |
|
m0duspwnens
|
00efc2f88f
|
rename workstation to desktop for firewall
|
2023-08-09 07:31:31 -04:00 |
|
Josh Patterson
|
d55c2f889c
|
Merge pull request #10989 from Security-Onion-Solutions/issue/10973
Issue/10973
|
2023-08-08 19:35:02 -04:00 |
|
Josh Brower
|
e1e535b009
|
Retry if exit code is error
|
2023-08-08 18:38:18 -04:00 |
|
m0duspwnens
|
789fff561e
|
ensure ownership of /opt/so/log/strelka/filecheck.log
|
2023-08-08 17:55:30 -04:00 |
|
m0duspwnens
|
58fe25623b
|
ensure ownership of /opt/so/log/strelka/filecheck_stdout.log
|
2023-08-08 17:48:34 -04:00 |
|
m0duspwnens
|
553b758c61
|
update cronjobs first, the kill filecheck
|
2023-08-08 17:28:14 -04:00 |
|
m0duspwnens
|
6da2f117f2
|
change which user runs filecheck cron based on md engine
|
2023-08-08 17:25:08 -04:00 |
|
Doug Burks
|
6ad22edf8e
|
Merge pull request #10987 from Security-Onion-Solutions/dougburks-patch-1
Update soup for 2.4.10
|
2023-08-08 17:18:38 -04:00 |
|
m0duspwnens
|
2dbe679849
|
force restart of filecheck if the config changes
|
2023-08-08 17:05:03 -04:00 |
|
Doug Burks
|
2f74b69cc3
|
Update soup for 2.4.10
|
2023-08-08 16:27:11 -04:00 |
|
bryant-treacle
|
4320dab856
|
Merge pull request #10986 from Security-Onion-Solutions/fix/windows_event_table
Fix/windows event table
|
2023-08-08 16:23:14 -04:00 |
|
bryant-treacle
|
036b81707b
|
Update defaults.yaml
|
2023-08-08 16:10:54 -04:00 |
|
Josh Brower
|
8455d3da6f
|
Merge pull request #10977 from Security-Onion-Solutions/2.4/squashbug
Set as default
|
2023-08-08 15:55:58 -04:00 |
|
bryant-treacle
|
3d4fd08547
|
Update defaults.yaml
|
2023-08-08 15:28:06 -04:00 |
|
m0duspwnens
|
21c80e4953
|
run so-rule-update after idstools container restart
|
2023-08-08 15:27:23 -04:00 |
|
m0duspwnens
|
5c704d7e58
|
run so-rule-update if idstools configs change
|
2023-08-08 15:20:44 -04:00 |
|
m0duspwnens
|
230f5868f9
|
sync sorules
|
2023-08-08 15:14:27 -04:00 |
|
m0duspwnens
|
20dedab4b2
|
remove previously add rules files
|
2023-08-08 15:03:06 -04:00 |
|
m0duspwnens
|
9118ac2b56
|
filter.rules to filters.rules
|
2023-08-08 13:59:43 -04:00 |
|
m0duspwnens
|
aab89d2483
|
rule-files does not go under profiling
|
2023-08-08 13:54:58 -04:00 |
|
m0duspwnens
|
b2e75e77e8
|
add local.rules and filter.rules to suricata defaults. add extraction.rules, local.rules and filter.rules for suricata metadata
|
2023-08-08 13:50:19 -04:00 |
|
Josh Patterson
|
bcd1ccd91b
|
Merge pull request #10983 from Security-Onion-Solutions/fix/tgrafzeekcloss
Fix/tgrafzeekcloss
|
2023-08-08 10:19:46 -04:00 |
|
m0duspwnens
|
673b45af09
|
import ZEEKMERGED
|
2023-08-08 09:41:42 -04:00 |
|
m0duspwnens
|
a06040c035
|
add WORKERS calculation back to zeekcaptureloss script
|
2023-08-08 09:37:37 -04:00 |
|
m0duspwnens
|
e286b8f2ba
|
Merge remote-tracking branch 'origin/2.4/dev' into fix/tgrafzeekcloss
|
2023-08-08 09:36:12 -04:00 |
|
m0duspwnens
|
69553f9017
|
removes spaces from zeekcaptureloss script
|
2023-08-08 09:34:59 -04:00 |
|