Jason Ertel
|
523ff66389
|
connect work
|
2024-10-16 13:44:01 -04:00 |
|
Mike Reeves
|
cac1539094
|
Add to firewall settings and annotations
|
2024-09-12 13:08:01 -04:00 |
|
reyesj2
|
cfd6676583
|
update kafka firewall annotations config
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-08-06 14:40:53 -04:00 |
|
reyesj2
|
ea771ed21b
|
update firewall
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-06-24 12:01:01 -04:00 |
|
reyesj2
|
824f852ed7
|
merge 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-06-10 11:26:23 -04:00 |
|
Mike Reeves
|
4057238185
|
Update defaults.yaml
|
2024-06-07 15:33:49 -04:00 |
|
Mike Reeves
|
dbc56ffee7
|
Update defaults.yaml
|
2024-06-07 15:09:09 -04:00 |
|
reyesj2
|
876d860488
|
elastic agent should be able to communicate over 9092 for sending logs to kafka brokers
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-05-29 16:40:15 -04:00 |
|
reyesj2
|
e960ae66a3
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into reyesj2/kafka
|
2024-05-02 15:12:27 -04:00 |
|
Jason Ertel
|
84db82852c
|
annotation updates for custom settings
|
2024-04-30 15:14:56 -04:00 |
|
reyesj2
|
a6e8b25969
|
Add Kafka connectivity between manager - > receiver nodes.
Add connectivity to Kafka between other node types that may need to publish to Kafka.
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-04-29 15:48:57 -04:00 |
|
reyesj2
|
af53dcda1b
|
Remove references to kafkanode
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-04-11 15:32:00 -04:00 |
|
m0duspwnens
|
7a6b72ebac
|
add so-kafka to manager for firewall
|
2024-04-04 15:46:11 -04:00 |
|
m0duspwnens
|
1b8584d4bb
|
allow manager to manager on kafka ports
|
2024-04-03 15:36:35 -04:00 |
|
m0duspwnens
|
ed6137a76a
|
allow sensor and searchnode to connect to manager kafka ports
|
2024-04-03 10:24:10 -04:00 |
|
m0duspwnens
|
e25bc8efe4
|
Merge remote-tracking branch 'origin/reyesj2/kafka' into kaffytaffy
|
2024-04-02 13:36:47 -04:00 |
|
DefensiveDepth
|
d7ecad4333
|
Initial cut to remove Playbook and deps
|
2024-03-25 19:42:31 -04:00 |
|
reyesj2
|
446f1ffdf5
|
merge 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-03-25 13:55:48 -04:00 |
|
m0duspwnens
|
3eb6fe2df9
|
allow managersearch to receiver redis and 5644
|
2024-03-08 09:52:12 -05:00 |
|
m0duspwnens
|
2f03248612
|
use different nginx defaults for so-fleet node hosting artifacts
|
2024-01-31 16:25:09 -05:00 |
|
Josh Brower
|
afa98fa147
|
update artifacts URL automatically
|
2024-01-28 14:20:52 -05:00 |
|
Wes
|
d203aec44a
|
Remove Curator
|
2023-12-08 19:37:06 +00:00 |
|
Doug Burks
|
ab0e6f9bec
|
update broken help links in SOC Config
|
2023-12-06 14:35:51 -05:00 |
|
reyesj2
|
8cf29682bb
|
Update to merge in 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2023-11-29 13:41:23 -05:00 |
|
reyesj2
|
86dc7cc804
|
Kafka init
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2023-11-29 13:34:25 -05:00 |
|
m0duspwnens
|
4dc24b22c7
|
accept icmp on input chain
|
2023-10-10 10:51:59 -04:00 |
|
Josh Patterson
|
651393988a
|
Merge pull request #11255 from Security-Onion-Solutions/issue/10975
Issue/10975
|
2023-09-05 11:57:58 -04:00 |
|
m0duspwnens
|
07ed93de19
|
add elastic agent to desktop
|
2023-09-01 14:33:32 -04:00 |
|
weslambert
|
765a22e6f0
|
Add so-elastic-agent
|
2023-09-01 11:31:23 -04:00 |
|
m0duspwnens
|
b010919099
|
add sensoroni, telegraf, common states to desktop. allow docker_registry connection to managers for desktop
|
2023-08-31 13:21:32 -04:00 |
|
Wes
|
60b0af5ab7
|
Allow external syslog
|
2023-08-30 13:05:30 +00:00 |
|
m0duspwnens
|
28dfdbf06d
|
securityonion_desktop is just desktop
|
2023-08-09 08:51:39 -04:00 |
|
m0duspwnens
|
00efc2f88f
|
rename workstation to desktop for firewall
|
2023-08-09 07:31:31 -04:00 |
|
m0duspwnens
|
014aeffb2a
|
add analyst back
|
2023-08-04 09:56:33 -04:00 |
|
m0duspwnens
|
0f52530d07
|
soc_firewall.yaml update adding idh and rename analyst to workstation
|
2023-08-04 09:37:58 -04:00 |
|
m0duspwnens
|
726ec72350
|
allow idh to connect to salt_manager ports on managres
|
2023-08-04 09:22:59 -04:00 |
|
m0duspwnens
|
a51acfc314
|
rename analyst to workstation for fw rules. allow workstation to connect to salt_manager port on managers
|
2023-08-04 09:17:22 -04:00 |
|
m0duspwnens
|
682289ef23
|
add sensoroni ports where missing
|
2023-08-04 09:01:09 -04:00 |
|
m0duspwnens
|
593cdbd060
|
add rules for idh to connect to managers, change idh from sensor to idh in so-firewall-minion
|
2023-08-04 08:50:06 -04:00 |
|
m0duspwnens
|
407cb2a537
|
force portgroups added to hostgroups in roles to be list of strings
|
2023-08-02 10:56:41 -04:00 |
|
weslambert
|
4adaddf13f
|
Move syslog to the INPUT chain where needed
|
2023-08-01 10:14:59 -04:00 |
|
m0duspwnens
|
57562ad5e3
|
add managersearch and standlone fw rules for searchnode
|
2023-07-31 13:34:08 -04:00 |
|
m0duspwnens
|
4c8373452d
|
change to iptables-nft-services
|
2023-07-28 11:35:34 -04:00 |
|
m0duspwnens
|
3a22ef8e86
|
change iptables package name for redhat fam
|
2023-07-28 08:40:32 -04:00 |
|
m0duspwnens
|
54080c42fe
|
enable, not enabled
|
2023-07-27 17:01:19 -04:00 |
|
m0duspwnens
|
3c16218c5a
|
map services,pkg,config for firewall state
|
2023-07-27 15:45:18 -04:00 |
|
m0duspwnens
|
bc182c1c43
|
only run firewalld states if os_family is RedHat
|
2023-07-27 09:24:41 -04:00 |
|
m0duspwnens
|
fe9b934af6
|
Merge remote-tracking branch 'origin/2.4/dev' into iptables
|
2023-07-26 16:32:03 -04:00 |
|
m0duspwnens
|
373298430b
|
only run iptables-restore if config file is valid
|
2023-07-26 16:31:22 -04:00 |
|
Josh Brower
|
f24a3a51ce
|
Heavy Node fixes
|
2023-07-25 18:28:41 -04:00 |
|