Mike Reeves
|
3e138cbc6d
|
Revert to SO taxonomy for zeek and suricata
|
2021-06-08 13:14:46 -04:00 |
|
Mike Reeves
|
4972f69dd6
|
Merge remote-tracking branch 'remotes/origin/dev' into pipeline
|
2021-06-08 11:03:14 -04:00 |
|
Mike Reeves
|
56eb220ed6
|
Revert to SO taxonomy for zeek and suricata
|
2021-06-08 09:52:05 -04:00 |
|
William Wernert
|
fd5fcfeaae
|
Merge pull request #4402 from Security-Onion-Solutions/foxtrot
Use variable for whiptail title and make sure all menus in setup have the same title
|
2021-06-04 11:10:01 -04:00 |
|
William Wernert
|
d1d09d4aab
|
Remove useless variable assignment
|
2021-06-03 14:20:52 -04:00 |
|
William Wernert
|
3aff3ac7e4
|
Change logic to check for unmanaged nics
Resolves issue mentioned in #4327
|
2021-06-03 11:00:20 -04:00 |
|
William Wernert
|
d1a185aaae
|
Further standardize whiptail titles
|
2021-06-03 10:59:14 -04:00 |
|
William Wernert
|
bb5b805983
|
Merge branch 'fix/missing-version-string' into foxtrot
|
2021-06-03 10:45:02 -04:00 |
|
William Wernert
|
d55e007032
|
Merge pull request #4386 from Security-Onion-Solutions/foxtrot
Update wording for iso location prompt in soup
|
2021-06-03 09:55:15 -04:00 |
|
Mike Reeves
|
9ec7cbef8e
|
Merge pull request #4391 from Security-Onion-Solutions/es-7.13.1
Es 7.13.1 saved objects update
|
2021-06-02 20:23:40 -04:00 |
|
Jason Ertel
|
719d841353
|
Update saved objects
|
2021-06-02 20:15:03 -04:00 |
|
weslambert
|
cba719b3a0
|
Remove extra comma
|
2021-06-02 16:42:09 -04:00 |
|
weslambert
|
4241bb08b8
|
Add suricata/zeek until we migrate templates
|
2021-06-02 16:37:43 -04:00 |
|
weslambert
|
4c74e7f308
|
Add event.kind and set name to module[dot]dataset
|
2021-06-02 15:35:26 -04:00 |
|
weslambert
|
db48c15f1d
|
Create event.kind field and rename dataset to be module[dot]dataset
|
2021-06-02 15:33:18 -04:00 |
|
weslambert
|
a1b34e7a88
|
Fix Suricata index name
|
2021-06-02 15:30:14 -04:00 |
|
Mike Reeves
|
9c9bcac61b
|
Update DNS queries
|
2021-06-02 15:01:14 -04:00 |
|
Mike Reeves
|
e42db3cd2d
|
Fix some hunt queries
|
2021-06-02 14:05:02 -04:00 |
|
Mike Reeves
|
e8cc88174f
|
Fix some hunt queries
|
2021-06-02 13:55:05 -04:00 |
|
Mike Reeves
|
7b7111e12c
|
Fix some hunt queries
|
2021-06-02 13:53:39 -04:00 |
|
William Wernert
|
b3f2c60065
|
Whiptail title fixes
- Use a variable for the title
- Fix cases where the whiptail title wasn't changed previously
|
2021-06-02 12:38:32 -04:00 |
|
William Wernert
|
afbf7de9e3
|
Remove empty lines in iso location prompt
|
2021-06-02 11:05:43 -04:00 |
|
Jason Ertel
|
dd7388e577
|
Merge pull request #4382 from Security-Onion-Solutions/jertel/timeouts
Increase SOC API timeouts and ES timeout from 2m to 5m
|
2021-06-02 10:28:36 -04:00 |
|
Mike Reeves
|
77f13961ad
|
Merge remote-tracking branch 'remotes/origin/dev' into pipeline
|
2021-06-02 10:12:17 -04:00 |
|
Mike Reeves
|
e00fe0a732
|
Enable for all modes
|
2021-06-02 10:02:11 -04:00 |
|
Jason Ertel
|
c757d21360
|
Increase default SOC API and ES timeouts from 2m to 5m
|
2021-06-02 09:38:59 -04:00 |
|
Mike Reeves
|
5983eae3a8
|
fix filebeat module syntax
|
2021-06-01 17:47:13 -04:00 |
|
Mike Reeves
|
fd1de624c8
|
Disable TTY for filebeat script
|
2021-06-01 14:50:21 -04:00 |
|
Mike Reeves
|
73a0b31380
|
elastic pipeline enable
|
2021-06-01 12:12:20 -04:00 |
|
William Wernert
|
e800d62df4
|
Merge branch 'dev' into fix/update-iso-soup-wording
|
2021-06-01 11:12:17 -04:00 |
|
William Wernert
|
a94c598d00
|
Merge pull request #4333 from Security-Onion-Solutions/feature/show-version-in-setup
Show version in setup
|
2021-05-28 15:15:43 -04:00 |
|
William Wernert
|
d55a9e6274
|
Add version to all whiptail titles
|
2021-05-28 10:20:19 -04:00 |
|
William Wernert
|
ba011581ef
|
Add version to ending summary
|
2021-05-28 10:14:58 -04:00 |
|
Jason Ertel
|
1788ceccea
|
Merge pull request #4329 from Security-Onion-Solutions/fix/kibana_7.13.0
bump Kibana version to 7.13.0
|
2021-05-28 09:14:18 -04:00 |
|
doug
|
ada8255af0
|
bump version to 7.13.0
|
2021-05-28 08:59:40 -04:00 |
|
m0duspwnens
|
b23ce7462e
|
add depenency
|
2021-05-27 11:26:25 -04:00 |
|
Doug Burks
|
cf3dda6869
|
Merge pull request #4300 from j-bernal/patch-1
Update so-whiptail
|
2021-05-27 07:58:16 -04:00 |
|
Jason Ertel
|
d9c5976ed0
|
Merge pull request #4304 from Security-Onion-Solutions/feature/1596
add menu.actions.json and update soc.json
|
2021-05-26 16:41:30 -04:00 |
|
doug
|
aeea5701e4
|
completely disable both alerts.actions.json and hunt.actions.json
|
2021-05-26 16:34:05 -04:00 |
|
Mike Reeves
|
bfcde15a24
|
elastic pipeline test
|
2021-05-26 14:22:14 -04:00 |
|
doug
|
ee675546ac
|
add menu.actions.json and update soc.json
|
2021-05-26 14:09:00 -04:00 |
|
Mike Reeves
|
b525cfc787
|
Remove old modules
|
2021-05-26 11:07:53 -04:00 |
|
m0duspwnens
|
842aa97f7e
|
load filebeat modules when es container starts and if fb container is running
|
2021-05-26 11:00:18 -04:00 |
|
Mike Reeves
|
34d4eedf67
|
Remove old modules
|
2021-05-26 10:11:47 -04:00 |
|
Josh Brower
|
4a109d6af1
|
Merge pull request #4299 from Security-Onion-Solutions/feature/so-pcap-pull
Feature/so-pcap-export
|
2021-05-26 09:59:45 -04:00 |
|
John Bernal
|
cb40a76247
|
Update so-whiptail
Updated Zeek capitalization when prompting for the number of processes.
|
2021-05-26 09:55:14 -04:00 |
|
Josh Brower
|
ed249600d3
|
Merge remote-tracking branch 'remotes/origin/dev' into feature/so-pcap-pull
|
2021-05-26 09:52:58 -04:00 |
|
Josh Brower
|
0187c9d6df
|
Adds so-pcap-export
|
2021-05-26 09:51:37 -04:00 |
|
William Wernert
|
6da37966d9
|
Update wording for iso location prompt in soup
|
2021-05-26 09:32:25 -04:00 |
|
m0duspwnens
|
525d4325c7
|
define ZEEKLOGLOOKUP in the yaml
|
2021-05-25 17:18:58 -04:00 |
|