m0duspwnens
78240b4b52
change retry command
2021-05-06 17:49:02 -04:00
m0duspwnens
e7c716ede4
merge with dev, use retry to check if manager up instead of sleep in soup
2021-05-06 16:44:34 -04:00
m0duspwnens
fb986b5cff
set both log levels to error
2021-05-06 14:55:14 -04:00
m0duspwnens
a49f2e2d98
change log_level_logfile to error for /opt/so/log/salt/minion
2021-05-06 13:38:16 -04:00
Mike Reeves
90b3462ead
No recurse for you
2021-05-06 13:29:15 -04:00
m0duspwnens
da528e802f
ensure migration script doesnt migrate the current days data and fix downsample cq to move from so_short_term rp
2021-05-06 12:52:47 -04:00
Josh Brower
23b4327c28
Merge pull request #4072 from petiepooo/fix-sleep
...
fix 5-second sleep
2021-05-06 12:48:34 -04:00
Mike Reeves
1de768c182
Update HOTFIX
2021-05-06 12:02:05 -04:00
William Wernert
9f6dfa4d2e
Merge pull request #4112 from Security-Onion-Solutions/master
...
Bring hotfix changes into dev
2021-05-06 10:44:25 -04:00
Mike Reeves
96c20ea3cf
Merge pull request #4080 from Security-Onion-Solutions/hotfix2
...
GRIDFIX Hotfix
2.3.50GRIDFIX
2021-05-06 10:34:17 -04:00
m0duspwnens
9dbb9f519b
create so_short_term rp as default so that autogen can just be dropped once data is downsampled
2021-05-06 09:14:49 -04:00
m0duspwnens
20188549f7
add the logic for so-influxdb-migrate
2021-05-05 19:28:16 -04:00
m0duspwnens
925be17d51
clean some commas in so-influxdb-clean
2021-05-05 15:59:18 -04:00
m0duspwnens
0ea4c99102
remove support for months as it isnt supported in InfluxQL
2021-05-05 15:32:53 -04:00
m0duspwnens
db98b7ed27
verify with user before proceedig to clean
2021-05-05 15:08:11 -04:00
m0duspwnens
44de611097
rename to so-influxdb-clean
2021-05-05 14:57:39 -04:00
m0duspwnens
a5ee8fb59d
fix the issues with so-influxdb-clear
2021-05-05 14:56:53 -04:00
m0duspwnens
e532804474
move to proper dir
2021-05-05 13:42:21 -04:00
m0duspwnens
ce24781446
first take at so-infludb-clean
2021-05-05 13:29:24 -04:00
weslambert
c867d6648a
Merge pull request #4098 from Security-Onion-Solutions/delta
...
Add ignore above for message keyword field
2021-05-05 08:53:39 -04:00
m0duspwnens
8ae5ae7e57
Merge remote-tracking branch 'remotes/origin/dev' into issue/3264
2021-05-05 08:33:47 -04:00
m0duspwnens
6a639edb05
have cq created once again
2021-05-05 08:33:31 -04:00
Wes Lambert
a1a79719fc
Add ignore above for message keyword field
2021-05-05 12:07:30 +00:00
m0duspwnens
c5f99b012e
comment out creation of cq to test data migration
2021-05-04 13:58:53 -04:00
m0duspwnens
fcd1bea4a3
remove auto data migration, change duration from 0s to 0d
2021-05-04 12:06:03 -04:00
m0duspwnens
3dcaa1f6fb
more logging for influxdb migration
2021-05-04 10:37:25 -04:00
m0duspwnens
2d91e509fa
update wording
2021-05-04 10:34:13 -04:00
m0duspwnens
a0f1839162
run in background
2021-05-04 09:59:16 -04:00
m0duspwnens
e2f52765e4
add newline
2021-05-04 09:34:42 -04:00
m0duspwnens
f186a3dde9
make sure user sees influxdb migration message by requiring enter to be pressed to continue
2021-05-04 09:30:38 -04:00
Mike Reeves
10c4a7fd98
Update soup
2021-05-04 09:18:59 -04:00
m0duspwnens
9b065155f4
log iunfluxdb migration to new log
2021-05-04 08:56:13 -04:00
m0duspwnens
12306368cf
add post upgrade function for 2.3.60 soup to migrate influxdb data
2021-05-04 08:37:52 -04:00
Mike Reeves
ffa9001df4
Update raid.sh
2021-05-04 07:57:07 -04:00
Mike Reeves
e113e75f4d
Update soup
2021-05-03 18:52:40 -04:00
Mike Reeves
9066959945
Update soup
2021-05-03 18:46:24 -04:00
Jason Ertel
6768e8ddf6
copy_new_files usage consistent across soup and hotfixapply scripts
2021-05-03 15:42:24 -04:00
Mike Reeves
a489b369d7
Jertel Compliance
2021-05-03 15:23:34 -04:00
Mike Reeves
074fe46e90
Adding airgap hotfix
2021-05-03 15:02:51 -04:00
Mike Reeves
f56244d708
Adding airgap hotfix
2021-05-03 14:39:32 -04:00
Mike Reeves
cedcf05751
Adding airgap hotfix
2021-05-03 14:38:18 -04:00
Mike Reeves
f04ed94627
Adding airgap hotfix
2021-05-03 14:33:45 -04:00
Mike Reeves
296c1c5a3c
Adding airgap hotfix
2021-05-03 14:30:53 -04:00
weslambert
d4e8ea8e72
Merge pull request #4079 from Security-Onion-Solutions/delta
...
Add event_data to common template so elastalert/playbook event_data f…
2021-05-03 13:45:17 -04:00
Wes Lambert
619402cc67
Add event_data to common template so elastalert/playbook event_data fields can be indexed and searchable
2021-05-03 17:03:30 +00:00
m0duspwnens
b01bfda862
Merge remote-tracking branch 'remotes/origin/dev' into issue/3264
2021-05-03 11:49:09 -04:00
William Wernert
da19df5174
Merge pull request #4076 from Security-Onion-Solutions/issue/4004
...
Don't ask for node description on eval and import installs
2021-05-03 11:43:37 -04:00
William Wernert
19dd9b97d2
Don't ask for node description on eval and import installs
2021-05-03 09:40:53 -04:00
Pete
b80dd1ef3e
fix 5-second sleep
...
using wait here instead of sleep tries to wait until pid 5 exits and generates the error
> /usr/sbin/so-playbook-reset: line 25: wait: pid 5 is not a child of this shell
2021-04-30 20:21:50 +00:00
m0duspwnens
d6b9154a88
change how version to be installed is defined to work with centos
2021-04-30 14:48:51 -04:00