Commit Graph

2526 Commits

Author SHA1 Message Date
m0duspwnens d963222f31 provide proper url for so-import-pcap based on redirect strategy chosen during setup - https://github.com/Security-Onion-Solutions/securityonion/issues/1039 2020-08-14 15:28:47 -04:00
m0duspwnens 35027e32b3 dont constantly run steno or suricata containers for import node 2020-08-14 14:43:37 -04:00
m0duspwnens f9a6b8d231 remove zeek and suricata from so-status for import node 2020-08-14 14:39:02 -04:00
m0duspwnens 3836f00309 allow sensori port for import node 2020-08-14 14:32:34 -04:00
m0duspwnens ff84640aad add pcap to import node, test not starting zeek docker by default 2020-08-14 13:59:23 -04:00
Mike Reeves 283f91459a Fix rule update cron 2020-08-14 10:05:56 -04:00
Mike Reeves a3d8b7d0d3 Add watch statements 2020-08-14 09:40:38 -04:00
Josh Brower 34d8261669 Merge pull request #1176 from Security-Onion-Solutions/feature/playbook
Elastalert/Playbook Stability updates
2020-08-13 17:19:01 -04:00
Josh Brower 7400bbd6c1 Elastalert Stability Fixes 2020-08-13 17:14:53 -04:00
Doug Burks ed4bee0d0b so-allow has no usage function #1133 2020-08-13 16:42:50 -04:00
Jason Ertel 40b5b96e17 Respond with 403 status code to unauthorized sensor requests 2020-08-13 15:00:49 -04:00
m0duspwnens 9fafd5f721 update trusted containers for soup to minimize downloaded containers 2020-08-13 08:32:51 -04:00
m0duspwnens 3387114389 Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-13 08:21:43 -04:00
Mike Reeves 5a53194313 Update sotls.yml 2020-08-12 21:12:48 -04:00
Mike Reeves 59ddac57bf Rename sotls.yaml to sotls.yml 2020-08-12 17:48:37 -04:00
m0duspwnens a746d597bb rename to .yml 2020-08-12 17:42:45 -04:00
m0duspwnens dbe14fcbdb Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-12 16:46:03 -04:00
m0duspwnens f59b8683ae allow soup to run on import node 2020-08-12 15:48:34 -04:00
m0duspwnens 5d5fcecdca set the cluster for import node 2020-08-12 15:46:34 -04:00
Mike Reeves 0129519d0c Merge pull request #1165 from Security-Onion-Solutions/feature/esssl
TLS Transport Encryption
2020-08-12 15:39:17 -04:00
Mike Reeves 9980d02844 Elastic Transport TLSgit add . 2020-08-12 15:38:19 -04:00
Mike Reeves 7e3e4d0f54 Convert ES cert to p12 2020-08-12 15:16:12 -04:00
Mike Reeves 82821fbb25 Convert ES cert to p12 2020-08-12 15:09:52 -04:00
Mike Reeves daaffd5185 Convert ES cert to p12 2020-08-12 15:05:33 -04:00
Mike Reeves 683799d077 Convert ES cert to p12 2020-08-12 15:02:54 -04:00
Mike Reeves c02a363e92 Merge pull request #1163 from Security-Onion-Solutions/feature/esssl
Feature/esssl
2020-08-12 14:02:27 -04:00
Mike Reeves 69e7285e30 Fix a bug where minio passwrods cause issues 2020-08-12 12:44:55 -04:00
m0duspwnens c166bc84f3 add zeek to import node top 2020-08-12 11:48:22 -04:00
m0duspwnens b5c9d44d91 nginx config for import node 2020-08-12 11:15:14 -04:00
Mike Reeves 32083132e5 Back out some ES settings 2020-08-12 11:10:36 -04:00
m0duspwnens 0f53b4d703 set esheapsize and filebeat config for import node 2020-08-12 10:39:31 -04:00
m0duspwnens 5a0df27193 rename importpcap node to import 2020-08-12 10:27:15 -04:00
m0duspwnens 53b4a73bb9 add idstools to importpcap node 2020-08-11 15:59:08 -04:00
m0duspwnens de05403237 ensure nids rules dir exists 2020-08-11 15:52:15 -04:00
Mike Reeves 0f7074a499 SSL intraca 2020-08-11 15:49:04 -04:00
Mike Reeves 65d535d893 SSL intraca 2020-08-11 15:45:17 -04:00
Mike Reeves f862133323 SSL intraca 2020-08-11 15:37:55 -04:00
Mike Reeves 5a0aae5fe7 SSL intraca 2020-08-11 15:34:07 -04:00
Mike Reeves a817465318 SSL intraca 2020-08-11 15:25:09 -04:00
Mike Reeves e8b61a3828 SSL intraca 2020-08-11 15:14:29 -04:00
Mike Reeves 5f30c947c9 SSL intraca 2020-08-11 15:12:23 -04:00
Josh Brower b724d40376 Playbook Stability Fixes 2020-08-11 15:07:16 -04:00
Mike Reeves 42c9653669 anon user hack 2020-08-11 14:45:55 -04:00
Mike Reeves f553a8e27a anon user hack 2020-08-11 14:40:34 -04:00
Mike Reeves 8daf11f085 Fix logstash outputs 2020-08-11 13:58:28 -04:00
m0duspwnens 40006752a1 Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-11 13:30:48 -04:00
Mike Reeves 362749ca85 Make hostnames default in cross cluster 2020-08-11 13:00:42 -04:00
weslambert b95f8a9314 Update Redis maxmemory settings 2020-08-11 12:57:57 -04:00
m0duspwnens ec62668eb7 firewall rules for importpcap node 2020-08-11 12:31:37 -04:00
m0duspwnens f6a85ac852 top and seed registry for importpcap node 2020-08-11 12:27:21 -04:00