Commit Graph

66 Commits

Author SHA1 Message Date
Mike Reeves 32f8ea3158 Removes https from rest port 2020-08-11 10:02:00 -04:00
Mike Reeves e659af3466 ES basic SSL 2020-08-10 14:26:56 -04:00
Jason Ertel 31fd0b6407 Update the Hunt event fields lookups to reflect the latest ingest configs 2020-08-06 14:59:39 -04:00
Mike Reeves 4936da9b5d Merge pull request #1146 from Security-Onion-Solutions/feature/minio
Feature/minio
2020-08-05 23:01:58 -04:00
Jason Ertel 30ff6d2b93 Update event fields to reflect new ECS terms - WIP 2020-08-05 16:28:36 -04:00
Mike Reeves cd766753eb Merge branch 'dev' of https://github.com/Security-Onion-Solutions/securityonion into feature/minio 2020-08-05 14:34:22 -04:00
Mike Reeves 407160b729 Update changes.json 2020-08-04 16:23:03 -04:00
Mike Reeves 24ed92c9dc minio and change to global 2020-08-04 15:54:03 -04:00
Mike Reeves 79c45156c2 Update changes.json 2020-07-23 22:13:02 -04:00
Mike Reeves 4b127010ee Update changes.json 2020-07-23 11:59:20 -04:00
Mike Reeves 75477fe9bf Update changes.json 2020-07-23 11:56:14 -04:00
Jason Ertel beda859207 Update changes.json sub-bullets to improve communication of the content 2020-07-20 08:47:39 -04:00
Jason Ertel bd70fdbb33 Corrected JSON syntax to avoid a blank Overview screen in SOC; Applied HTML formatting of changes.json summaries for better markup handling. 2020-07-19 08:11:57 -04:00
Mike Reeves 517edf1938 Update Release Notes 2020-07-18 17:55:35 -04:00
Mike Reeves 64bd70bb48 Update Release Notes 2020-07-18 17:50:25 -04:00
Josh Brower 8647944ae6 Parsing & Hunt query updates 2020-07-14 16:59:06 -04:00
Jason Ertel 8f66a27f07 Refactor image repository to a single variable 2020-07-13 18:26:43 -04:00
m0duspwnens 1f48dc765e merge with dev and resolv conflicts 2020-07-10 10:36:48 -04:00
Doug Burks 2ce254dfb0 add new DPD query to Hunt 2020-07-10 06:00:36 -04:00
Doug Burks f5114c034d change Log Type query in Hunt to include event.dataset in the groupby 2020-07-10 05:52:10 -04:00
m0duspwnens 5ca3ecf4bd fix reference to master grain 2020-07-09 15:42:39 -04:00
m0duspwnens 3cf31e2460 https://github.com/Security-Onion-Solutions/securityonion/issues/404 2020-07-09 11:27:06 -04:00
Wes Lambert c0428ce79d Update file dataset name for hunt queries 2020-06-23 17:48:12 +00:00
Mike Reeves 6410087994 1.4.0 2020-06-16 13:52:37 -04:00
Doug Burks befc793a96 Improve files query #804 2020-06-12 14:25:38 -04:00
Doug Burks d157c0da00 Improve DNS queries #804 2020-06-12 14:21:36 -04:00
Doug Burks 0b2dd5d0a4 add event.dataset to default hunt output view #841 2020-06-12 11:37:55 -04:00
Doug Burks 3cc936a0a8 add event.dataset to default hunt output view #841 2020-06-12 11:13:56 -04:00
Jason Ertel e6fcf75181 Re-ordered wazuh setup to avoid agent-service failures due to missing client.keys file; Prepare for user profile settings screen support in reverse proxy 2020-06-02 17:31:51 -04:00
Doug Burks 80d1814f10 remove event.module:zeek to make queries more generic 2020-06-01 12:00:33 -04:00
Doug Burks f559621f00 add x509 issuer and subject groupby queries 2020-06-01 07:48:50 -04:00
Doug Burks 46dc5f42e9 combine two http queries into one with multiple groupby 2020-06-01 07:30:08 -04:00
Doug Burks f3efafc9ca combine two notice queries into one query with multiple groupby 2020-05-28 08:01:33 -04:00
Doug Burks 60cc3e9675 remove address from DHCP leases query 2020-05-28 07:50:52 -04:00
Doug Burks 7a657d1229 add Community ID to default fields in bottom data table in Hunt 2020-05-26 12:58:01 -04:00
Doug Burks 064768d07d Fix dce_rpc hunt query #736
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/736
2020-05-19 11:27:01 -04:00
Mike Reeves 1d677bb529 Update known issues list 2020-05-19 09:36:36 -04:00
Doug Burks def928804f Fix Hunt DHCP message_types query #728
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/728
2020-05-18 17:12:20 -04:00
Doug Burks b291b242ee temporarily hardcode radius user.name to user.name.keyword 2020-05-18 13:47:21 -04:00
Doug Burks 00f6e8d61b update geoip country descriptions 2020-05-18 10:27:03 -04:00
Doug Burks 028d84b805 remove commas from groupby segments 2020-05-18 10:25:05 -04:00
Doug Burks a3323c24ac fix ftp.argument 2020-05-18 09:52:56 -04:00
Doug Burks 2f15c30d9a fix dhcp query 2020-05-18 09:44:49 -04:00
Doug Burks bd4dfcb351 fix dns domain queries 2020-05-18 08:35:43 -04:00
William Wernert f319257f8d [feat] Change kratos:redirect to master:url_base 2020-05-17 13:14:28 -04:00
Mike Reeves 10896c1add Update Release Notes 2020-05-15 13:41:51 -04:00
Doug Burks e41c1b6755 fix typo 2020-05-14 16:57:34 -04:00
Doug Burks 34d9882987 fix Wazuh and Sysmon queries 2020-05-14 13:47:01 -04:00
Mike Reeves dbef2e2832 Update soc.json 2020-05-14 11:56:18 -04:00
Mike Reeves 6991900ceb Update Query for geo 2020-05-14 11:34:10 -04:00