Commit Graph

57 Commits

Author SHA1 Message Date
Mike Reeves 76011c96d6 fix conflict 2023-02-22 10:20:14 -05:00
m0duspwnens a3bda9b322 podman changes to disable mgmt of iptables 2023-02-21 13:48:25 -05:00
Josh Brower b62cc32b1a Initial support for IDH 2023-02-21 11:52:37 -05:00
m0duspwnens 3e808a70fa allow managersearch. comment out localhost allow in setup 2023-02-02 12:11:03 -05:00
m0duspwnens 6f1438148f allow elastic agent access 2023-01-31 16:54:46 -05:00
m0duspwnens 16e1e297a0 allow elasticsearch_rest 2023-01-31 13:32:33 -05:00
m0duspwnens aa411e2682 allow influxdb on manager and managersearch 2023-01-31 12:42:46 -05:00
m0duspwnens 0ba193c7a4 allow docker_registry fw 2023-01-31 10:55:14 -05:00
m0duspwnens 75d73e4620 add yum portgroups for amnager 2023-01-26 15:35:22 -05:00
m0duspwnens 2fed977692 Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/firewall 2023-01-26 13:55:09 -05:00
m0duspwnens f2d3298f14 allow nodes to connect to salt for manager and managersearch 2023-01-26 13:54:52 -05:00
Wes 7d68ef0e8b Add Elastic Agent and Fleet to firewall configuration for Import Mode 2023-01-26 16:07:31 +00:00
weslambert 6ee66a34bc Revert "Elastic Agent and Fleet - Import Mode" 2023-01-25 17:12:03 -05:00
Wes c3717dae67 Add Elastic Fleet firewall configuration for Import Mode 2023-01-25 18:27:00 +00:00
m0duspwnens d501b0fac9 add elastic agent to assigned hostgroups 2023-01-18 09:46:55 -05:00
Josh Patterson 975c7fabcc remove minion hg 2022-09-23 08:39:48 -04:00
Josh Patterson 3100efc954 fix syntax 2022-09-22 16:03:12 -04:00
m0duspwnens abee5afd7b adjust standalone firewall assigned_hostgroups 2022-09-22 15:40:52 -04:00
m0duspwnens 06d3681cec 2.4/firewall 2022-09-22 13:39:10 -04:00
m0duspwnens 2995ae32bd 2.4 fw changes 2022-09-22 10:49:26 -04:00
Mike Reeves 2bd9dd80e2 Move In Day 2022-09-07 09:06:25 -04:00
weslambert 6004dde54a Add strelka_frontend to heavynode, sensor, and standalone role FW portgroups 2022-03-28 16:05:07 -04:00
m0duspwnens 61ae61953f allow only manager to connect to ssh port for idh node 2022-02-23 15:14:11 -05:00
Josh Brower 0362afb260 IDH - Finalize Firewall config 2022-02-18 13:23:48 -05:00
Josh Brower f995d0768f IDH - Initial firewall support 2022-02-17 15:54:20 -05:00
Josh Brower a3602c9eb9 Initial support - IDH Node 2022-02-08 08:24:15 -05:00
m0duspwnens 2e4ed8062e simplify wazuh agent ip logic 2021-12-16 11:11:01 -05:00
m0duspwnens 176ef852c8 clean up assinged hostgroups for receiver 2021-12-15 08:28:40 -05:00
m0duspwnens fe7247f876 update fw for receiver and add mine_functions for ip_addr 2021-12-10 15:28:40 -05:00
m0duspwnens f8da5c7fe9 start of fw rules for receiver 2021-12-07 15:59:11 -05:00
Wes Lambert a9b250c0f4 Add EG firewall config 2021-10-13 21:37:59 +00:00
m0duspwnens dbf82a891f add sensoroni port to minions for manager nodes 2020-12-18 13:06:14 -05:00
m0duspwnens 141d7a35c9 if true cluster enabled allow search nodes to talk to each other https://github.com/Security-Onion-Solutions/securityonion/issues/2079 2020-12-01 15:38:09 -05:00
m0duspwnens ef1e05db3e only allow hosts in syslog host group to connect to manager type nodes 2020-10-21 14:41:03 -04:00
m0duspwnens 8805fef187 firewall to allow search nodes to connect to beats on manager 2020-10-21 12:43:28 -04:00
m0duspwnens 5f43380aa0 add firewall rules for syslog 2020-10-21 11:20:34 -04:00
Mike Reeves 73aade1223 Enable rest access from manager to sn 2020-10-11 11:02:20 -04:00
Mike Reeves 5d4e8925a3 Add Firewall Logic 2020-09-09 21:16:40 -04:00
Mike Reeves 7d524a0723 Add Firewall Rule for yum and airgap 2020-09-08 18:51:14 -04:00
m0duspwnens 47faee48a6 heavynode firewall rules 2020-08-14 15:58:59 -04:00
m0duspwnens 3836f00309 allow sensori port for import node 2020-08-14 14:32:34 -04:00
m0duspwnens 5a0df27193 rename importpcap node to import 2020-08-12 10:27:15 -04:00
m0duspwnens ec62668eb7 firewall rules for importpcap node 2020-08-11 12:31:37 -04:00
m0duspwnens fce22c1cc4 Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-07 10:27:11 -04:00
m0duspwnens 66ca7b266c first commit of importpcap node mode code, kek 2020-08-05 14:44:23 -04:00
Mike Reeves 24ed92c9dc minio and change to global 2020-08-04 15:54:03 -04:00
m0duspwnens 3cf31e2460 https://github.com/Security-Onion-Solutions/securityonion/issues/404 2020-07-09 11:27:06 -04:00
m0duspwnens b4e556496b add elasticsearch_rest to assigned hostgroups where missing 2020-07-06 15:18:47 -04:00
Wes Lambert ed60d48c81 Add ES REST API option for so-allow 2020-06-29 18:49:16 +00:00
William Wernert bd36749959 [feat] Remove navigator container references 2020-06-24 12:38:32 -04:00