weslambert
|
4391c22335
|
Move Suricata import policy definition so that it does not get caught in the for loop for Zeek policies
|
2023-01-11 12:23:50 -05:00 |
|
Wes
|
33e2affb1d
|
Remove newlines from end of Syslog processor definitions
|
2023-01-11 14:08:28 +00:00 |
|
Wes
|
caf0ea6b53
|
Add Elastic Agent policy view script
|
2023-01-11 13:56:21 +00:00 |
|
Wes
|
a146f1134e
|
Add Elastic Agent utility scripts
|
2023-01-11 13:54:42 +00:00 |
|
m0duspwnens
|
dbbcea0009
|
look for True
|
2023-01-09 11:53:32 -05:00 |
|
m0duspwnens
|
c313b19b50
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/firewall
|
2023-01-09 11:18:08 -05:00 |
|
Mike Reeves
|
73ae48d28e
|
Merge pull request #9539 from Security-Onion-Solutions/mkr24
Changes to accept minion
|
2023-01-09 11:17:45 -05:00 |
|
Mike Reeves
|
0e1e9ff343
|
Changes to accept minion
|
2023-01-09 11:15:29 -05:00 |
|
Doug Burks
|
10e82c5f1c
|
Remove line numbers from vi
|
2023-01-06 14:23:54 -05:00 |
|
m0duspwnens
|
d4c6834cd0
|
merge with 2.4/dev
|
2023-01-06 14:01:58 -05:00 |
|
m0duspwnens
|
4aacc6d1db
|
change role names in so-firewall-minion
|
2023-01-06 11:09:09 -05:00 |
|
Mike Reeves
|
2e53476a06
|
Merge pull request #9516 from Security-Onion-Solutions/mkr24
Add PW auth for Redis
|
2023-01-04 14:50:27 -05:00 |
|
Mike Reeves
|
e52b54720a
|
Allow auth for redis check for tgraf
|
2023-01-04 14:26:24 -05:00 |
|
Mike Reeves
|
5afad52b3f
|
Allow auth for redis check for tgraf
|
2023-01-04 14:18:08 -05:00 |
|
Mike Reeves
|
9bc08661c5
|
Allow auth for redis check for tgraf
|
2023-01-04 14:15:53 -05:00 |
|
doug
|
7ba4bdd87b
|
fix jinja whitespace
|
2023-01-04 13:50:25 -05:00 |
|
Jason Ertel
|
a89976779d
|
Ensure create/update dates are both reset when an admin sets a user's password
|
2022-12-30 11:30:09 -05:00 |
|
Jason Ertel
|
136867c96a
|
ensure zombie pipe is destroyed before SOC restarts
|
2022-12-23 10:27:49 -05:00 |
|
Doug Burks
|
e95034886e
|
add influxdb and telegraf to import mode
|
2022-12-22 09:49:57 -05:00 |
|
m0duspwnens
|
accc293c8a
|
2.4 firewall changes
|
2022-12-21 15:03:45 -05:00 |
|
Jason Ertel
|
33a1aea729
|
Merge pull request #9448 from Security-Onion-Solutions/kilo
improve so-status rendering on terminals that only support 8 colors
|
2022-12-21 10:14:47 -05:00 |
|
Jason Ertel
|
8e63909edf
|
improve so-status rendering on terminals that only support 8 colors
|
2022-12-21 10:11:38 -05:00 |
|
Josh Brower
|
73a9c3bb38
|
Make Fleet setup less fragile
|
2022-12-20 11:52:56 -05:00 |
|
Doug Burks
|
894434715b
|
so-status should ignore commented entries in so-status.conf
Import mode comments out so-steno, so-suricata, and so-zeek in so-status.conf, so so-status should ignore these lines.
|
2022-12-20 09:05:07 -05:00 |
|
doug
|
9d8951ceb8
|
fix import
|
2022-12-19 16:55:16 -05:00 |
|
Doug Burks
|
df1b564d17
|
Replace hardcoded URL in so-analyst-install with new $DOC_BASE_URL variable from so-common
|
2022-12-19 10:30:29 -05:00 |
|
Doug Burks
|
73f2789c95
|
Replace hardcoded URLs in soup with new $DOC_BASE_URL variable from so-common
|
2022-12-19 10:28:20 -05:00 |
|
Doug Burks
|
042693895a
|
add new DOC_BASE_URL variable to so-common
|
2022-12-19 10:21:54 -05:00 |
|
doug
|
b9e51fc7cf
|
first round of fixes for eval mode
|
2022-12-16 13:24:02 -05:00 |
|
Jason Ertel
|
52c4553ea6
|
move Kratos DB to /nsm
|
2022-12-14 14:28:34 -05:00 |
|
Jason Ertel
|
9885f418fa
|
move Kratos DB to /nsm
|
2022-12-14 14:22:55 -05:00 |
|
Doug Burks
|
07df9ad0e0
|
FIX: so-import utilities should hyperlink to dashboards #9373
|
2022-12-13 13:30:38 -05:00 |
|
Doug Burks
|
ca3c99ac99
|
FIX: so-import utilities should hyperlink to dashboards #9373
|
2022-12-13 13:29:59 -05:00 |
|
doug
|
d3a8bdff52
|
setup improvements
|
2022-12-13 11:20:00 -05:00 |
|
Doug Burks
|
be75062612
|
Update so-import-pcap
|
2022-12-10 15:17:02 -05:00 |
|
Doug Burks
|
da8e098655
|
update so-import-evtx
|
2022-12-10 15:16:32 -05:00 |
|
Doug Burks
|
de2427cabe
|
add -p option to mkdir in so-elastic-fleet-setup
|
2022-12-10 08:20:38 -05:00 |
|
m0duspwnens
|
b95a83b016
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into dockerips
|
2022-11-22 14:17:19 -05:00 |
|
m0duspwnens
|
d97e13b473
|
add /24 back to default bip, rever daemon.json
|
2022-11-16 14:47:40 -05:00 |
|
Josh Brower
|
8db49feb32
|
Use our docker image
|
2022-11-16 08:24:25 -05:00 |
|
m0duspwnens
|
54e4749ddf
|
remove comma
|
2022-11-15 17:30:55 -05:00 |
|
m0duspwnens
|
d246aa6a80
|
we dont need default network config
|
2022-11-15 17:14:33 -05:00 |
|
Mike Reeves
|
bf31b593ed
|
Merge pull request #9055 from Security-Onion-Solutions/strelkastuff
Strelkastuff
|
2022-11-08 13:45:42 -05:00 |
|
Mike Reeves
|
d97de9fd0d
|
Add Strelka Filecheck
|
2022-11-02 10:02:21 -04:00 |
|
Mike Reeves
|
bf5df1ac51
|
Add Strelka Filecheck
|
2022-11-02 09:57:07 -04:00 |
|
Doug Burks
|
2030f08b54
|
https://github.com/Security-Onion-Solutions/securityonion/pull/8952
|
2022-11-01 09:35:53 -04:00 |
|
m0duspwnens
|
6525e0f201
|
setup no longer add patch pillar to minion
|
2022-10-27 10:56:29 -04:00 |
|
m0duspwnens
|
b526532ab6
|
use global vars in states
|
2022-10-11 11:57:15 -04:00 |
|
Jason Ertel
|
5708f3595e
|
Avoid overwriting the file inode since it's mapped into a running container
|
2022-09-27 17:27:28 -04:00 |
|
Jason Ertel
|
851e44e5fa
|
ensure salt-relay is restarted when SOC is manually restarted
|
2022-09-27 10:31:14 -04:00 |
|