weslambert
|
4391c22335
|
Move Suricata import policy definition so that it does not get caught in the for loop for Zeek policies
|
2023-01-11 12:23:50 -05:00 |
|
Wes
|
33e2affb1d
|
Remove newlines from end of Syslog processor definitions
|
2023-01-11 14:08:28 +00:00 |
|
Wes
|
caf0ea6b53
|
Add Elastic Agent policy view script
|
2023-01-11 13:56:21 +00:00 |
|
Wes
|
a146f1134e
|
Add Elastic Agent utility scripts
|
2023-01-11 13:54:42 +00:00 |
|
m0duspwnens
|
dbbcea0009
|
look for True
|
2023-01-09 11:53:32 -05:00 |
|
m0duspwnens
|
c313b19b50
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/firewall
|
2023-01-09 11:18:08 -05:00 |
|
Mike Reeves
|
73ae48d28e
|
Merge pull request #9539 from Security-Onion-Solutions/mkr24
Changes to accept minion
|
2023-01-09 11:17:45 -05:00 |
|
Mike Reeves
|
0e1e9ff343
|
Changes to accept minion
|
2023-01-09 11:15:29 -05:00 |
|
m0duspwnens
|
d4c6834cd0
|
merge with 2.4/dev
|
2023-01-06 14:01:58 -05:00 |
|
m0duspwnens
|
4aacc6d1db
|
change role names in so-firewall-minion
|
2023-01-06 11:09:09 -05:00 |
|
Mike Reeves
|
2e53476a06
|
Merge pull request #9516 from Security-Onion-Solutions/mkr24
Add PW auth for Redis
|
2023-01-04 14:50:27 -05:00 |
|
Mike Reeves
|
e52b54720a
|
Allow auth for redis check for tgraf
|
2023-01-04 14:26:24 -05:00 |
|
Mike Reeves
|
5afad52b3f
|
Allow auth for redis check for tgraf
|
2023-01-04 14:18:08 -05:00 |
|
Mike Reeves
|
9bc08661c5
|
Allow auth for redis check for tgraf
|
2023-01-04 14:15:53 -05:00 |
|
doug
|
7ba4bdd87b
|
fix jinja whitespace
|
2023-01-04 13:50:25 -05:00 |
|
Jason Ertel
|
a89976779d
|
Ensure create/update dates are both reset when an admin sets a user's password
|
2022-12-30 11:30:09 -05:00 |
|
Jason Ertel
|
136867c96a
|
ensure zombie pipe is destroyed before SOC restarts
|
2022-12-23 10:27:49 -05:00 |
|
Doug Burks
|
e95034886e
|
add influxdb and telegraf to import mode
|
2022-12-22 09:49:57 -05:00 |
|
Jason Ertel
|
33a1aea729
|
Merge pull request #9448 from Security-Onion-Solutions/kilo
improve so-status rendering on terminals that only support 8 colors
|
2022-12-21 10:14:47 -05:00 |
|
Jason Ertel
|
8e63909edf
|
improve so-status rendering on terminals that only support 8 colors
|
2022-12-21 10:11:38 -05:00 |
|
Josh Brower
|
73a9c3bb38
|
Make Fleet setup less fragile
|
2022-12-20 11:52:56 -05:00 |
|
Doug Burks
|
894434715b
|
so-status should ignore commented entries in so-status.conf
Import mode comments out so-steno, so-suricata, and so-zeek in so-status.conf, so so-status should ignore these lines.
|
2022-12-20 09:05:07 -05:00 |
|
doug
|
9d8951ceb8
|
fix import
|
2022-12-19 16:55:16 -05:00 |
|
Doug Burks
|
df1b564d17
|
Replace hardcoded URL in so-analyst-install with new $DOC_BASE_URL variable from so-common
|
2022-12-19 10:30:29 -05:00 |
|
Doug Burks
|
73f2789c95
|
Replace hardcoded URLs in soup with new $DOC_BASE_URL variable from so-common
|
2022-12-19 10:28:20 -05:00 |
|
Doug Burks
|
042693895a
|
add new DOC_BASE_URL variable to so-common
|
2022-12-19 10:21:54 -05:00 |
|
doug
|
b9e51fc7cf
|
first round of fixes for eval mode
|
2022-12-16 13:24:02 -05:00 |
|
Jason Ertel
|
52c4553ea6
|
move Kratos DB to /nsm
|
2022-12-14 14:28:34 -05:00 |
|
Jason Ertel
|
9885f418fa
|
move Kratos DB to /nsm
|
2022-12-14 14:22:55 -05:00 |
|
Doug Burks
|
07df9ad0e0
|
FIX: so-import utilities should hyperlink to dashboards #9373
|
2022-12-13 13:30:38 -05:00 |
|
Doug Burks
|
ca3c99ac99
|
FIX: so-import utilities should hyperlink to dashboards #9373
|
2022-12-13 13:29:59 -05:00 |
|
doug
|
d3a8bdff52
|
setup improvements
|
2022-12-13 11:20:00 -05:00 |
|
Doug Burks
|
be75062612
|
Update so-import-pcap
|
2022-12-10 15:17:02 -05:00 |
|
Doug Burks
|
da8e098655
|
update so-import-evtx
|
2022-12-10 15:16:32 -05:00 |
|
Doug Burks
|
de2427cabe
|
add -p option to mkdir in so-elastic-fleet-setup
|
2022-12-10 08:20:38 -05:00 |
|
Josh Brower
|
8db49feb32
|
Use our docker image
|
2022-11-16 08:24:25 -05:00 |
|
Doug Burks
|
2030f08b54
|
https://github.com/Security-Onion-Solutions/securityonion/pull/8952
|
2022-11-01 09:35:53 -04:00 |
|
m0duspwnens
|
6525e0f201
|
setup no longer add patch pillar to minion
|
2022-10-27 10:56:29 -04:00 |
|
m0duspwnens
|
b526532ab6
|
use global vars in states
|
2022-10-11 11:57:15 -04:00 |
|
Jason Ertel
|
5708f3595e
|
Avoid overwriting the file inode since it's mapped into a running container
|
2022-09-27 17:27:28 -04:00 |
|
Jason Ertel
|
851e44e5fa
|
ensure salt-relay is restarted when SOC is manually restarted
|
2022-09-27 10:31:14 -04:00 |
|
Jason Ertel
|
556ddc2ee4
|
sync in background
|
2022-09-27 09:24:34 -04:00 |
|
Jason Ertel
|
8e175b2d3f
|
add manual sync
|
2022-09-27 07:05:04 -04:00 |
|
Jason Ertel
|
0ad1a1a262
|
so-user and salt-relay updates for user management
|
2022-09-26 14:57:33 -04:00 |
|
Mike Reeves
|
2b9322b823
|
Helps if you add the IP address
|
2022-09-23 08:52:58 -04:00 |
|
Mike Reeves
|
81f79c3a02
|
Firewall Changes
|
2022-09-22 16:33:08 -04:00 |
|
Mike Reeves
|
4eebd855ac
|
Firewall Changes
|
2022-09-22 15:47:16 -04:00 |
|
Mike Reeves
|
678d5c5c9c
|
Replace so-firewall
|
2022-09-20 11:22:20 -04:00 |
|
Mike Reeves
|
9fffe1b5fa
|
Replace so-firewall
|
2022-09-20 11:11:19 -04:00 |
|
Mike Reeves
|
61f3479d92
|
Merge branch '2.4/dev' into funstuff
|
2022-09-19 09:40:27 -04:00 |
|