Commit Graph

5415 Commits

Author SHA1 Message Date
William Wernert 2b20d009e1 Fixed cyberchef container image version error.
Cyberchef container image v1.1.4 has not been built yet, revert to 1.1.3 for now
2019-12-19 17:04:23 -05:00
Josh Brower 0d541f4949 initial commit - so-component-restart scripts 2019-12-19 10:49:23 -05:00
weslambert 839f710f61 Merge pull request #166 from Security-Onion-Solutions/feature/fix_hive
fix ssl verify hive_init.sh
2019-12-18 14:20:43 -05:00
m0duspwnens 2888dce48f fix ssl verify hive_init.sh 2019-12-18 14:11:26 -05:00
Mike Reeves 9bae1c7a03 Registry Update 2019-12-18 12:06:57 -05:00
Wes Lambert c597dd2fb4 Strelka - Filebeat config 2019-12-18 03:22:30 +00:00
Wes Lambert 88f142664f Strelka - intial config 2019-12-18 03:13:14 +00:00
Josh Brower 2319f503f8 Initial commit - so-common 2019-12-17 16:24:26 -05:00
Josh Brower 82076b1988 Initial commit - so-restart 2019-12-17 16:23:59 -05:00
Mike Reeves b0584f2178 Merge pull request #160 from Security-Onion-Solutions/mastersearch
Mastersearch Menu Option
2019-12-17 16:18:20 -05:00
Mike Reeves 5ead3a26b6 Rename Storage to Search Nodes 2019-12-17 15:32:43 -05:00
Mike Reeves efd641f0df Rename Storage to Search Nodes 2019-12-17 13:43:37 -05:00
Mike Reeves ef030c6a14 Merge pull request #155 from Security-Onion-Solutions/hive_init
Wait for TheHive before attempting to configure
2019-12-17 13:29:24 -05:00
Doug Burks d668bc3511 Merge pull request #151 from Security-Onion-Solutions/cyberchef_static
update Cyberchef to serve static files vs self-hosted
2019-12-17 13:20:45 -05:00
Wes Lambert 4a34ac7c05 wait for TheHive before attempting to configure 2019-12-17 13:34:01 +00:00
Wes Lambert 56d354b256 update Cyberchef to serve static files vs self-hosted 2019-12-16 21:22:00 +00:00
Wes Lambert d66eca1db4 add Bro extracted directory 2019-12-16 20:45:14 +00:00
Mike Reeves e49de63460 Helix - Final Parser Fixes 2019-12-13 13:59:29 -05:00
Mike Reeves fdbb223155 Helix - Add geo 2019-12-13 11:52:43 -05:00
Mike Reeves e263d72813 Setup - Add sensor pillar to Helix 2019-12-13 11:46:30 -05:00
Mike Reeves 4c89cb50bb Setup - update Helix Script 2019-12-12 23:12:08 -05:00
Mike Reeves d8d94b7dc5 Helix - Add API Key Option 2019-12-12 20:46:30 -05:00
Mike Reeves b04da4562c Merge pull request #163 from m0duspwnens/master
reverting for Security-Onion-Solutions#111
2019-12-12 16:54:36 -05:00
m0duspwnens 349d8f4bd7 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:40:24 -05:00
m0duspwnens cc7de9aee2 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:36:22 -05:00
m0duspwnens 481d52a5a8 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:21:57 -05:00
Mike Reeves 79d48f9e77 Logstash - Fix helix output typeo 2019-12-12 15:17:19 -05:00
Mike Reeves 70acb23976 Merge pull request #161 from weslambert/tcpreplay
add initial tcpreplay state
2019-12-12 15:10:51 -05:00
Mike Reeves bd9b1957ba Logstash - Fix helix output 2019-12-12 14:12:51 -05:00
Wes Lambert c47d163a32 add initial tcpreplay state 2019-12-11 19:39:03 +00:00
Mike Reeves 989641eb5a Setup - Fix prompts and disable onion user if iso 2019-12-11 13:44:40 -05:00
Mike Reeves 96bf8f66ff SSL - Fix helix mode ssl certs 2019-12-10 17:04:18 -05:00
Mike Reeves 72b481855f Setup - add jq and fix eval calculation of failure 2019-12-10 16:50:23 -05:00
Mike Reeves c83decc0a0 Helix - add firewall for mode helix 2019-12-10 14:44:10 -05:00
Mike Reeves 7386d800ae Helix - add filebeat config for helix 2019-12-10 14:06:20 -05:00
Mike Reeves e134071295 Helix - Change Parsers for Helix 2019-12-10 13:50:27 -05:00
Mike Reeves c46c539277 Helix - fix suricata.yml 2019-12-10 11:24:56 -05:00
Mike Reeves fe042ed2bb Filebeat State - Fix watch statement to only change on yml 2019-12-10 10:59:35 -05:00
Mike Reeves ce517dfebc Helix Mode - Fix SSL so Filebeat works properly 2019-12-10 10:40:28 -05:00
Mike Reeves ae3c428941 Helix Logstash Changes 2019-12-10 10:02:41 -05:00
Mike Reeves 54fd5254c0 Merge pull request #158 from m0duspwnens/master
changes for FireEye Helix integration
2019-12-09 17:22:34 -05:00
m0duspwnens 4874e540da changes for FireEye Helix integration 2019-12-09 17:18:12 -05:00
Mike Reeves 4c4cdb7189 Helix changes and Wazuh 2019-12-09 16:27:03 -05:00
Mike Reeves 3904c19333 Change Variables to UperCase 2019-12-09 10:04:14 -05:00
m0duspwnens 599341483e adding api key for Helix 2019-12-09 09:59:28 -05:00
Mike Reeves 362cd0487f Additional Helix Support 2019-12-09 09:52:52 -05:00
Mike Reeves 897e009231 Salt Top file for helix sensor 2019-12-08 19:21:16 -05:00
Mike Reeves d454216a4b Merge pull request #151 from m0duspwnens/master
update OS patch restart needed MOTD
2019-12-06 15:03:07 -05:00
Mike Reeves 100bcdd81d Merge pull request #152 from weslambert/master
Initial support for pre-loading custom fields in TheHive
2019-12-06 15:02:31 -05:00
Mike Reeves 880f57c424 Merge pull request #153 from defensivedepth/master
Playbook - scripts
2019-12-06 15:02:17 -05:00