weslambert
|
4c74e7f308
|
Add event.kind and set name to module[dot]dataset
|
2021-06-02 15:35:26 -04:00 |
|
weslambert
|
db48c15f1d
|
Create event.kind field and rename dataset to be module[dot]dataset
|
2021-06-02 15:33:18 -04:00 |
|
weslambert
|
a1b34e7a88
|
Fix Suricata index name
|
2021-06-02 15:30:14 -04:00 |
|
Mike Reeves
|
9c9bcac61b
|
Update DNS queries
|
2021-06-02 15:01:14 -04:00 |
|
Mike Reeves
|
e42db3cd2d
|
Fix some hunt queries
|
2021-06-02 14:05:02 -04:00 |
|
Mike Reeves
|
e8cc88174f
|
Fix some hunt queries
|
2021-06-02 13:55:05 -04:00 |
|
Mike Reeves
|
7b7111e12c
|
Fix some hunt queries
|
2021-06-02 13:53:39 -04:00 |
|
Mike Reeves
|
77f13961ad
|
Merge remote-tracking branch 'remotes/origin/dev' into pipeline
|
2021-06-02 10:12:17 -04:00 |
|
Mike Reeves
|
e00fe0a732
|
Enable for all modes
|
2021-06-02 10:02:11 -04:00 |
|
Mike Reeves
|
5983eae3a8
|
fix filebeat module syntax
|
2021-06-01 17:47:13 -04:00 |
|
Mike Reeves
|
fd1de624c8
|
Disable TTY for filebeat script
|
2021-06-01 14:50:21 -04:00 |
|
Mike Reeves
|
73a0b31380
|
elastic pipeline enable
|
2021-06-01 12:12:20 -04:00 |
|
William Wernert
|
a94c598d00
|
Merge pull request #4333 from Security-Onion-Solutions/feature/show-version-in-setup
Show version in setup
|
2021-05-28 15:15:43 -04:00 |
|
William Wernert
|
d55a9e6274
|
Add version to all whiptail titles
|
2021-05-28 10:20:19 -04:00 |
|
William Wernert
|
ba011581ef
|
Add version to ending summary
|
2021-05-28 10:14:58 -04:00 |
|
Jason Ertel
|
1788ceccea
|
Merge pull request #4329 from Security-Onion-Solutions/fix/kibana_7.13.0
bump Kibana version to 7.13.0
|
2021-05-28 09:14:18 -04:00 |
|
doug
|
ada8255af0
|
bump version to 7.13.0
|
2021-05-28 08:59:40 -04:00 |
|
m0duspwnens
|
b23ce7462e
|
add depenency
|
2021-05-27 11:26:25 -04:00 |
|
Doug Burks
|
cf3dda6869
|
Merge pull request #4300 from j-bernal/patch-1
Update so-whiptail
|
2021-05-27 07:58:16 -04:00 |
|
Jason Ertel
|
d9c5976ed0
|
Merge pull request #4304 from Security-Onion-Solutions/feature/1596
add menu.actions.json and update soc.json
|
2021-05-26 16:41:30 -04:00 |
|
doug
|
aeea5701e4
|
completely disable both alerts.actions.json and hunt.actions.json
|
2021-05-26 16:34:05 -04:00 |
|
Mike Reeves
|
bfcde15a24
|
elastic pipeline test
|
2021-05-26 14:22:14 -04:00 |
|
doug
|
ee675546ac
|
add menu.actions.json and update soc.json
|
2021-05-26 14:09:00 -04:00 |
|
Mike Reeves
|
b525cfc787
|
Remove old modules
|
2021-05-26 11:07:53 -04:00 |
|
m0duspwnens
|
842aa97f7e
|
load filebeat modules when es container starts and if fb container is running
|
2021-05-26 11:00:18 -04:00 |
|
Mike Reeves
|
34d4eedf67
|
Remove old modules
|
2021-05-26 10:11:47 -04:00 |
|
Josh Brower
|
4a109d6af1
|
Merge pull request #4299 from Security-Onion-Solutions/feature/so-pcap-pull
Feature/so-pcap-export
|
2021-05-26 09:59:45 -04:00 |
|
John Bernal
|
cb40a76247
|
Update so-whiptail
Updated Zeek capitalization when prompting for the number of processes.
|
2021-05-26 09:55:14 -04:00 |
|
Josh Brower
|
ed249600d3
|
Merge remote-tracking branch 'remotes/origin/dev' into feature/so-pcap-pull
|
2021-05-26 09:52:58 -04:00 |
|
Josh Brower
|
0187c9d6df
|
Adds so-pcap-export
|
2021-05-26 09:51:37 -04:00 |
|
m0duspwnens
|
525d4325c7
|
define ZEEKLOGLOOKUP in the yaml
|
2021-05-25 17:18:58 -04:00 |
|
m0duspwnens
|
ecf7e25a51
|
fix merge conflict
|
2021-05-25 17:16:44 -04:00 |
|
m0duspwnens
|
dfaf40f583
|
add zeekloglookup to translate zeeklogs to filebeat filesets
|
2021-05-25 17:14:26 -04:00 |
|
Mike Reeves
|
543154f037
|
Remove old modules
|
2021-05-25 16:58:18 -04:00 |
|
Mike Reeves
|
cd3e355f84
|
Fix zeek depth
|
2021-05-25 16:54:20 -04:00 |
|
m0duspwnens
|
2eee6b45bc
|
Merge branch 'pipeline' of https://github.com/Security-Onion-Solutions/securityonion into pipeline
|
2021-05-25 16:52:08 -04:00 |
|
m0duspwnens
|
0de5c6f204
|
fix sodefault modules
|
2021-05-25 16:52:02 -04:00 |
|
Mike Reeves
|
9363fc153c
|
Fix pillar for module
|
2021-05-25 16:44:13 -04:00 |
|
m0duspwnens
|
2aacd5b9b6
|
so defaults filebeat modules
|
2021-05-25 16:40:50 -04:00 |
|
William Wernert
|
67828a86c1
|
Merge pull request #4289 from Security-Onion-Solutions/foxtrot
Soup error handling, reorder sensoroni state
|
2021-05-25 12:42:01 -04:00 |
|
William Wernert
|
94af55a951
|
Fix typo
|
2021-05-25 11:25:37 -04:00 |
|
William Wernert
|
192cec1825
|
Change how version with dashes are handled by so-docker-prune
|
2021-05-25 11:25:12 -04:00 |
|
Mike Reeves
|
1e564c2140
|
Fix zeek jinja
|
2021-05-25 10:22:36 -04:00 |
|
William Wernert
|
7e008378ba
|
Replace string with variable, remove unnecessary text
|
2021-05-25 09:23:44 -04:00 |
|
William Wernert
|
dbc4ffd69a
|
Fix typo
|
2021-05-25 09:20:45 -04:00 |
|
Mike Reeves
|
5e5d30a377
|
Fix 3rd party modules
|
2021-05-25 08:26:25 -04:00 |
|
William Wernert
|
3bc0def02a
|
Add failure message to salt-master check
|
2021-05-24 16:45:05 -04:00 |
|
William Wernert
|
ffd5bfc480
|
Force images from automated branches to a very high semver
|
2021-05-24 15:25:03 -04:00 |
|
William Wernert
|
dcb89b704a
|
Move sensoroni state out of the * block of top.sls
Resolves #3559
|
2021-05-24 13:45:12 -04:00 |
|
William Wernert
|
686c7c5a6c
|
Add exception handling for docker API error to so-docker-prune
|
2021-05-24 13:26:43 -04:00 |
|