weslambert
|
14dfec5365
|
Change to bro template
|
2020-03-09 09:18:57 -04:00 |
|
Josh Brower
|
e3916e5de2
|
Merge pull request #406 from Security-Onion-Solutions/feature/playbook-alerting
Playbook - Schedule Playbook rule updates
|
2020-03-09 08:58:39 -04:00 |
|
Josh Brower
|
a96465383f
|
Schedule Playbook rule updates
|
2020-03-09 08:57:31 -04:00 |
|
Wes Lambert
|
aeb298a818
|
fix typo
|
2020-03-06 18:49:29 +00:00 |
|
Wes Lambert
|
84df1db201
|
fix repo name
|
2020-03-06 17:45:16 +00:00 |
|
Wes Lambert
|
ed8adcae5a
|
add files back
|
2020-03-06 17:28:05 +00:00 |
|
Wes Lambert
|
6af6d7f5b6
|
fix typo
|
2020-03-06 16:17:04 +00:00 |
|
Wes Lambert
|
627d89c481
|
fix webhook
|
2020-03-06 16:16:02 +00:00 |
|
Wes Lambert
|
0bf125e88e
|
add Node scripts
|
2020-03-06 13:47:21 +00:00 |
|
Wes Lambert
|
19cff23a2b
|
restructure files
|
2020-03-06 13:14:52 +00:00 |
|
Wes Lambert
|
8bac9118fb
|
add flows
|
2020-03-06 13:13:34 +00:00 |
|
Wes Lambert
|
32f8d7c793
|
update init
|
2020-03-06 13:11:00 +00:00 |
|
Wes Lambert
|
73cbadfe5c
|
add complete directory to extracted
|
2020-03-05 15:49:22 +00:00 |
|
Wes Lambert
|
ee611d44cf
|
update file extraction script
|
2020-03-05 15:48:28 +00:00 |
|
Josh Patterson
|
79210a07da
|
Merge pull request #396 from Security-Onion-Solutions/issue/326
fix issue with salt not removing pipeline configs or templates if removed from pillar
|
2020-03-04 10:14:57 -05:00 |
|
m0duspwnens
|
28c4bb4b22
|
fix issue with salt not removing pipeline configs or templates if removed from pillar
|
2020-03-04 10:12:28 -05:00 |
|
Wes Lambert
|
a0522943f7
|
fix path
|
2020-03-03 22:40:46 +00:00 |
|
Wes Lambert
|
a8a93260a9
|
add file extraction
|
2020-03-03 22:40:06 +00:00 |
|
Wes Lambert
|
b1203cfb9f
|
add initial Strelka ingest config
|
2020-03-03 21:20:45 +00:00 |
|
Wes Lambert
|
4939884d93
|
Update Strelka init
|
2020-03-02 22:15:55 +00:00 |
|
Wes Lambert
|
bbebc4fc9b
|
Add src/dst objects and Bro template
|
2020-03-02 20:02:39 +00:00 |
|
Wes Lambert
|
ec6638a276
|
src/dst ip/port fields to ECS
|
2020-03-02 19:10:18 +00:00 |
|
Wes Lambert
|
e4fee51ed6
|
Change Bro Files source to file_source
|
2020-03-02 19:09:24 +00:00 |
|
Wes Lambert
|
9eb5a9be3a
|
Begin switch to ECS for Suricata
|
2020-03-02 19:07:40 +00:00 |
|
m0duspwnens
|
847e6d2d13
|
create pipelines directory
|
2020-02-26 16:38:47 -05:00 |
|
m0duspwnens
|
a3e48f0315
|
logstash cleanup and conflict resolution - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/326
|
2020-02-26 10:58:39 -05:00 |
|
m0duspwnens
|
54e4c40c2a
|
logstash cleanup and conflict resolution - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/326
|
2020-02-26 10:26:50 -05:00 |
|
m0duspwnens
|
0c4973ad77
|
pillarize logstash config,parsers,templates and docker port bindings
|
2020-02-25 17:44:32 -05:00 |
|
Wes Lambert
|
5d81bf3204
|
remove source
|
2020-02-25 12:36:35 +00:00 |
|
m0duspwnens
|
e2ccebd2fa
|
resolve conflicts
|
2020-02-20 17:00:15 -05:00 |
|
m0duspwnens
|
2b34bdece9
|
logstash cleanup - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/326
|
2020-02-20 16:47:40 -05:00 |
|
weslambert
|
fc9786e541
|
Change template name
|
2020-02-20 11:46:15 -05:00 |
|
weslambert
|
6945cbb843
|
Change template name
|
2020-02-20 11:45:50 -05:00 |
|
weslambert
|
30a1197b44
|
Rename template to avoid duplication under different name
|
2020-02-20 11:20:06 -05:00 |
|
m0duspwnens
|
7604853c59
|
fix logic for logstash pipelines
|
2020-02-19 16:02:24 -05:00 |
|
m0duspwnens
|
54e94676fe
|
fix pipelines variable
|
2020-02-19 14:59:39 -05:00 |
|
m0duspwnens
|
408b3695e0
|
add back deleted states to logstash state
|
2020-02-19 14:12:18 -05:00 |
|
m0duspwnens
|
c396342aea
|
fix syntax error with new ls pipeline config
|
2020-02-19 13:46:52 -05:00 |
|
m0duspwnens
|
6a7580404d
|
directory cleanup - logstash pipeline rework
|
2020-02-19 13:08:14 -05:00 |
|
Josh Brower
|
f9e07709f2
|
bpf fix
|
2020-02-18 16:36:20 -05:00 |
|
Wes Lambert
|
de6efffd95
|
Experimental: Node-RED
|
2020-02-18 05:04:51 +00:00 |
|
Wes Lambert
|
50fcf8307f
|
Add initia/basic Strelka config
|
2020-02-18 02:46:31 +00:00 |
|
Wes Lambert
|
64166f96a1
|
Ensure correct template is used
|
2020-02-17 21:15:11 +00:00 |
|
Wes Lambert
|
8d9ff4428b
|
Update Strelka LS config
|
2020-02-17 21:12:25 +00:00 |
|
Josh Brower
|
63c8515d87
|
SOCtopus.conf quick fix RE: playbook API
|
2020-02-17 07:48:54 -05:00 |
|
Josh Brower
|
6c37fbd020
|
Merge pull request #355 from Security-Onion-Solutions/feature/playbook-changes
Playbook - Schema changes & more
|
2020-02-14 16:40:28 -05:00 |
|
Josh Brower
|
240620caa3
|
Playbook - create play API
|
2020-02-14 16:38:02 -05:00 |
|
Mike Reeves
|
4caedca795
|
Update telegraf.conf
|
2020-02-13 15:27:45 -05:00 |
|
Mike Reeves
|
6f42c607f7
|
Update telegraf.conf
|
2020-02-13 15:08:00 -05:00 |
|
Wes Lambert
|
11319362c4
|
Fix Wazuh archives path
|
2020-02-13 18:47:45 +00:00 |
|