weslambert
|
4edd729596
|
Add initial supported observable matrix/table
|
2022-04-27 08:58:34 -04:00 |
|
Wes Lambert
|
76f183b112
|
Add Greynoise analyzer and tests
|
2022-04-26 17:25:35 +00:00 |
|
Wes Lambert
|
bd63753d80
|
Update analyzer name/description
|
2022-04-25 19:27:10 +00:00 |
|
Wes Lambert
|
15fcaa7030
|
Add localfile analyzer and tests
|
2022-04-25 19:23:35 +00:00 |
|
Jason Ertel
|
d8fdf2b701
|
Merge branch 'dev' into kilo
|
2022-04-22 15:11:24 -04:00 |
|
Jason Ertel
|
459d388614
|
Only override nameservers if the first nameserver given is non empty
|
2022-04-22 15:08:56 -04:00 |
|
Wes Lambert
|
fbf6e64e67
|
Add initial OTX analyzer and tests
|
2022-04-22 17:13:40 +00:00 |
|
weslambert
|
542db5b7f5
|
Update defaults.yaml
|
2022-04-21 17:24:24 -04:00 |
|
Wes Lambert
|
b2db32a2c7
|
Add function/test for non-existent VT api_key
|
2022-04-21 17:33:24 +00:00 |
|
Wes Lambert
|
9287d6adf7
|
Reduce size of test output for test
|
2022-04-21 16:56:22 +00:00 |
|
Wes Lambert
|
c8e189f35a
|
Add source-packages for JA3er
|
2022-04-21 16:46:45 +00:00 |
|
Wes Lambert
|
5afcc8de4f
|
Add JA3er analyzer and associated test
|
2022-04-21 16:42:46 +00:00 |
|
weslambert
|
d7eed52fae
|
Change -f to -r
|
2022-04-21 09:46:44 -04:00 |
|
Doug Burks
|
e608285341
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:57:08 -04:00 |
|
Doug Burks
|
04856540dc
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:54:09 -04:00 |
|
Doug Burks
|
feb7eeeb8e
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:47:40 -04:00 |
|
Doug Burks
|
1edb443c5d
|
so-playbook-sync pgrep should be more strict to avoid multiple matches on Ubuntu
|
2022-04-20 16:48:26 -04:00 |
|
Doug Burks
|
8fc03afdc0
|
so-sensor-clean pgrep should be more strict to avoid matching multiples on Ubuntu
|
2022-04-20 16:47:18 -04:00 |
|
Doug Burks
|
15ef0968d9
|
FIX: Improve Zeek file extraction #7829
|
2022-04-20 14:01:46 -04:00 |
|
Jason Ertel
|
aeb70dad8f
|
Doc updates
|
2022-04-19 14:31:21 -04:00 |
|
Jason Ertel
|
4129cef9fb
|
Add new spamhaus analyzer
|
2022-04-19 12:12:52 -04:00 |
|
m0duspwnens
|
807f6adf1e
|
add securityonion-strelka-oneshot and securityonion-strelka-fileshot to workstation
|
2022-04-19 09:19:09 -04:00 |
|
Jason Ertel
|
0cb73d8f6a
|
Merge branch 'dev' into kilo
|
2022-04-18 11:04:32 -04:00 |
|
Josh Brower
|
b35b505f0a
|
Fix pattern matching
|
2022-04-18 10:39:04 -04:00 |
|
Josh Brower
|
2b39570b08
|
Fix matching logic
|
2022-04-18 10:37:38 -04:00 |
|
Jason Ertel
|
159122b52c
|
Merge branch 'dev' into kilo
|
2022-04-18 10:11:37 -04:00 |
|
Doug Burks
|
0eda9a3bd7
|
move thehive removal from up_to_2.3.120 to post_to_2.3.120
|
2022-04-15 15:45:01 -04:00 |
|
Josh Brower
|
bd19da1878
|
Remove thehive entries from so-status
|
2022-04-15 12:21:56 -04:00 |
|
m0duspwnens
|
02c19da3c4
|
remove influxdb module patched state files when salt is upgraded
|
2022-04-14 15:00:14 -04:00 |
|
m0duspwnens
|
371fda09db
|
fix copy paste fail
|
2022-04-13 14:28:05 -04:00 |
|
m0duspwnens
|
149375115e
|
warn about required reboot and prompt if reboot desired at completion of install
|
2022-04-13 14:26:14 -04:00 |
|
m0duspwnens
|
4728bea633
|
fix typo
|
2022-04-13 14:03:09 -04:00 |
|
m0duspwnens
|
3ee09db752
|
added warning about installing and ensure can only install workstation on centos
|
2022-04-13 13:39:48 -04:00 |
|
m0duspwnens
|
6477e6c5a2
|
added warning about installing and ensure can only install workstation on centos
|
2022-04-13 13:39:39 -04:00 |
|
m0duspwnens
|
2389d3fac9
|
modify so-analyst-install to work with new states and install on managers
|
2022-04-13 12:32:05 -04:00 |
|
Mike Reeves
|
8408628b03
|
Stop thehive on soup
|
2022-04-12 13:54:08 -04:00 |
|
Mike Reeves
|
02f4cd9926
|
Replace salt code on a saltstack update
|
2022-04-12 12:15:22 -04:00 |
|
Mike Reeves
|
c1824e9f17
|
Replace salt code on a saltstack update
|
2022-04-12 11:55:45 -04:00 |
|
Mike Reeves
|
081d7e3a09
|
Replace salt code on a saltstack update
|
2022-04-12 11:20:26 -04:00 |
|
Josh Patterson
|
dbddff7be7
|
Merge pull request #7766 from Security-Onion-Solutions/issue/7763
Issue/7763
|
2022-04-11 16:44:04 -04:00 |
|
Josh Brower
|
886d69fb38
|
Compress + Clean ES & Logstash App Logs
|
2022-04-11 16:09:24 -04:00 |
|
m0duspwnens
|
d68b6e7c9a
|
only start if exit code != 0
|
2022-04-11 16:03:00 -04:00 |
|
m0duspwnens
|
d102ca298d
|
move messages about starting services on soup failure before exit message
|
2022-04-11 16:01:36 -04:00 |
|
m0duspwnens
|
9914148441
|
more verbose
|
2022-04-11 15:51:11 -04:00 |
|
m0duspwnens
|
464772d7d3
|
start salt-master and salt-minion service is soup fails and exits
|
2022-04-11 15:43:09 -04:00 |
|
m0duspwnens
|
2a18059ad9
|
use quotes
|
2022-04-11 15:37:07 -04:00 |
|
m0duspwnens
|
01510c184a
|
set_os and set_cron_service_name sooner
|
2022-04-11 15:36:02 -04:00 |
|
m0duspwnens
|
6ed8694008
|
dont need to pass -t
|
2022-04-11 15:11:57 -04:00 |
|
m0duspwnens
|
79dc2374e0
|
check that salt-master is running before requiring manager
|
2022-04-11 15:09:00 -04:00 |
|
m0duspwnens
|
a2180a6721
|
ensure salt-master service is running before proceeding with soup
|
2022-04-11 15:01:41 -04:00 |
|