m0duspwnens
bd5b597aed
heavynode
2020-01-29 12:56:25 -05:00
m0duspwnens
306cc1127b
heavynode
2020-01-29 12:56:25 -05:00
Wes Lambert
ef83d812d2
Set IP
2020-01-29 17:41:56 +00:00
Josh Brower
5213c19e44
Suricata - logfile fix
2020-01-29 09:30:03 -05:00
Mike Reeves
bd395b8356
Update filebeat.yml
2020-01-28 22:20:21 -05:00
weslambert
101c2a93d1
Merge pull request #269 from Security-Onion-Solutions/feature/so-status
...
feature/so-status
2020-01-28 22:13:47 -05:00
Josh Brower
3925ed52c7
Suricata - BPF hotfix
2020-01-28 22:02:18 -05:00
Mike Reeves
bf1187ad60
Merge pull request #270 from Security-Onion-Solutions/feature/bpf-zeek
...
Zeek - Initial BPF Support
2020-01-28 21:49:03 -05:00
Mike Reeves
357cfcbe78
Merge pull request #266 from Security-Onion-Solutions/fix/elastalert_indices
...
Update config.yaml for Elastalert shard/replica changes
2020-01-28 21:47:07 -05:00
Josh Brower
aa2fbc2d53
Zeek - Initial BPF support
2020-01-28 21:44:42 -05:00
Mike Reeves
745a92f217
Merge pull request #259 from Security-Onion-Solutions/fix/wazuh_whitelist
...
Don't restart when running whitelist script
2020-01-28 21:44:06 -05:00
William Wernert
5bd037e88c
Initial so-status script
2020-01-28 21:42:47 -05:00
William Wernert
50d4693a09
Merge branch 'dev' into feature/script-fixes
2020-01-28 21:39:41 -05:00
Josh Brower
492ad7035b
Merge pull request #268 from Security-Onion-Solutions/feature/nsm_clear
...
Feature/nsm clear
2020-01-28 21:01:04 -05:00
Wes Lambert
48ebc5e2e3
Fix data checks
2020-01-29 01:13:40 +00:00
Wes Lambert
5e0299e7bb
Add PCAP stop|start|restart scripts
2020-01-29 01:11:22 +00:00
Wes Lambert
41e5c6ae90
Add data deletion scripts
2020-01-29 00:57:58 +00:00
Wes Lambert
8b415b9db4
Update config.yaml for Elastalert shard/replica changes
2020-01-28 23:55:06 +00:00
Mike Reeves
149c10435e
Merge pull request #264 from Security-Onion-Solutions/feature/bpf-suricata
...
Suricata - Initial bpf support
2020-01-28 18:20:45 -05:00
Josh Brower
86689edf24
Merge branch 'dev' into feature/bpf-steno
2020-01-28 18:18:17 -05:00
Josh Brower
ae087c5552
Steno BPF tweaks
2020-01-28 16:53:19 -05:00
Josh Brower
f536e89064
Suricata bpf cleanup
2020-01-28 16:12:46 -05:00
Josh Brower
8204ffdd05
Suricata bpf - docker bind bpf file
2020-01-28 15:51:13 -05:00
Josh Brower
5403dab027
Suricata - Initial bpf support
2020-01-28 15:48:40 -05:00
Wes Lambert
c22753a8fb
Don't restart when running whitelist script
2020-01-28 19:42:59 +00:00
Mike Reeves
de369494ed
Merge pull request #252 from Security-Onion-Solutions/feature/bpf-steno
...
Steno BPF - cleanup & simplify
2020-01-28 10:18:23 -05:00
Mike Reeves
aeafc82677
Merge pull request #256 from Security-Onion-Solutions/fix/wazuh_restart
...
Update Wazuh scripts
2020-01-28 10:17:42 -05:00
Mike Reeves
1f501c0c7d
Merge pull request #254 from Security-Onion-Solutions/hotfix/auth-conf
...
hotfix/auth-conf
2020-01-28 10:16:55 -05:00
Mike Reeves
67d940048f
Merge pull request #257 from Security-Onion-Solutions/features/features_setup
...
Initial Features Support
2020-01-28 10:15:27 -05:00
Wes Lambert
38f42eafa5
Add Features enable script
2020-01-28 15:02:50 +00:00
Wes Lambert
b995b09d52
Update version in all state files
2020-01-28 14:59:53 +00:00
Wes Lambert
fbb9f099f9
Update Elastic state files
2020-01-28 14:49:58 +00:00
Wes Lambert
a9ccd17d89
Update Wazuh scripts
2020-01-28 14:34:19 +00:00
Wes Lambert
b754c88ab1
Add script for CVE-2020-0601
2020-01-28 13:08:10 +00:00
Wes Lambert
c38569d8a6
Add script for CVE-2020-0601
2020-01-28 13:07:37 +00:00
William Wernert
47f02389fc
Add so-auth to master and master/search
2020-01-27 15:23:35 -05:00
William Wernert
f22e5eb649
Fix for install error
2020-01-27 15:18:26 -05:00
William Wernert
67eda42c78
Merge branch 'dev' into feature/script-fixes
2020-01-27 15:03:20 -05:00
Josh Brower
7875436efd
Steno BPF - cleanup & simplify
2020-01-25 11:27:10 -05:00
m0duspwnens
d54a41a1f0
fix so-buildregistry from returning error
2020-01-24 15:08:09 -05:00
Josh Brower
3262854f4e
Steno - fix error name
2020-01-24 04:30:06 -05:00
Josh Brower
7dd30ef07e
Steno - fix disk percentage
2020-01-24 04:22:47 -05:00
Josh Brower
78527ab87c
Steno - BPF Config
2020-01-24 04:20:49 -05:00
William Wernert
3d4e805b60
Merge branch 'dev' into feature/script-fixes
2020-01-23 17:11:45 -05:00
William Wernert
4a288a0d63
[fix] Further .sh extension removal
...
* Remove more .sh extensions
* Edit jinja markup to prevent whitespace trimming
2020-01-23 17:03:03 -05:00
William Wernert
d4d5891c70
[fix] Remove require from hive init.sls
2020-01-23 16:58:26 -05:00
William Wernert
d2a7ef1e64
[fix] Misc script convention changes
...
* Remove sudo from scripts that are already running as sudo
* Also remove sudo from several so scripts and add sudo check
* Remove .sh extension from user facing scripts
* Remove superfluous # characters from so scripts
* Rename scripts to follow so-{subject}-{verb} naming convention
* Add shebangs where missing
2020-01-23 14:23:26 -05:00
Wes Lambert
e687def4dc
remove Cyberchef
2020-01-23 18:44:34 +00:00
Wes Lambert
d2c9689b44
update TheHive init
2020-01-23 18:35:04 +00:00
Mike Reeves
bf6c309f16
Update Registry to unpack new repo
2020-01-23 11:09:55 -05:00