Mike Reeves
|
68a667ee7c
|
Add thirfpartydefaults.yml
|
2021-05-12 15:31:19 -04:00 |
|
m0duspwnens
|
ad67167e97
|
remove whitespace control
|
2021-05-11 12:58:21 -04:00 |
|
m0duspwnens
|
4012a8276c
|
add template for module .yml file
|
2021-05-11 12:22:25 -04:00 |
|
m0duspwnens
|
efc028d0a5
|
handle the docker port bindings for filebeat modules
|
2021-05-10 18:08:47 -04:00 |
|
Mike Reeves
|
01a121e029
|
Add defaults.yml
|
2021-05-10 15:29:50 -04:00 |
|
Josh Patterson
|
26335a9b42
|
Merge pull request #4140 from Security-Onion-Solutions/issue/3264
https://github.com/Security-Onion-Solutions/securityonion/issues/3264
|
2021-05-10 08:14:12 -04:00 |
|
m0duspwnens
|
e3ce683970
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/3264
|
2021-05-07 14:48:16 -04:00 |
|
m0duspwnens
|
9eb63b17f9
|
exit if retry fails
|
2021-05-07 14:48:02 -04:00 |
|
Jason Ertel
|
407ad51244
|
Merge pull request #4139 from Security-Onion-Solutions/issue/4081
FEATURE: Pivot from Alerts/Hunt to CyberChef #4081
|
2021-05-07 13:31:21 -04:00 |
|
Doug Burks
|
293fb0a76d
|
FEATURE: Pivot from Alerts/Hunt to CyberChef #4081
|
2021-05-07 13:23:46 -04:00 |
|
Doug Burks
|
2e228c8355
|
FEATURE: Pivot from Alerts/Hunt to CyberChef #4081
|
2021-05-07 13:22:03 -04:00 |
|
m0duspwnens
|
009f7617c1
|
check salt-master is responding
|
2021-05-07 12:47:22 -04:00 |
|
m0duspwnens
|
d0e084b8ea
|
change command to test if salt-master is accepting connections
|
2021-05-07 10:20:04 -04:00 |
|
m0duspwnens
|
46223e0b30
|
add quotes around minionid
|
2021-05-07 08:59:47 -04:00 |
|
m0duspwnens
|
5d3b147b42
|
change retry command
|
2021-05-06 20:32:26 -04:00 |
|
m0duspwnens
|
6474c296e1
|
dont need to specify dest rp
|
2021-05-06 20:26:13 -04:00 |
|
m0duspwnens
|
b8ad80ae35
|
update comment
|
2021-05-06 17:49:40 -04:00 |
|
m0duspwnens
|
78240b4b52
|
change retry command
|
2021-05-06 17:49:02 -04:00 |
|
m0duspwnens
|
e7c716ede4
|
merge with dev, use retry to check if manager up instead of sleep in soup
|
2021-05-06 16:44:34 -04:00 |
|
m0duspwnens
|
fb986b5cff
|
set both log levels to error
|
2021-05-06 14:55:14 -04:00 |
|
m0duspwnens
|
a49f2e2d98
|
change log_level_logfile to error for /opt/so/log/salt/minion
|
2021-05-06 13:38:16 -04:00 |
|
Mike Reeves
|
90b3462ead
|
No recurse for you
|
2021-05-06 13:29:15 -04:00 |
|
m0duspwnens
|
da528e802f
|
ensure migration script doesnt migrate the current days data and fix downsample cq to move from so_short_term rp
|
2021-05-06 12:52:47 -04:00 |
|
Josh Brower
|
23b4327c28
|
Merge pull request #4072 from petiepooo/fix-sleep
fix 5-second sleep
|
2021-05-06 12:48:34 -04:00 |
|
Mike Reeves
|
1de768c182
|
Update HOTFIX
|
2021-05-06 12:02:05 -04:00 |
|
William Wernert
|
9f6dfa4d2e
|
Merge pull request #4112 from Security-Onion-Solutions/master
Bring hotfix changes into dev
|
2021-05-06 10:44:25 -04:00 |
|
Mike Reeves
|
96c20ea3cf
|
Merge pull request #4080 from Security-Onion-Solutions/hotfix2
GRIDFIX Hotfix
2.3.50GRIDFIX
|
2021-05-06 10:34:17 -04:00 |
|
Wes Lambert
|
728d1f7540
|
Make Zeek and Suricata great again
|
2021-05-06 14:06:17 +00:00 |
|
Wes Lambert
|
ee92ba20b0
|
Add modules path reference
|
2021-05-06 13:56:39 +00:00 |
|
Wes Lambert
|
1b749cf004
|
Additional config
|
2021-05-06 13:55:07 +00:00 |
|
Wes Lambert
|
37929dbd7d
|
Add additional config for Filebeat modules
|
2021-05-06 13:54:28 +00:00 |
|
Wes Lambert
|
865ba912f8
|
Merge remote-tracking branch 'remotes/origin/dev' into pipeline
|
2021-05-06 13:19:31 +00:00 |
|
m0duspwnens
|
9dbb9f519b
|
create so_short_term rp as default so that autogen can just be dropped once data is downsampled
|
2021-05-06 09:14:49 -04:00 |
|
m0duspwnens
|
20188549f7
|
add the logic for so-influxdb-migrate
|
2021-05-05 19:28:16 -04:00 |
|
m0duspwnens
|
925be17d51
|
clean some commas in so-influxdb-clean
|
2021-05-05 15:59:18 -04:00 |
|
m0duspwnens
|
0ea4c99102
|
remove support for months as it isnt supported in InfluxQL
|
2021-05-05 15:32:53 -04:00 |
|
m0duspwnens
|
db98b7ed27
|
verify with user before proceedig to clean
|
2021-05-05 15:08:11 -04:00 |
|
m0duspwnens
|
44de611097
|
rename to so-influxdb-clean
|
2021-05-05 14:57:39 -04:00 |
|
m0duspwnens
|
a5ee8fb59d
|
fix the issues with so-influxdb-clear
|
2021-05-05 14:56:53 -04:00 |
|
m0duspwnens
|
e532804474
|
move to proper dir
|
2021-05-05 13:42:21 -04:00 |
|
m0duspwnens
|
ce24781446
|
first take at so-infludb-clean
|
2021-05-05 13:29:24 -04:00 |
|
weslambert
|
c867d6648a
|
Merge pull request #4098 from Security-Onion-Solutions/delta
Add ignore above for message keyword field
|
2021-05-05 08:53:39 -04:00 |
|
m0duspwnens
|
8ae5ae7e57
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/3264
|
2021-05-05 08:33:47 -04:00 |
|
m0duspwnens
|
6a639edb05
|
have cq created once again
|
2021-05-05 08:33:31 -04:00 |
|
Wes Lambert
|
a1a79719fc
|
Add ignore above for message keyword field
|
2021-05-05 12:07:30 +00:00 |
|
m0duspwnens
|
c5f99b012e
|
comment out creation of cq to test data migration
|
2021-05-04 13:58:53 -04:00 |
|
m0duspwnens
|
fcd1bea4a3
|
remove auto data migration, change duration from 0s to 0d
|
2021-05-04 12:06:03 -04:00 |
|
Mike Reeves
|
0622c77a7f
|
Add filebeat modules
|
2021-05-04 10:50:13 -04:00 |
|
m0duspwnens
|
3dcaa1f6fb
|
more logging for influxdb migration
|
2021-05-04 10:37:25 -04:00 |
|
m0duspwnens
|
2d91e509fa
|
update wording
|
2021-05-04 10:34:13 -04:00 |
|