Wes Lambert
|
e086db3de6
|
update key name
|
2020-04-13 16:09:06 +00:00 |
|
Mike Reeves
|
b70d19781d
|
Fix Filebeat Yaml
|
2020-04-09 13:58:19 -04:00 |
|
Mike Reeves
|
5a985736e5
|
Disable Strelka for all things
|
2020-04-09 11:49:38 -04:00 |
|
Mike Reeves
|
8ffeb0a33d
|
Fix Wazuh and Strelka
|
2020-04-09 11:45:45 -04:00 |
|
Wes Lambert
|
ad5626f407
|
update variables
|
2020-04-06 13:09:52 +00:00 |
|
Wes Lambert
|
eb0c23387b
|
specify ES vs LS in FB config
|
2020-04-02 20:01:49 +00:00 |
|
Josh Brower
|
5ca9a643a8
|
Merge branch 'dev' into feature/osquery-ingest
|
2020-04-01 10:19:35 -04:00 |
|
Josh Brower
|
0e76447d11
|
osquery ingest - initial support
|
2020-04-01 10:17:36 -04:00 |
|
Wes Lambert
|
6cc757e1de
|
add strelka index
|
2020-04-01 13:02:36 +00:00 |
|
Wes Lambert
|
70422809ec
|
add category
|
2020-04-01 12:59:10 +00:00 |
|
Wes Lambert
|
9bbcc185aa
|
change Strelka log location
|
2020-04-01 12:57:51 +00:00 |
|
Wes Lambert
|
68138e009a
|
update FB config
|
2020-03-31 00:37:58 +00:00 |
|
Josh Brower
|
9bcba41882
|
Feature/Fleet-Standalone
|
2020-03-24 20:57:24 -04:00 |
|
Wes Lambert
|
150eaf59fd
|
don't load FB template
|
2020-03-18 20:05:42 +00:00 |
|
Wes Lambert
|
8bea56eccf
|
change prospectors to inputs
|
2020-03-17 15:17:52 +00:00 |
|
Wes Lambert
|
85c1873f4d
|
switch logging to error
|
2020-03-14 12:10:06 +00:00 |
|
Wes Lambert
|
d2016d3ff2
|
modify Filebeat config
|
2020-03-14 12:05:16 +00:00 |
|
Mike Reeves
|
048c77695d
|
Fix Filebeat
|
2020-01-30 15:47:51 -05:00 |
|
m0duspwnens
|
306cc1127b
|
heavynode
|
2020-01-29 12:56:25 -05:00 |
|
Mike Reeves
|
bd395b8356
|
Update filebeat.yml
|
2020-01-28 22:20:21 -05:00 |
|
Wes Lambert
|
eea08f3515
|
add back helix
|
2019-12-20 01:24:20 +00:00 |
|
Wes Lambert
|
c597dd2fb4
|
Strelka - Filebeat config
|
2019-12-18 03:22:30 +00:00 |
|
Mike Reeves
|
7386d800ae
|
Helix - add filebeat config for helix
|
2019-12-10 14:06:20 -05:00 |
|
Mike Reeves
|
776cc89520
|
Filebeat Module - Issue 61
|
2019-10-16 11:22:54 -04:00 |
|
Wes Lambert
|
5bd77a5177
|
update log path
|
2019-09-24 20:37:07 +00:00 |
|
Mike Reeves
|
f1ae2617c2
|
Filebeat Module - Change log dir mapping
|
2019-08-14 08:44:54 -04:00 |
|
Mike Reeves
|
a9f592a53b
|
Filebeat Module - Move logging to the top
|
2019-08-13 09:37:41 -04:00 |
|
Mike Reeves
|
e36b178e1c
|
Filebeat Module - Change logging to error
|
2019-08-13 09:27:38 -04:00 |
|
Mike Reeves
|
0876566317
|
Filebeat Module - Change port for internal filebeat traffic
|
2019-06-10 18:27:03 -04:00 |
|
Mike Reeves
|
49357f4947
|
Filebeat Module - Make it log to a file
|
2019-01-23 13:38:59 -05:00 |
|
Josh Brower
|
44eed120cb
|
add osquery logs if fleet is enabled
|
2018-12-28 13:49:53 -05:00 |
|
Wes Lambert
|
d13e7559fe
|
Filebeat - Enabled for master and only enable Bro/Suri inputs when needed
|
2018-12-13 17:32:03 +00:00 |
|
Wes Lambert
|
54c35cdc0d
|
Filebeat - Add Wazuh archive logs
|
2018-12-12 20:51:41 +00:00 |
|
Wes Lambert
|
0f5fbadaf5
|
Filebeat - Switch negation to equals
|
2018-12-10 20:17:41 +00:00 |
|
Wes Lambert
|
e70db05a0f
|
Filebeat - Modify config for Wazuh alerts
|
2018-12-10 19:50:55 +00:00 |
|
Wes Lambert
|
e355503324
|
Filebeat - Update for Wazuh logs
|
2018-12-07 13:38:31 +00:00 |
|
Wes Lambert
|
2695a8e1a7
|
Filebeat - Modify config for IDS type
|
2018-11-30 13:15:35 +00:00 |
|
Mike Reeves
|
0a3c20fccf
|
Suricata Module - Fix Jinja
|
2018-11-13 14:10:21 -05:00 |
|
Mike Reeves
|
a70b7ed3de
|
Suricata Meta Data Option
|
2018-11-13 11:25:30 -05:00 |
|
Mike Reeves
|
90d55104c6
|
Filebeat Module - Fix bro logs to make them work
|
2018-10-25 22:43:19 -04:00 |
|
Mike Reeves
|
fde7f4352a
|
Filebeat Module - Fix master in yml
|
2018-10-18 23:25:32 -04:00 |
|
Mike Reeves
|
5374265a25
|
Filebeat Module - Fix master in yml
|
2018-10-18 22:43:09 -04:00 |
|
Mike Reeves
|
41e3b04b25
|
Logstash Module - Sensors now show up correclty
|
2018-10-16 21:00:04 -04:00 |
|
Mike Reeves
|
335ac02720
|
Logstash Module - Change it to arrays
|
2018-10-16 17:25:21 -04:00 |
|
Mike Reeves
|
57039d83c8
|
Logstash Module - Change some fields so dashboards load
|
2018-10-16 16:21:50 -04:00 |
|
Mike Reeves
|
b0293c24b5
|
Logstash Module - Disable freq and modify some configs
|
2018-10-16 14:53:48 -04:00 |
|
Mike Reeves
|
ff98cdb30b
|
Filebeat Module - Change the filebeat.yml
|
2018-10-16 10:20:00 -04:00 |
|
Mike Reeves
|
66d2a7db94
|
Filebeat Module - Fix some spacing and syntax
|
2018-10-15 20:32:28 -04:00 |
|
Mike Reeves
|
4288f8ce62
|
FileBeat Module - Add new pillar for logtypes and walk it
|
2018-10-15 19:18:56 -04:00 |
|
Mike Reeves
|
e89f58dff0
|
Filebeat Module - Change key to normal key
|
2018-10-09 12:41:51 -04:00 |
|