Josh Brower
|
6176fa7ca5
|
Add Fleet download retry
|
2023-05-26 16:46:02 -04:00 |
|
Jason Ertel
|
32021cf272
|
Merge pull request #10438 from Security-Onion-Solutions/jertel/redircurl
support forwarding urls
|
2023-05-26 13:42:57 -04:00 |
|
Jason Ertel
|
4410e136b1
|
Merge branch '2.4/dev' into jertel/redircurl
|
2023-05-26 12:12:09 -04:00 |
|
Jason Ertel
|
81d4584819
|
allow following redirects
|
2023-05-26 12:11:40 -04:00 |
|
Jason Ertel
|
657ef97d17
|
Merge pull request #10433 from Security-Onion-Solutions/kilo
Use common fail routine when explicitly aborting setup; Enhance cloud detection
|
2023-05-26 09:54:15 -04:00 |
|
Jason Ertel
|
8f247f962a
|
undo version for PR
|
2023-05-26 09:50:12 -04:00 |
|
Josh Patterson
|
bcbdab1682
|
Merge pull request #10435 from Security-Onion-Solutions/issue/10429
Issue/10429
|
2023-05-26 09:47:33 -04:00 |
|
m0duspwnens
|
5b4ec70ca6
|
fix typo on suricata annotations. add to global annotations
|
2023-05-26 09:37:57 -04:00 |
|
Jason Ertel
|
a2e6469a38
|
provide custom cloud detection path
|
2023-05-26 08:05:34 -04:00 |
|
m0duspwnens
|
5c933910aa
|
simplify map for updating suricata config if md engine is suricata
|
2023-05-25 17:25:54 -04:00 |
|
m0duspwnens
|
a3c3f08511
|
convert list to dict to work better with ui. regex on suricata vars HOME_NET for soc
|
2023-05-25 17:00:48 -04:00 |
|
Jason Ertel
|
9aa58be286
|
correct kilo version
|
2023-05-25 16:14:07 -04:00 |
|
Jason Ertel
|
db56b3d6a3
|
pin version to kilo
|
2023-05-25 15:27:05 -04:00 |
|
Jason Ertel
|
7d6182a18f
|
redir err to out to avoid leaks to console
|
2023-05-25 15:24:09 -04:00 |
|
Jason Ertel
|
074f84ae4d
|
flag all forced setup aborts
|
2023-05-25 14:57:58 -04:00 |
|
m0duspwnens
|
d99d4756c3
|
set defaults as example in soc ui for suricata cpu affinity
|
2023-05-25 11:11:53 -04:00 |
|
m0duspwnens
|
0d83b13585
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-25 11:04:04 -04:00 |
|
m0duspwnens
|
6505d3e2ce
|
update annotations for suricata
|
2023-05-25 11:03:37 -04:00 |
|
Josh Patterson
|
6edfadd18b
|
Merge pull request #10432 from Security-Onion-Solutions/distribsetup
Update so-functions
|
2023-05-25 10:44:33 -04:00 |
|
Josh Patterson
|
9552510c7d
|
Update so-functions
assign proper hostgroups for setup
|
2023-05-25 10:43:47 -04:00 |
|
Doug Burks
|
36ddcfa4e5
|
Merge pull request #10431 from Security-Onion-Solutions/dougburks-patch-1
Update README.md for Beta 3
|
2023-05-25 08:36:14 -04:00 |
|
Doug Burks
|
fcc1337e1a
|
Update README.md for Beta 3
|
2023-05-25 07:51:08 -04:00 |
|
Josh Patterson
|
a01704a1d7
|
Merge pull request #10427 from Security-Onion-Solutions/issue/10229
Issue/10229
|
2023-05-24 13:23:29 -04:00 |
|
m0duspwnens
|
5c00655ad0
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-24 12:22:52 -04:00 |
|
m0duspwnens
|
67a608ea56
|
adjust suricata defaults
|
2023-05-24 12:22:42 -04:00 |
|
Josh Brower
|
01d983fc00
|
Merge pull request #10426 from Security-Onion-Solutions/2.4/fleet-punchlist
2.4/fleet punchlist
|
2023-05-24 12:15:50 -04:00 |
|
Josh Brower
|
f156573f8d
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 11:28:38 -04:00 |
|
Josh Brower
|
b3e0e68896
|
Change Fleet Host URL API
|
2023-05-24 11:27:41 -04:00 |
|
Jason Ertel
|
aad08a830b
|
Merge pull request #10425 from Security-Onion-Solutions/kilo
fix malformed alert templates
|
2023-05-24 10:21:21 -04:00 |
|
Jason Ertel
|
d9a9c8738c
|
fix malformed alert templates
|
2023-05-24 10:17:59 -04:00 |
|
Josh Brower
|
4f72fca2d7
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 09:55:29 -04:00 |
|
Josh Patterson
|
1dc426b8ce
|
Merge pull request #10422 from Security-Onion-Solutions/issue/10229
fix suricata sostatus
|
2023-05-24 09:54:14 -04:00 |
|
m0duspwnens
|
8995012c80
|
fix suricata sostatus
|
2023-05-24 09:52:07 -04:00 |
|
Josh Brower
|
9c6365aa2f
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 09:03:57 -04:00 |
|
Josh Patterson
|
6e4c4febfb
|
Merge pull request #10421 from Security-Onion-Solutions/issue/10229
rename state to resolve conflicting / duplicate state ids
|
2023-05-24 09:02:47 -04:00 |
|
m0duspwnens
|
732d2aadf8
|
rename state to resolve conflicting / duplicate state ids
|
2023-05-24 08:58:43 -04:00 |
|
Josh Brower
|
e1c361e555
|
Fix variable
|
2023-05-23 16:50:40 -04:00 |
|
Josh Brower
|
502277b1b7
|
Hash check, use url base
|
2023-05-23 16:38:37 -04:00 |
|
bryant-treacle
|
57f5a22f0f
|
Merge pull request #10396 from Security-Onion-Solutions/2.4/Influxdb_alerts
2.4/influxdb alerts
|
2023-05-23 14:14:48 -04:00 |
|
Josh Patterson
|
4b18a0e758
|
Merge pull request #10417 from Security-Onion-Solutions/issue/10229
Issue/10229
|
2023-05-23 13:47:48 -04:00 |
|
Josh Brower
|
f6a9a764de
|
Merge pull request #10416 from Security-Onion-Solutions/2.4/smallfixes
2.4/EQL
|
2023-05-23 13:28:11 -04:00 |
|
m0duspwnens
|
e65214b097
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-23 12:10:29 -04:00 |
|
m0duspwnens
|
cc47f9a595
|
fix suricata thresholding
|
2023-05-23 11:16:32 -04:00 |
|
m0duspwnens
|
eb633be437
|
enable/disable suricata in ui. assign threads properly
|
2023-05-22 17:48:22 -04:00 |
|
Josh Brower
|
df0dc2e4d1
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/smallfixes
|
2023-05-22 16:02:30 -04:00 |
|
Josh Brower
|
766f4dd661
|
Add Elastic Defend Integration
|
2023-05-22 16:02:08 -04:00 |
|
Jason Ertel
|
f53fb69ffb
|
Merge pull request #10407 from Security-Onion-Solutions/kilo
Ignore Synchronize button clicks when an active salt job is running and another is already in queue
|
2023-05-22 14:59:42 -04:00 |
|
Jason Ertel
|
ba0ec18a33
|
Ignore Synchronize button clicks when an active salt job is running and another is already in queue
|
2023-05-22 14:52:07 -04:00 |
|
weslambert
|
79182cecfd
|
Merge pull request #10397 from Security-Onion-Solutions/fix/elastic_exclude_zeek_reporter_log
Exclude Zeek's reporter.log from being picked up by Elastic Agent
|
2023-05-22 07:56:54 -04:00 |
|
weslambert
|
8cf82c4b6a
|
Merge pull request #10398 from Security-Onion-Solutions/fix/elasticsearch_ingest_dns_query
Check if 'dns.query' is null
|
2023-05-22 07:56:44 -04:00 |
|