m0duspwnens
|
3b709e7877
|
remove cleaning of webpasswd1
|
2020-09-28 14:44:14 -04:00 |
|
Doug Burks
|
6e9e4dc99c
|
Hunt third magnifying glass should group output by event.module and event.dataset #1407
|
2020-09-28 14:19:55 -04:00 |
|
Mike Reeves
|
2cdf76473c
|
Add Registry back from cleanup
|
2020-09-28 14:19:43 -04:00 |
|
m0duspwnens
|
053b19de11
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/1093
|
2020-09-28 13:25:42 -04:00 |
|
m0duspwnens
|
bda9078843
|
check for invalid characters in fleet user password
|
2020-09-28 13:25:23 -04:00 |
|
Doug Burks
|
0516a9ddd5
|
Alerts page "Hunt for this field" action should quote field and group output #1406
|
2020-09-28 12:35:08 -04:00 |
|
m0duspwnens
|
85e53c53af
|
reject passwords with single or double quotes or backslashes
|
2020-09-28 11:51:19 -04:00 |
|
Mike Reeves
|
6a4d6f7a6d
|
Additional logic
|
2020-09-28 10:12:52 -04:00 |
|
William Wernert
|
66b7678df8
|
Merge pull request #1405 from Security-Onion-Solutions/feature/setup-cleanup
Feature/setup cleanup
|
2020-09-28 09:47:52 -04:00 |
|
William Wernert
|
3b9de2b7ca
|
Disable ipv6 earlier in setup
|
2020-09-28 09:14:45 -04:00 |
|
William Wernert
|
a60bf11daa
|
Make sure zeek log is only written on whiptail success
|
2020-09-28 09:11:50 -04:00 |
|
William Wernert
|
05729d216a
|
Don't direct user to check log in so-zeek-log, none exists
|
2020-09-28 08:45:59 -04:00 |
|
Doug Burks
|
3904295137
|
Hunt - improve HTTP queries #1401
|
2020-09-27 08:04:28 -04:00 |
|
Doug Burks
|
aa7f927ffd
|
Hunt - improve x509 queries #1400
|
2020-09-27 07:17:46 -04:00 |
|
Jason Ertel
|
68f18da832
|
Add alert query toggle filters for ack'd and escalated alerts
|
2020-09-25 17:03:42 -04:00 |
|
William Wernert
|
dc330a774e
|
Exit so-zeek-logs if user cancels
|
2020-09-25 16:30:16 -04:00 |
|
William Wernert
|
9acf610262
|
Also disable ipv6 for install
|
2020-09-25 16:10:26 -04:00 |
|
William Wernert
|
d76a4b1359
|
Show welcome screen on both iso and network installs
|
2020-09-25 14:59:27 -04:00 |
|
Doug Burks
|
11b200e9c0
|
Hunt - remove SMTP fields #1397
|
2020-09-25 14:17:14 -04:00 |
|
Doug Burks
|
20a56d0831
|
Hunt - add network.community_id column to Events table for more data types #1396
|
2020-09-25 13:18:28 -04:00 |
|
weslambert
|
6bfef773f2
|
Merge pull request #1392 from Security-Onion-Solutions/bugfix/config_dev_nullify
dev nullify so-config-backup cron job
|
2020-09-24 21:00:18 -04:00 |
|
weslambert
|
b3f9ee3b34
|
dev nullify so-config-backup cron job
|
2020-09-24 20:59:42 -04:00 |
|
Jason Ertel
|
c0be252f9f
|
SOC config adjustments for alerting
|
2020-09-24 16:37:27 -04:00 |
|
Josh Patterson
|
04f2595fa1
|
Merge pull request #1389 from Security-Onion-Solutions/issue/1388
fix common salt package name for salt.master state for ubuntu
|
2020-09-24 12:36:26 -04:00 |
|
Mike Reeves
|
e30958b9ec
|
Airgap SOUP changes
|
2020-09-24 11:41:02 -04:00 |
|
m0duspwnens
|
d9005c157d
|
fix common salt package name for salt.master state for ubuntu - https://github.com/Security-Onion-Solutions/securityonion/issues/1388
|
2020-09-24 11:26:58 -04:00 |
|
Doug Burks
|
62dbe425a6
|
Hunt - fix x509 eventFields #1387
|
2020-09-24 07:52:46 -04:00 |
|
Doug Burks
|
2b8b8e2f40
|
Hunt - fix file eventFields #1386
|
2020-09-24 07:44:28 -04:00 |
|
Doug Burks
|
60daacd6dc
|
Hunt - fix DHCP eventFields #1385
|
2020-09-24 07:34:29 -04:00 |
|
weslambert
|
a09002edae
|
Merge pull request #1384 from Security-Onion-Solutions/bugfix/config_backup
Add back missing # sign
|
2020-09-23 21:34:52 -04:00 |
|
weslambert
|
5b93c40ce4
|
Add back missing # sign
|
2020-09-23 21:34:10 -04:00 |
|
m0duspwnens
|
3ba8f47d9c
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/1093
|
2020-09-23 15:01:48 -04:00 |
|
m0duspwnens
|
6f7dbee36e
|
remove single quotes from secrets pillar
|
2020-09-23 14:57:26 -04:00 |
|
Mike Reeves
|
fd302c6363
|
make autocomplete with sudo work
|
2020-09-23 13:19:37 -04:00 |
|
m0duspwnens
|
70f98e2eea
|
take care single quotes if they are in the WEBPASSWD
|
2020-09-23 13:00:18 -04:00 |
|
m0duspwnens
|
b32bc8b542
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/1093
|
2020-09-23 12:07:12 -04:00 |
|
Mike Reeves
|
aca98e01f3
|
Set the path
|
2020-09-23 12:00:25 -04:00 |
|
Jason Ertel
|
2f7c0c34e6
|
Support backslashes in SOC passwords
|
2020-09-23 10:09:21 -04:00 |
|
weslambert
|
4f228c1b7c
|
Merge pull request #1379 from Security-Onion-Solutions/feature/config_backup
Feature/config backup
|
2020-09-23 09:58:05 -04:00 |
|
Wes Lambert
|
71734ddc0a
|
Add cron job to common state for daily config backup
|
2020-09-23 13:55:32 +00:00 |
|
Wes Lambert
|
57732b360e
|
Add config backup script
|
2020-09-23 13:47:14 +00:00 |
|
Wes Lambert
|
4d42d04cc3
|
Fix backup pillar definition
|
2020-09-23 13:45:42 +00:00 |
|
Wes Lambert
|
d02c440934
|
Add backup params to global.sls
|
2020-09-22 21:05:57 +00:00 |
|
m0duspwnens
|
77a9bf2697
|
test single quotes in secrets pillar
|
2020-09-22 13:16:20 -04:00 |
|
Josh Brower
|
18a881ccab
|
Merge pull request #1377 from Security-Onion-Solutions/bugfix/docker_cleanup
fix docker_clean syntax
|
2020-09-21 19:42:11 -04:00 |
|
Josh Brower
|
8bb527b4f1
|
fix docker_clean syntax
|
2020-09-21 19:41:39 -04:00 |
|
Jason Ertel
|
694635a38f
|
Add pivot to hunt as a new alerts quick action
|
2020-09-21 17:10:03 -04:00 |
|
Mike Reeves
|
0f1b92cea9
|
Update so-rule-update
|
2020-09-21 15:40:38 -04:00 |
|
Mike Reeves
|
48b17ee51a
|
Merge pull request #1375 from Security-Onion-Solutions/gaupgrade
Upgrade to GA including Docker Cleanup
|
2020-09-21 13:14:49 -04:00 |
|
Mike Reeves
|
d56a9e1f86
|
Upgrade to GA including Docker Cleanup
|
2020-09-21 13:14:06 -04:00 |
|