m0duspwnens
|
68abaa5e3c
|
update auth.map and curl.config to use new elasticsearch:auth pillar format
|
2021-05-28 14:03:21 -04:00 |
|
m0duspwnens
|
63b31de2b8
|
add additional users - manage file if user name isnt returned from grepping the file
|
2021-05-28 13:58:03 -04:00 |
|
m0duspwnens
|
18926009d3
|
remove unneeded curl.config template
|
2021-05-28 10:38:06 -04:00 |
|
m0duspwnens
|
423793ecf9
|
remove vault pg from testing
|
2021-05-27 13:50:22 -04:00 |
|
m0duspwnens
|
0134ceef16
|
merge and resolve conflict in elasticsearch state
|
2021-05-27 11:33:44 -04:00 |
|
m0duspwnens
|
dc8520df42
|
user curl.config for curl and elasticscripts
|
2021-05-26 18:04:30 -04:00 |
|
m0duspwnens
|
7263e35a89
|
happy little comment
|
2021-05-26 14:52:59 -04:00 |
|
m0duspwnens
|
4d991d3773
|
propogate users and users_roles
|
2021-05-26 14:52:10 -04:00 |
|
Jason Ertel
|
b43e6c5d6b
|
Salt will handle auto-sync
|
2021-05-26 13:51:24 -04:00 |
|
Jason Ertel
|
c531ef0773
|
Move user sync'd files to saltstack for grid propagation
|
2021-05-26 13:44:30 -04:00 |
|
Jason Ertel
|
a6a4c03029
|
Improve error scenarios for user sync; Ensure user sync runs before Elastic container starts
|
2021-05-26 12:08:10 -04:00 |
|
Jason Ertel
|
ec2f8fe6c8
|
Synchronize SOC passwords with Elastic
|
2021-05-25 17:16:05 -04:00 |
|
m0duspwnens
|
c3b2e1e8b2
|
dont show changes
|
2021-05-25 16:16:57 -04:00 |
|
m0duspwnens
|
e261c197f3
|
add elasticsearch.auth state to statnalone node
|
2021-05-25 13:46:18 -04:00 |
|
m0duspwnens
|
747dc77c92
|
comment out the hackery
|
2021-05-25 13:23:26 -04:00 |
|
m0duspwnens
|
35cc7b27e9
|
remove extra quote
|
2021-05-25 13:12:30 -04:00 |
|
m0duspwnens
|
58ec31d6c7
|
pass ELASTICAUTH to script
|
2021-05-25 12:02:41 -04:00 |
|
m0duspwnens
|
8d9d5a267a
|
generate elasticsearch.auth pillar if it doesnt exist
|
2021-05-25 11:52:58 -04:00 |
|
m0duspwnens
|
5a1e8d9fe9
|
update kibana scripts for elastic auth
|
2021-05-25 08:50:55 -04:00 |
|
m0duspwnens
|
bd301880ad
|
define the default
|
2021-05-24 16:32:30 -04:00 |
|
m0duspwnens
|
2deb703272
|
map users_roles and users conf into docker container
|
2021-05-24 16:30:55 -04:00 |
|
Jason Ertel
|
8c6489a49a
|
Initial pass at synchronizing users file
|
2021-05-24 15:48:05 -04:00 |
|
m0duspwnens
|
87609ba5d1
|
fix elasticcurl if auth is enabled
|
2021-05-24 15:44:01 -04:00 |
|
m0duspwnens
|
ba3a51387c
|
set default to False
|
2021-05-24 15:31:46 -04:00 |
|
m0duspwnens
|
a4226cc39a
|
use elastic map file
|
2021-05-24 15:14:05 -04:00 |
|
Jason Ertel
|
409eea677d
|
Continue removal of argon hashing
|
2021-05-24 11:50:53 -04:00 |
|
Jason Ertel
|
915b7aa2df
|
Switch Kratos config from argon2 to bcrypt12
|
2021-05-24 10:52:54 -04:00 |
|
m0duspwnens
|
e2d5102a0e
|
changes for script to auth to elastic
|
2021-05-24 10:13:29 -04:00 |
|
Jason Ertel
|
0572ea4095
|
Fail curl command if a failing status code is returned by the remote server
|
2021-05-21 17:27:11 -04:00 |
|
Jason Ertel
|
71032150c5
|
Add secure HTTP headers to all SO application responses to reduce exposure to browser and other HTTP-related vulnerabilities
|
2021-05-21 17:27:00 -04:00 |
|
William Wernert
|
c1dd4dafe4
|
Fix influx state
|
2021-05-21 12:41:10 -04:00 |
|
William Wernert
|
fe3aec173f
|
Merge branch 'master' into feature/merge-2.3.51
# Conflicts:
# VERSION
# salt/influxdb/init.sls
|
2021-05-21 12:31:54 -04:00 |
|
Jason Ertel
|
b440f73336
|
Truncate wait_for_web_response.log before each wait invocation
|
2021-05-19 18:37:08 -04:00 |
|
Josh Patterson
|
9b4325662b
|
Merge pull request #4218 from Security-Onion-Solutions/issue/4207
Issue/4207
|
2021-05-18 09:04:26 -04:00 |
|
m0duspwnens
|
ef32bff302
|
fix up soc.json
|
2021-05-17 18:29:27 -04:00 |
|
m0duspwnens
|
e50002e0ca
|
influx and grafana default for manager nodes - https://github.com/Security-Onion-Solutions/securityonion/issues/4207
|
2021-05-17 16:26:12 -04:00 |
|
m0duspwnens
|
54f9e3ff9d
|
remove leading space on comment line
|
2021-05-14 16:24:16 -04:00 |
|
m0duspwnens
|
231e07dbbd
|
circumvent file.patch putting ERROR in log if patch doesnt need applied
|
2021-05-14 15:19:45 -04:00 |
|
m0duspwnens
|
d3af06e7a4
|
handle exception if influxdb module doesnt exist
|
2021-05-13 11:00:42 -04:00 |
|
m0duspwnens
|
74f2a61b25
|
install influxdb and grafana during setup prior to final highstate
|
2021-05-13 09:06:47 -04:00 |
|
m0duspwnens
|
e3ce683970
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/3264
|
2021-05-07 14:48:16 -04:00 |
|
m0duspwnens
|
9eb63b17f9
|
exit if retry fails
|
2021-05-07 14:48:02 -04:00 |
|
Doug Burks
|
293fb0a76d
|
FEATURE: Pivot from Alerts/Hunt to CyberChef #4081
|
2021-05-07 13:23:46 -04:00 |
|
Doug Burks
|
2e228c8355
|
FEATURE: Pivot from Alerts/Hunt to CyberChef #4081
|
2021-05-07 13:22:03 -04:00 |
|
m0duspwnens
|
009f7617c1
|
check salt-master is responding
|
2021-05-07 12:47:22 -04:00 |
|
m0duspwnens
|
d0e084b8ea
|
change command to test if salt-master is accepting connections
|
2021-05-07 10:20:04 -04:00 |
|
m0duspwnens
|
46223e0b30
|
add quotes around minionid
|
2021-05-07 08:59:47 -04:00 |
|
m0duspwnens
|
5d3b147b42
|
change retry command
|
2021-05-06 20:32:26 -04:00 |
|
m0duspwnens
|
6474c296e1
|
dont need to specify dest rp
|
2021-05-06 20:26:13 -04:00 |
|
m0duspwnens
|
b8ad80ae35
|
update comment
|
2021-05-06 17:49:40 -04:00 |
|