Josh Brower
|
a6e907f76c
|
Tag Playbook Alerts
|
2023-07-11 08:03:15 -04:00 |
|
Josh Brower
|
2d3eb22057
|
Merge pull request #10732 from Security-Onion-Solutions/2.4/autogenfix
Exclude Import and Eval from autoupdate
|
2023-07-10 17:18:10 -04:00 |
|
Josh Brower
|
8437fcd94c
|
Exclude Import and Eval from autoupdate
|
2023-07-10 17:10:08 -04:00 |
|
Josh Brower
|
1b25db4573
|
Merge pull request #10680 from Security-Onion-Solutions/2.4/fleetautogen
Automatically manage Fleet Logstash Config
|
2023-07-10 16:26:20 -04:00 |
|
m0duspwnens
|
f8ed2e6e8e
|
make parent dirs
|
2023-07-10 16:11:45 -04:00 |
|
m0duspwnens
|
f22c61a0a2
|
use su instead of runuser since logCmd has issues with runuser
|
2023-07-10 15:19:41 -04:00 |
|
m0duspwnens
|
5069d1163c
|
only *.yar files
|
2023-07-10 14:36:34 -04:00 |
|
Josh Brower
|
31edf2e8ea
|
Tighten & Document Pipelines
|
2023-07-10 14:17:42 -04:00 |
|
Wes
|
6b8893ded5
|
Update saved objects
|
2023-07-10 18:13:34 +00:00 |
|
m0duspwnens
|
1f8b7bda89
|
fix output_dir var
|
2023-07-10 13:39:31 -04:00 |
|
m0duspwnens
|
59233d6550
|
use full path
|
2023-07-10 11:43:56 -04:00 |
|
m0duspwnens
|
1ac72e5b24
|
ensure /nsm/rules/yara directory exists
|
2023-07-10 11:10:37 -04:00 |
|
Josh Brower
|
7805ca8beb
|
Add Failover Support
|
2023-07-10 10:38:14 -04:00 |
|
m0duspwnens
|
47b2481cdd
|
nothing in strelka/tools/sbin_jinja to file.recurse
|
2023-07-10 10:29:19 -04:00 |
|
m0duspwnens
|
fa933d3f53
|
use file_mode
|
2023-07-10 10:26:30 -04:00 |
|
m0duspwnens
|
f4dc73a206
|
yara download and update
|
2023-07-10 09:42:37 -04:00 |
|
Doug Burks
|
437c9cab68
|
Merge pull request #10726 from Security-Onion-Solutions/dougburks-patch-1
Update README.md
|
2023-07-10 09:07:11 -04:00 |
|
Wes
|
6da96a733f
|
Use tags instead of dataset
|
2023-07-10 13:06:38 +00:00 |
|
Doug Burks
|
82796370ce
|
Update README.md
|
2023-07-10 09:04:55 -04:00 |
|
Josh Brower
|
8c16feb772
|
Rename Fleet pipelines
|
2023-07-09 12:22:55 -04:00 |
|
Josh Brower
|
ce1f363424
|
Allow base_url
|
2023-07-08 13:30:19 -04:00 |
|
Josh Brower
|
e8860a7d2c
|
Fix perms
|
2023-07-08 09:04:55 -04:00 |
|
Josh Brower
|
beb26596fd
|
Merge remote-tracking branch 'origin/2.4/dev' into 2.4/fleetautogen
|
2023-07-07 19:12:47 -04:00 |
|
m0duspwnens
|
6a5ff04804
|
remove unneeded function
|
2023-07-07 16:45:51 -04:00 |
|
Josh Brower
|
ff3bb11fbb
|
Elastic Fleet Certs Refactor
|
2023-07-07 16:44:16 -04:00 |
|
m0duspwnens
|
8be5082b60
|
yara scripts
|
2023-07-07 16:43:26 -04:00 |
|
coreyogburn
|
5faa4f0a30
|
Merge pull request #10720 from Security-Onion-Solutions/cogburn/8908
Allow an additional kratos endpoint through
|
2023-07-07 13:17:32 -06:00 |
|
Corey Ogburn
|
da7770a900
|
Allow an additional kratos endpoint through
The /auth/self-service/errors route is used to lookup auth issues so the route must also be proxied to kratos.
|
2023-07-07 12:47:55 -06:00 |
|
weslambert
|
8178338971
|
Merge pull request #10717 from Security-Onion-Solutions/fix/strelka_rules
Change path
|
2023-07-07 13:45:02 -04:00 |
|
weslambert
|
79ed17b506
|
Change path
|
2023-07-07 13:31:43 -04:00 |
|
Josh Patterson
|
2785587840
|
Merge pull request #10714 from Security-Onion-Solutions/remove_so-logstash-get-unparsed
remove so-logstash-get-unparsed, use so-redis-count instead
|
2023-07-07 09:53:54 -04:00 |
|
weslambert
|
9f95306458
|
Merge pull request #10708 from Security-Onion-Solutions/fix/elasticsearch_templates_hn
Fix heavy node Elasticsearch template load
|
2023-07-07 09:52:54 -04:00 |
|
m0duspwnens
|
55bed0771b
|
remove so-logstash-get-unparsed, use so-redis-count instead
|
2023-07-07 09:52:21 -04:00 |
|
Wes
|
0b5ee49873
|
Fix inverted logic for component template
|
2023-07-06 20:46:35 +00:00 |
|
Jason Ertel
|
1646459052
|
Merge pull request #10707 from Security-Onion-Solutions/kilo
add default pillar file
|
2023-07-06 14:49:40 -04:00 |
|
Jason Ertel
|
8ec003d89f
|
add default pillar file
|
2023-07-06 14:47:21 -04:00 |
|
Jason Ertel
|
224f0606c2
|
Merge pull request #10706 from Security-Onion-Solutions/kilo
incorporate features pillar
|
2023-07-06 14:04:12 -04:00 |
|
Wes
|
910125f13a
|
Restructure logic
|
2023-07-06 17:49:06 +00:00 |
|
Jason Ertel
|
5eca1acbeb
|
incorporate features pillar
|
2023-07-06 13:24:45 -04:00 |
|
Wes
|
d551faeb16
|
Heavy node template considerations
|
2023-07-06 17:19:28 +00:00 |
|
Josh Patterson
|
6a6afeef75
|
Merge pull request #10704 from Security-Onion-Solutions/patch/x509_v2
Patch/x509 v2
|
2023-07-06 11:43:33 -04:00 |
|
m0duspwnens
|
869f60ccaa
|
cipher deprecated for x509_+v2
|
2023-07-06 10:51:44 -04:00 |
|
m0duspwnens
|
12c82d2812
|
bits deprecation to keysize
|
2023-07-06 10:49:32 -04:00 |
|
m0duspwnens
|
a2b50c6d40
|
remove quote
|
2023-07-06 10:25:19 -04:00 |
|
m0duspwnens
|
ab7ae6cddd
|
fix cp for x509_v2.py
|
2023-07-06 10:17:14 -04:00 |
|
m0duspwnens
|
7a9a12ae3d
|
fix cp for x509_v2.py
|
2023-07-06 10:03:12 -04:00 |
|
m0duspwnens
|
b49a296276
|
we can remove the unless in ssl state since x509_v2 is patched
|
2023-07-06 09:44:58 -04:00 |
|
Josh Patterson
|
9b9321d23a
|
Merge pull request #10698 from Security-Onion-Solutions/issue/10468
disable salt schedule after highstate then enable later in setup
|
2023-07-05 14:56:31 -04:00 |
|
m0duspwnens
|
1922ad95d5
|
disable salt schedule after highstate then enable later in setup
|
2023-07-05 13:43:54 -04:00 |
|
Josh Patterson
|
9de8814412
|
Merge pull request #10692 from Security-Onion-Solutions/issue/10545
Issue/10545
|
2023-07-03 11:05:55 -04:00 |
|