weslambert
6f1f7d2a63
Merge pull request #5905 from Security-Onion-Solutions/feature/soc_es_index_pattern
...
Allow setting ES index patterns for SOC in pillar
2021-10-15 13:28:04 -04:00
Wes Lambert
8feeff97b5
Add EG index pattern during setup (if enabled)
2021-10-15 16:19:19 +00:00
Wes Lambert
032373187c
Allow setting ES index patterns for SOC in pillar
2021-10-15 16:02:53 +00:00
William Wernert
db2b70f655
Merge pull request #5900 from Security-Onion-Solutions/foxtrot
...
Replace rather than append to Kibana misc log
2021-10-15 10:27:25 -04:00
Mike Reeves
8a5960c220
Merge pull request #5896 from Security-Onion-Solutions/kilo
2021-10-14 18:05:33 -04:00
Jason Ertel
9797a15218
Fix issue with 'so-user delete' resetting all user roles - note that this function is not technically supported or published since it's not intended for production use
2021-10-14 17:23:18 -04:00
William Wernert
c7b15a9b1f
Replace rather than append to Kibana misc log
2021-10-14 15:13:55 -04:00
William Wernert
cba97802fe
Fix indent
2021-10-14 15:13:34 -04:00
William Wernert
025256aeaf
Merge pull request #5890 from Security-Onion-Solutions/foxtrot
...
Misc setup changes
2021-10-14 14:55:24 -04:00
weslambert
490f7eaf81
Merge pull request #5886 from Security-Onion-Solutions/feature/eg_pivot
...
Add EG pivot
2021-10-14 14:49:38 -04:00
Wes Lambert
f1fafa015e
Add EG to list of groups to include 127.0.0.1
2021-10-14 16:27:28 +00:00
Wes Lambert
6cdc214582
Add pillar in setup and change name of EG variable
2021-10-14 15:33:37 +00:00
Wes Lambert
15049f44b9
Add EG pivot
2021-10-14 15:15:23 +00:00
Doug Burks
42a642b85c
Merge pull request #5873 from petiepooo/enh-rediscount-tty
...
featreq: remove tty flag in redis-count script
2021-10-14 10:07:07 -04:00
weslambert
3b45e68ead
Merge pull request #5885 from Security-Onion-Solutions/feature/jinjafy_soc_actions
...
Allow SOC actions to use Jinja
2021-10-14 10:03:12 -04:00
Wes Lambert
5ee0ea3fe7
Allow SOC actions to use Jinja
2021-10-14 13:59:55 +00:00
weslambert
55c60f485c
Merge pull request #5884 from Security-Onion-Solutions/feature/hl_eg
...
Add EG firewall allowance via setup
2021-10-14 09:55:07 -04:00
Wes Lambert
78e88e0765
Add EG firewall allowance via setup
2021-10-13 21:42:54 +00:00
Wes Lambert
a9b250c0f4
Add EG firewall config
2021-10-13 21:37:59 +00:00
weslambert
f9001654bb
Merge pull request #5871 from Security-Onion-Solutions/feature/hl_eg
...
Initial EG stuff
2021-10-13 15:07:03 -04:00
Wes Lambert
2a504a061b
Add Curator action files for EG indices
2021-10-13 18:40:34 +00:00
Pete
e7581036f7
remove tty/interactive flags
...
This call to docker exec simply returns a number. No interaction (stdin) or tty is required. Specifically, having the -t option prevents running via salt using a command such as:
> salt '*' cmd.run 'so-redis-count'
2021-10-13 13:51:05 -04:00
Wes Lambert
e1629d7ec4
Initial EG stuff
2021-10-13 17:13:07 +00:00
Josh Patterson
b4873bd296
Merge pull request #5868 from Security-Onion-Solutions/issue/5818
...
Issue/5818
2021-10-13 12:52:48 -04:00
m0duspwnens
3044edb104
update comment
2021-10-13 12:38:58 -04:00
m0duspwnens
a495779552
only 3 attempts with 120s max attemps
2021-10-13 12:34:56 -04:00
m0duspwnens
880c1b97b0
remove $ from var
2021-10-13 12:25:11 -04:00
m0duspwnens
7a4fa8879c
change count, attempts and timeout
2021-10-13 12:13:24 -04:00
m0duspwnens
adb8292814
add missing )
2021-10-13 10:37:18 -04:00
m0duspwnens
6e7a5fa326
add timeouts to check_salt_minion_status and check_salt_master_status - https://github.com/Security-Onion-Solutions/securityonion/issues/5818
2021-10-13 09:45:15 -04:00
William Wernert
b97361fab9
Remove references to xenial in setup
...
Resolves #4292
2021-10-12 10:23:39 -04:00
William Wernert
36e1795295
Add end of setup log messages per #5032
2021-10-12 10:19:47 -04:00
William Wernert
af687b0706
Remove all holds on Ubuntu reinstall
2021-10-12 10:10:34 -04:00
William Wernert
946cf81a27
If ANALYST is selected immediately quit setup
2021-10-12 09:48:38 -04:00
Mike Reeves
2561480371
Merge pull request #5850 from Security-Onion-Solutions/kilo
...
Upgrade to Kratos 0.7.6-alpha.1
2021-10-12 08:19:25 -04:00
Jason Ertel
d21dee162d
Add Note field to user traits; Enforce max length restrictions on email, firstname, lastname, and note fields
2021-10-08 12:39:17 -04:00
Mike Reeves
444d067112
Merge pull request #5813 from Security-Onion-Solutions/macleod
...
Highlander changes
2021-10-08 10:06:18 -04:00
Mike Reeves
2a82373051
highlander fixes
2021-10-08 09:32:13 -04:00
Mike Reeves
64758a534c
Set ml to true
2021-10-08 08:42:26 -04:00
Jason Ertel
62c3afc81d
Migrate users from locked to inactive during soup
2021-10-06 15:45:35 -04:00
Jason Ertel
7d8c8144b0
Drop obsolete status trait
2021-10-06 12:52:41 -04:00
Jason Ertel
a2c4fce1ef
Switch to use state attribute in identities for enabling/disabling users
2021-10-06 11:53:10 -04:00
Mike Reeves
27614569e3
Fix set
2021-10-05 14:32:02 -04:00
Mike Reeves
869af548af
Fix spaces for highlander
2021-10-05 11:06:13 -04:00
Mike Reeves
2fd344822d
Add additional roles for highlander
2021-10-05 10:40:40 -04:00
Mike Reeves
a3e0fb127a
Merge pull request #5069 from datlife/datlife/asn-annotation
...
Add ASN annotation for IP
2021-10-05 06:50:31 -04:00
Dat
9569e73bd0
Added ASN annotation for IP
2021-10-04 12:41:20 -07:00
Mike Reeves
e6fce4cf3e
Merge pull request #5749 from Security-Onion-Solutions/kilo
...
Use safe_load to avoid warnings - credit to @clairmont32
2021-10-04 08:55:53 -04:00
Jason Ertel
6ef9a5c95d
Use safe_load to avoid warnings - credit to @clairmont32
2021-10-04 08:53:25 -04:00
Mike Reeves
727613b6e1
Merge pull request #5601 from Security-Onion-Solutions/special
...
Ubuntu 20.04 Beta
2021-10-04 08:51:01 -04:00