Commit Graph

71 Commits

Author SHA1 Message Date
Wes 302e580d8f Add so-fleet role logic 2023-05-31 19:56:17 +00:00
Wes 344e2bf1d0 Update defaults file 2023-05-31 15:30:03 +00:00
Wes 2bb77251b0 Move Elastic Fleet logging exclusions to the Fleet pillar 2023-05-31 13:38:58 +00:00
weslambert 36791665f3 Merge pull request #10462 from Security-Onion-Solutions/feature/elastic_agent_zeek_logging
Dynamic integration configuration and Zeek log exclusions for Elastic Agent
2023-05-30 19:27:13 -04:00
Wes e4b4bbcfdc Use ZEEKMERGED from zeek/config.map.jinja 2023-05-30 19:51:13 +00:00
Wes b6e090f29f Move Elastic Fleet logic in so-common to so-elastic-fleet-common 2023-05-30 18:43:56 +00:00
Wes b9d692eb0e Remove default value 2023-05-30 17:08:52 +00:00
Wes 36a7f54160 Add extension 2023-05-30 16:46:38 +00:00
Wes 9035fa3037 Don't load Elasticsearch integration 2023-05-30 15:46:00 +00:00
Wes b4b87e5620 Only provide JSON output 2023-05-30 15:43:31 +00:00
Wes 97c53d70a4 Remove integrations 2023-05-30 14:05:40 +00:00
Wes 53b4f7bd5c Add spacing 2023-05-30 14:05:11 +00:00
Wes 79014a53ec Remove extra lines 2023-05-30 12:35:32 +00:00
Wes 799e92e595 Add files 2023-05-30 02:56:23 +00:00
Wes c835c523a9 Elastic Fleet integration update improvements 2023-05-30 02:54:39 +00:00
Josh Brower 9ec1492fad Change Fleet Host URL API Endpoint 2023-05-29 07:44:18 -04:00
Mike Reeves 38881231ac Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps 2023-05-26 15:16:38 -04:00
Josh Brower b3e0e68896 Change Fleet Host URL API 2023-05-24 11:27:41 -04:00
Mike Reeves cace817c79 Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps 2023-05-24 08:43:03 -04:00
Josh Brower 502277b1b7 Hash check, use url base 2023-05-23 16:38:37 -04:00
Josh Brower df0dc2e4d1 Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/smallfixes 2023-05-22 16:02:30 -04:00
Josh Brower 766f4dd661 Add Elastic Defend Integration 2023-05-22 16:02:08 -04:00
weslambert 167051af28 Exclude Zeek's reporter.log from being picked up by Elastic Agent 2023-05-19 15:44:09 -04:00
weslambert eb9c5e9af0 Merge pull request #10307 from Security-Onion-Solutions/fix/elastic_fleet_ignore_zeek_logs
Don't read from 'known_hosts.log', 'known_services.log', or 'ntp.log'
2023-05-19 15:09:15 -04:00
Mike Reeves 5315c51197 Allow additional docker parameters 2023-05-18 16:52:38 -04:00
Mike Reeves c0dc05f26a Allow additional docker parameters 2023-05-18 16:39:42 -04:00
Mike Reeves 7ab31e36af Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps 2023-05-18 15:19:15 -04:00
Mike Reeves 0fd9fb9294 Allow additional docker parameters 2023-05-18 15:19:09 -04:00
Josh Brower 901e3c4a20 Set Fleet Host timeouts to 120 seconds 2023-05-17 16:07:59 -04:00
Josh Brower 47e67fda46 Rework restart scripts for Elastic Fleet 2023-05-17 15:37:39 -04:00
m0duspwnens 77834c1e58 fix grep logic for so-elastic-fleet sostatus.sls 2023-05-16 15:05:14 -04:00
Josh Brower 000507c366 Update Integrations 2023-05-16 12:50:40 -04:00
m0duspwnens b253cd45ca Merge remote-tracking branch 'origin/2.4/dev' into issue/10229 2023-05-16 09:22:48 -04:00
Josh Brower 923de356e1 Fix typos 2023-05-16 08:06:31 -04:00
Josh Brower 9f879164ec Fix broken loop 2023-05-16 06:45:17 -04:00
m0duspwnens a0e08e4f41 enable elasticfleet via pillar, fix sostatus for elasticfleet 2023-05-15 17:41:09 -04:00
Josh Brower 40de01e8c4 Temp fix 2023-05-15 15:56:21 -04:00
Josh Brower 576c1d7cc1 Add retry 2023-05-15 14:55:43 -04:00
Josh Brower b381c51246 Merge branch '2.4/dev' into 2.4/taglogs 2023-05-15 12:13:44 -04:00
Josh Brower 64726af69c Change from tmp 2023-05-15 12:09:16 -04:00
m0duspwnens 7a4fea7a12 fix nginx merge conflicts 2023-05-15 11:40:12 -04:00
Doug Burks 53ed4d49c2 Update install_agent_grid.sls 2023-05-15 10:10:27 -04:00
m0duspwnens 0cee5b54a1 make advnaced 2023-05-15 10:00:15 -04:00
m0duspwnens 3f8e15d16f enabled/disable elaticfleet in ui 2023-05-15 09:41:44 -04:00
Doug Burks 83188401c5 update status messages 2023-05-15 08:43:53 -04:00
Doug Burks b01367a294 remove the temp directory when finished 2023-05-15 08:41:05 -04:00
Doug Burks d8e0e320f4 so-elastic-agent-gen-installers should use /nsm to avoid filling /tmp 2023-05-15 07:31:32 -04:00
Josh Brower dbd4a5bd98 Refactor wrapper 2023-05-12 12:11:28 -04:00
Doug Burks 1d12dcd243 fix typo in so-elastic-fleet-setup 2023-05-11 13:39:07 -04:00
Josh Brower 2293574f2e tag container logs 2023-05-10 14:19:17 -04:00