doug
|
b4ad7e7359
|
FIX: Improve Suricata DHCP logging and parsing #3397
|
2021-03-11 11:01:51 -05:00 |
|
William Wernert
|
0434ffac38
|
Merge branch 'dev' into foxtrot
|
2021-03-11 10:52:36 -05:00 |
|
William Wernert
|
506162bfcc
|
Use auth for automated proxy test
|
2021-03-11 10:52:17 -05:00 |
|
Doug Burks
|
adb25d63d2
|
Merge pull request #3396 from Security-Onion-Solutions/issue/3295
FIX: Improve DHCP leases query in Hunt #3395
|
2021-03-11 08:22:48 -05:00 |
|
Doug Burks
|
85aaa71006
|
FIX: Improve DHCP leases query in Hunt #3395
|
2021-03-11 08:01:27 -05:00 |
|
William Wernert
|
750de6333d
|
[fix] Remove last bad usage of cortexkey
|
2021-03-10 16:24:21 -05:00 |
|
William Wernert
|
9ffbb9d37e
|
[fix] Use update so-cortex-user-enable with correct pillar
Fixes #3388
|
2021-03-10 16:17:10 -05:00 |
|
William Wernert
|
157badf448
|
[fix] Use correct pillar value for api key
Fixes #3388
|
2021-03-10 16:12:59 -05:00 |
|
Jason Ertel
|
eefa6bb949
|
feature: Show job owner/submitter. Resolves #2775
|
2021-03-10 14:44:21 -05:00 |
|
William Wernert
|
19ccd0c9a2
|
Merge branch 'dev' into foxtrot
|
2021-03-10 09:33:42 -05:00 |
|
Mike Reeves
|
6bbcc7a5e9
|
Merge pull request #3382 from Security-Onion-Solutions/kilo
Ensure MTU is defined for advanced sensor automation
|
2021-03-10 09:27:20 -05:00 |
|
Jason Ertel
|
3eb4a37c76
|
Expose zeek and suri pins for automation
|
2021-03-10 09:26:46 -05:00 |
|
Jason Ertel
|
180bba782e
|
Expose zeek and suri pins for automation
|
2021-03-10 09:26:11 -05:00 |
|
Jason Ertel
|
b1531cc75e
|
Merge pull request #3384 from Security-Onion-Solutions/Eval/Import-Fix
Update cert location for eval.import
|
2021-03-10 09:15:53 -05:00 |
|
Mike Reeves
|
18203513ab
|
Update cert location for eval.import
|
2021-03-10 09:14:14 -05:00 |
|
Jason Ertel
|
46af6a5c84
|
Ensure MTU is defined for advanced sensor automation
|
2021-03-10 08:14:25 -05:00 |
|
Mike Reeves
|
2e74cb6abf
|
Merge pull request #3377 from Security-Onion-Solutions/kilo
|
2021-03-09 21:40:43 -05:00 |
|
Jason Ertel
|
a496b03de7
|
Add missing MTU var for automation of advanced sensor
|
2021-03-09 20:52:34 -05:00 |
|
William Wernert
|
60f40163aa
|
Merge branch 'dev' into foxtrot
|
2021-03-09 13:51:13 -05:00 |
|
Jason Ertel
|
46288802d1
|
Merge pull request #3368 from Security-Onion-Solutions/TOoSmOotH-patch-1
Update 9101_output_osquery_livequery.conf.jinja
|
2021-03-09 13:16:17 -05:00 |
|
Mike Reeves
|
2e01330e1b
|
Update 9101_output_osquery_livequery.conf.jinja
|
2021-03-09 13:15:04 -05:00 |
|
William Wernert
|
f0e089b6bf
|
Merge branch 'dev' into foxtrot
|
2021-03-09 10:11:04 -05:00 |
|
Mike Reeves
|
734d25b1ac
|
Merge pull request #3361 from Security-Onion-Solutions/nomorefeatures
Make saved objects less hacky
|
2021-03-09 10:05:23 -05:00 |
|
Mike Reeves
|
49258a13a3
|
Make saved objects less hacky
|
2021-03-09 10:03:29 -05:00 |
|
Josh Brower
|
00da549430
|
Merge pull request #3358 from Security-Onion-Solutions/delta
FEATURE: Initial support for viewing Osquery Live Query results in Hunt
|
2021-03-09 09:18:57 -05:00 |
|
Jason Ertel
|
b1777ff10f
|
Merge pull request #3357 from Security-Onion-Solutions/nomorefeatures
SSL with Elastic Security
|
2021-03-08 21:22:30 -05:00 |
|
Mike Reeves
|
3967e581cf
|
Merge pull request #3356 from Security-Onion-Solutions/kilo
fix: Sensors can temporarily show offline while processing large PCAP…
|
2021-03-08 19:14:54 -05:00 |
|
William Wernert
|
ba71b2fbc8
|
Change proxy Jinja logic (none and empty string are falsy)
|
2021-03-08 17:36:34 -05:00 |
|
Mike Reeves
|
1ecb079066
|
Fix Kibana Script for loading dashboards
|
2021-03-08 17:36:07 -05:00 |
|
William Wernert
|
f85f86ccdd
|
[fix] Check for empty proxy string everywhere
|
2021-03-08 17:25:23 -05:00 |
|
William Wernert
|
8c4e66f7bb
|
[fix] Print error to stderr
|
2021-03-08 15:52:21 -05:00 |
|
William Wernert
|
5ee6856a07
|
Strip the last substring following a hyphen for automated branches
Also don't show the user a stack trace on invalid version strings, just alert on the bad string and exit
|
2021-03-08 15:43:54 -05:00 |
|
William Wernert
|
ed4f8025be
|
[fix] Also check for proxy to be empty string
|
2021-03-08 13:57:24 -05:00 |
|
Josh Brower
|
fe8788c09a
|
Merge remote-tracking branch 'remotes/origin/dev' into delta
|
2021-03-08 12:56:47 -05:00 |
|
William Wernert
|
5c7d3656dd
|
[fix] Don't try to create so_proxy during automated installs, just set it
|
2021-03-08 12:26:17 -05:00 |
|
Jason Ertel
|
84c152e233
|
fix: Sensors can temporarily show offline while processing large PCAP jobs. Resolves #3279.
|
2021-03-08 12:05:44 -05:00 |
|
Mike Reeves
|
bf4ac2a312
|
Fix some merge conflicts
|
2021-03-08 11:43:24 -05:00 |
|
William Wernert
|
368b04b24e
|
Add back accidentally removed code
|
2021-03-08 09:04:17 -05:00 |
|
William Wernert
|
ca2766511b
|
Revert "[wip] Change when proxy is set up so main ip is known"
This reverts commit 1ea3cb1c61.
# Conflicts:
# setup/so-functions
|
2021-03-08 09:02:53 -05:00 |
|
William Wernert
|
06c584910c
|
Merge branch 'dev' into foxtrot
|
2021-03-08 08:58:31 -05:00 |
|
Josh Brower
|
19b3c7bb07
|
Merge pull request #3339 from Security-Onion-Solutions/feature/live_query-hunt
Feature/live query hunt
|
2021-03-08 08:31:25 -05:00 |
|
William Wernert
|
49db2a016a
|
Merge pull request #3341 from Security-Onion-Solutions/kilo
Kilo
|
2021-03-08 08:17:29 -05:00 |
|
Jason Ertel
|
94610307b3
|
Merge branch 'dev' into kilo
|
2021-03-08 07:56:48 -05:00 |
|
William Wernert
|
35ae9363f5
|
[fix] Log gateway error, and don't show whiptail msg on automated installs
|
2021-03-05 20:15:37 -05:00 |
|
William Wernert
|
9c49cef2de
|
Merge branch 'feature/docker-prune-rework' into foxtrot
|
2021-03-05 14:18:57 -05:00 |
|
William Wernert
|
f537b3c7f7
|
Merge branch 'feature/setup-ssh-harden' into foxtrot
|
2021-03-05 14:18:35 -05:00 |
|
William Wernert
|
e5110dc3fc
|
[fix] None -> none
|
2021-03-05 14:08:03 -05:00 |
|
William Wernert
|
50fcdb65a6
|
[fix] Modify the proxy automated test
* It makes more sense to test the proxy using a network install, not via the iso
|
2021-03-05 13:53:48 -05:00 |
|
William Wernert
|
32e7afdc5f
|
Merge branch 'feature/setup' into foxtrot
|
2021-03-05 12:53:31 -05:00 |
|
William Wernert
|
245902326f
|
[wip] Add automation support for proxy settings
|
2021-03-05 12:53:20 -05:00 |
|