Mike Reeves
|
7668fa1396
|
Attempt to fix 2.3 when main repo changes
|
2024-04-04 09:03:29 -04:00 |
|
Mike Reeves
|
470b0e4bf6
|
Attempt to fix 2.3 when main repo changes
|
2024-04-04 08:55:13 -04:00 |
|
Mike Reeves
|
d3f163bf9e
|
Attempt to fix 2.3 when main repo changes
|
2024-04-04 08:54:04 -04:00 |
|
Mike Reeves
|
4b31632dfc
|
Attempt to fix 2.3 when main repo changes
|
2024-04-04 08:52:37 -04:00 |
|
Mike Reeves
|
14c824143b
|
Attempt to fix 2.3 when main repo changes
|
2024-04-04 08:48:44 -04:00 |
|
Mike Reeves
|
12da7db22c
|
Attempt to fix 2.3 when main repo changes
|
2024-04-03 15:38:23 -04:00 |
|
Mike Reeves
|
9c59f42c16
|
Attempt to fix 2.3 when main repo changes
|
2024-04-03 15:23:09 -04:00 |
|
Mike Reeves
|
9db9af27ae
|
Attempt to fix 2.3 when main repo changes
|
2024-04-03 15:14:50 -04:00 |
|
Mike Reeves
|
1c7cc8dd3b
|
Merge pull request #12741 from Security-Onion-Solutions/metrics
Change code to allow for non root
|
2024-04-03 12:56:17 -04:00 |
|
Doug Burks
|
9078b2bad2
|
FEATURE: Add Events table columns for event.module kratos #12740
|
2024-04-03 12:46:29 -04:00 |
|
Mike Reeves
|
8889c974b8
|
Change code to allow for non root
|
2024-04-03 12:38:59 -04:00 |
|
Doug Burks
|
66844af1c2
|
FEATURE: Add dashboard for SOC Login Failures #12738
|
2024-04-03 11:54:53 -04:00 |
|
Mike Reeves
|
a0b7d89eb6
|
Merge pull request #12734 from Security-Onion-Solutions/metrics
Add Elastic Agent Status Metrics
|
2024-04-03 11:12:53 -04:00 |
|
Mike Reeves
|
c31e459c2b
|
Change metrics reporting order
|
2024-04-03 11:06:00 -04:00 |
|
Wes
|
105eadf111
|
Add cef
|
2024-04-03 14:40:41 +00:00 |
|
Mike Reeves
|
0de1f76139
|
add agent count to reposync
|
2024-04-03 10:26:59 -04:00 |
|
Mike Reeves
|
976ddd3982
|
add agentstatus to telegraf
|
2024-04-03 10:06:08 -04:00 |
|
Mike Reeves
|
64748b98ad
|
add agentstatus to telegraf
|
2024-04-03 09:56:12 -04:00 |
|
Mike Reeves
|
3335612365
|
add agentstatus to telegraf
|
2024-04-03 09:54:16 -04:00 |
|
Mike Reeves
|
513273c8c3
|
add agentstatus to telegraf
|
2024-04-03 09:43:55 -04:00 |
|
Mike Reeves
|
0dfde3c9f2
|
add agentstatus to telegraf
|
2024-04-03 09:40:14 -04:00 |
|
Mike Reeves
|
0efdcfcb52
|
add agentstatus to telegraf
|
2024-04-03 09:36:02 -04:00 |
|
Josh Brower
|
fbdcc53fe0
|
Merge pull request #12732 from Security-Onion-Solutions/2.4/detections-defaults
Feature - auto-enabled Sigma rules
|
2024-04-03 09:01:09 -04:00 |
|
DefensiveDepth
|
a8f25150f6
|
Feature - auto-enabled Sigma rules
|
2024-04-03 08:21:50 -04:00 |
|
Mike Reeves
|
f64d9224fb
|
Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into metrics
|
2024-04-02 17:22:20 -04:00 |
|
Mike Reeves
|
283939b18a
|
Gather metrics from elastic agent to influx
|
2024-04-02 15:36:01 -04:00 |
|
Doug Burks
|
2f03cbf115
|
FEATURE: Add Events table columns for event.module strelka #12716
|
2024-04-02 10:42:20 -04:00 |
|
Doug Burks
|
b2b54ccf60
|
FEATURE: Add Events table columns for event.module strelka #12716
|
2024-04-02 10:11:16 -04:00 |
|
Doug Burks
|
6c2437f8ef
|
FEATURE: Add Events table columns for event.module playbook #12703
|
2024-04-02 09:55:56 -04:00 |
|
Doug Burks
|
505eeea66a
|
Update defaults.yaml
|
2024-04-02 09:39:54 -04:00 |
|
DefensiveDepth
|
7f488422b0
|
Add default columns
|
2024-04-02 09:13:27 -04:00 |
|
Corey Ogburn
|
e5a3a54aea
|
Proper YAML
|
2024-03-29 14:31:43 -06:00 |
|
Doug Burks
|
b64ed5535e
|
FEATURE: Add individual dashboards for Zeek SSL and Suricata SSL logs #12699
|
2024-03-29 15:29:38 -04:00 |
|
Doug Burks
|
5be56703e9
|
Merge pull request #12698 from Security-Onion-Solutions/dougburks-patch-1
FEATURE: Add Events table columns for zeek ssl and suricata ssl #12697
|
2024-03-29 14:46:39 -04:00 |
|
Doug Burks
|
0c7ba62867
|
FEATURE: Add Events table columns for zeek ssl and suricata ssl #12697
|
2024-03-29 14:44:29 -04:00 |
|
Corey Ogburn
|
e747a4e3fe
|
New Settings for Manual Sync in Detections
|
2024-03-29 12:25:03 -06:00 |
|
Doug Burks
|
102c3271d1
|
FEATURE: Add process.command_line to Process Info and Process Ancestry dashboards #12694
|
2024-03-29 12:04:47 -04:00 |
|
Jason Ertel
|
216b8c01bf
|
disregard errors that in removed applications that occurred before the upgrade
|
2024-03-28 09:31:39 -04:00 |
|
Mike Reeves
|
d57f773072
|
Fix regex to allow ipv6 in bpfs
|
2024-03-27 09:36:42 -04:00 |
|
Doug Burks
|
e2caf4668e
|
FEATURE: Add Events table columns for event.module elastic_agent #12666
|
2024-03-26 16:08:41 -04:00 |
|
Josh Brower
|
63a58efba4
|
Merge pull request #12656 from Security-Onion-Solutions/2.4/detections-fixes
Add bindings for sigma repos
|
2024-03-26 09:33:38 -04:00 |
|
DefensiveDepth
|
bbcd3116f7
|
Fixes
|
2024-03-26 09:31:46 -04:00 |
|
Josh Brower
|
9c12aa261e
|
Merge pull request #12660 from Security-Onion-Solutions/kilo
Initial cut to remove Playbook and deps
|
2024-03-26 08:31:11 -04:00 |
|
DefensiveDepth
|
cc0f4847ba
|
Casing and validation
|
2024-03-26 08:10:57 -04:00 |
|
DefensiveDepth
|
7c4ea8a58e
|
Add Detections SOC Config
|
2024-03-26 07:39:39 -04:00 |
|
Doug Burks
|
20bd9a9701
|
FEATURE: Include additional groupby fields in Dashboards relating to sankey diagrams #12657
|
2024-03-26 07:39:24 -04:00 |
|
DefensiveDepth
|
94ee761207
|
Remove Playbook ref
|
2024-03-25 21:11:47 -04:00 |
|
DefensiveDepth
|
d7ecad4333
|
Initial cut to remove Playbook and deps
|
2024-03-25 19:42:31 -04:00 |
|
DefensiveDepth
|
49fa800b2b
|
Add bindings for sigma repos
|
2024-03-25 14:45:50 -04:00 |
|
weslambert
|
df058b3f4a
|
Merge branch '2.4/dev' into feature/pfsense_suricata
|
2024-03-25 10:08:03 -04:00 |
|