Josh Patterson
|
76cdc45fad
|
Merge pull request #3016 from Security-Onion-Solutions/all_rules_dont_show_changes
Don't show changes because all.rules can be large
|
2021-02-18 12:00:08 -05:00 |
|
m0duspwnens
|
069997a65c
|
Don't show changes because all.rules can be large
|
2021-02-18 11:56:25 -05:00 |
|
Jason Ertel
|
6f7bc650a0
|
Apply reserved ports if the existing file is 0 bytes
|
2021-02-18 11:20:13 -05:00 |
|
Josh Patterson
|
a9da761fab
|
Merge pull request #3012 from Security-Onion-Solutions/issue/2989
Issue/2989
|
2021-02-18 10:52:23 -05:00 |
|
m0duspwnens
|
95df18c545
|
limit eve logs and gz files based on days
|
2021-02-18 10:45:20 -05:00 |
|
m0duspwnens
|
a4d5f58256
|
fix surilogcompress
|
2021-02-18 10:33:47 -05:00 |
|
Josh Patterson
|
3f7cdb933f
|
Merge pull request #3010 from Security-Onion-Solutions/issue/2989
Issue/2989
|
2021-02-18 09:58:35 -05:00 |
|
m0duspwnens
|
74ca4487de
|
ensure at least 2 eve files are kept https://github.com/Security-Onion-Solutions/securityonion/issues/2989
|
2021-02-18 09:51:40 -05:00 |
|
m0duspwnens
|
4b07d5e457
|
add identifier to eve clean cron
|
2021-02-18 09:39:54 -05:00 |
|
m0duspwnens
|
041d193f2d
|
fix brackets
|
2021-02-18 09:37:37 -05:00 |
|
m0duspwnens
|
0bef8b6662
|
limit number of eve.json files for suricata https://github.com/Security-Onion-Solutions/securityonion/issues/2989
|
2021-02-18 09:26:59 -05:00 |
|
m0duspwnens
|
7a595df5b6
|
strelka logrotate - https://github.com/Security-Onion-Solutions/securityonion/issues/2736
|
2021-02-17 11:17:41 -05:00 |
|
m0duspwnens
|
2b07d89b5a
|
error: /opt/so/conf/sensor-rotate.conf:8 unknown option 'endscript' -- ignoring line
|
2021-02-17 11:01:18 -05:00 |
|
m0duspwnens
|
e6ae1af85f
|
test rotating strelka log at 100k
|
2021-02-17 10:47:06 -05:00 |
|
Josh Patterson
|
fddef1a6f4
|
Merge pull request #2985 from Security-Onion-Solutions/issue/2915
remove old backup files
|
2021-02-17 09:43:58 -05:00 |
|
Josh Patterson
|
bec437c2cf
|
Merge pull request #2984 from Security-Onion-Solutions/issue/2737
Issue/2737
|
2021-02-16 15:41:46 -05:00 |
|
Josh Patterson
|
eb18ec552c
|
Merge pull request #2980 from Security-Onion-Solutions/issue/2915
Issue/2915
|
2021-02-16 12:01:37 -05:00 |
|
doug
|
fabe3c87f2
|
Hunt: improve Wazuh queries #2383
|
2021-02-16 11:56:14 -05:00 |
|
m0duspwnens
|
7099ed4bf5
|
delete many backup files
|
2021-02-16 11:55:49 -05:00 |
|
m0duspwnens
|
1ccc5480e1
|
remove oldest backup
|
2021-02-16 11:40:45 -05:00 |
|
doug
|
397d8d0964
|
Kibana 7.10.2 config changes #2954
|
2021-02-14 07:04:51 -05:00 |
|
doug
|
3248edea8b
|
Update Kibana dashboard hyperlinks to new url format #2361
|
2021-02-12 17:25:42 -05:00 |
|
m0duspwnens
|
100601c452
|
only laod templates if they change https://github.com/Security-Onion-Solutions/securityonion/issues/1237
|
2021-02-12 16:03:45 -05:00 |
|
doug
|
31a0c2bc82
|
Update Kibana dashboard hyperlinks to new url format #2361
|
2021-02-12 15:37:25 -05:00 |
|
doug
|
797d2c4dba
|
Kibana 7.10.2 config changes #2954
|
2021-02-12 15:35:06 -05:00 |
|
Doug Burks
|
fd4cb0b7a8
|
Kibana 7.10.2 config changes #2954
|
2021-02-12 14:05:29 -05:00 |
|
Doug Burks
|
c717773fc3
|
Kibana 7.10.2 config changes #2954
|
2021-02-12 14:04:00 -05:00 |
|
Josh Patterson
|
a8598a50e4
|
Merge pull request #2953 from Security-Onion-Solutions/issue/2756
remove /etc/yum.repos.d/salt-2019-2-5.repo if present
|
2021-02-12 12:05:21 -05:00 |
|
m0duspwnens
|
3b0c2b3e91
|
remove /etc/yum.repos.d/salt-2019-2-5.repo if present https://github.com/Security-Onion-Solutions/securityonion/issues/2756
|
2021-02-12 12:04:08 -05:00 |
|
m0duspwnens
|
7e4d7a6985
|
drop icmp timestamp replies https://github.com/Security-Onion-Solutions/securityonion/issues/1704
|
2021-02-11 11:09:21 -05:00 |
|
m0duspwnens
|
3cfbc61f4e
|
only save at the end
|
2021-02-10 11:15:39 -05:00 |
|
Mike Reeves
|
125f7d6262
|
add warm node action for hot/warm
|
2021-02-08 11:49:49 -05:00 |
|
Mike Reeves
|
5043b970ef
|
Fix tar syntax
|
2021-02-06 19:14:44 -05:00 |
|
Mike Reeves
|
a3ca84db66
|
Fix backupdir name state
|
2021-02-06 15:32:42 -05:00 |
|
Mike Reeves
|
bf79c92456
|
Lock down Backups folder permissions
|
2021-02-05 22:31:08 -05:00 |
|
Mike Reeves
|
8f97973fac
|
Lock down Backups folder permissions
|
2021-02-05 22:17:31 -05:00 |
|
Jason Ertel
|
e427f8178d
|
Implement locking to so-firewall script
|
2021-02-04 16:06:11 -05:00 |
|
Jason Ertel
|
a13b31fbcc
|
Merge branch 'dev' into automation/ami
|
2021-02-04 16:05:39 -05:00 |
|
Jason Ertel
|
58e4205602
|
Revert "Make filebeat retry forever"
|
2021-02-03 21:46:29 -05:00 |
|
Jason Ertel
|
6b54a29ac7
|
Remove 'new user' references from so-user
|
2021-02-03 15:23:58 -05:00 |
|
Jason Ertel
|
3ebedcd4e8
|
Merge pull request #2830 from Security-Onion-Solutions/filebeatlimits
Make filebeat retry forever
|
2021-02-03 11:32:05 -05:00 |
|
Mike Reeves
|
55a8f6aa7a
|
Make filebeat retry forever
|
2021-02-02 16:41:52 -05:00 |
|
William Wernert
|
8f0b0ac936
|
Merge pull request #2825 from Security-Onion-Solutions/foxtrot
Setup: dpkg retry, whiptail changes, fix zeek state condition
|
2021-02-02 14:41:48 -05:00 |
|
m0duspwnens
|
b3c08229db
|
Merge remote-tracking branch 'remotes/origin/sslstate/timeouts_retry' into delta
|
2021-02-01 15:33:31 -05:00 |
|
m0duspwnens
|
8cf0a3da98
|
remove seconds
|
2021-02-01 15:19:47 -05:00 |
|
William Wernert
|
8d01b87ab5
|
Merge branch 'dev' into foxtrot
|
2021-02-01 13:56:33 -05:00 |
|
m0duspwnens
|
8ff6d1639a
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/1191
|
2021-02-01 12:51:00 -05:00 |
|
William Wernert
|
daebe90b6e
|
[fix] fix retry command handling
* use eval "$cmd" to handle strings correctly
* add-apt-repo doesn't need dpkg lock so don't use retry for those lines
|
2021-02-01 12:06:19 -05:00 |
|
William Wernert
|
44617fdddf
|
[fix] Run command being retried within quotes
|
2021-02-01 11:28:28 -05:00 |
|
William Wernert
|
36ce389202
|
Remove wait_for_apt, use common retry function to run apt commands
|
2021-02-01 10:55:14 -05:00 |
|