Josh Patterson
|
7898277a9b
|
Merge pull request #12651 from Security-Onion-Solutions/issue/12637
Allow for additional af-packet tuning options for Suricata
|
2024-03-25 09:37:52 -04:00 |
|
m0duspwnens
|
029d8a0e8f
|
handle yes/no on checksum-checks
|
2024-03-25 09:30:41 -04:00 |
|
Josh Brower
|
b8d33ab983
|
Merge pull request #12639 from Security-Onion-Solutions/2.4/enable-detections
Enable Detections
|
2024-03-25 09:30:01 -04:00 |
|
weslambert
|
e124791d5d
|
Merge pull request #12650 from Security-Onion-Solutions/fix/soc_template
FIX: http.response.status_code
|
2024-03-25 09:29:19 -04:00 |
|
coreyogburn
|
8ae30d0a77
|
Merge pull request #12640 from Security-Onion-Solutions/cogburn/sigma-repo-support
Update ElastAlert Config with Default Repos
|
2024-03-22 14:24:18 -06:00 |
|
m0duspwnens
|
81f3d69eb9
|
remove mmap-locked.
|
2024-03-22 15:55:59 -04:00 |
|
Corey Ogburn
|
237946e916
|
Specify Folder in Rule Repo
|
2024-03-22 13:52:20 -06:00 |
|
Corey Ogburn
|
3d04d37030
|
Update ElastAlert Config with Default Repos
|
2024-03-22 13:52:20 -06:00 |
|
m0duspwnens
|
bb0da2a5c5
|
add additional suricata af-packet config items
|
2024-03-22 14:34:14 -04:00 |
|
Doug Burks
|
d6ce3851ec
|
Merge pull request #12644 from Security-Onion-Solutions/dougburks-patch-1
FIX: Specify that static IP address is recommended #12643
|
2024-03-22 13:47:33 -04:00 |
|
Doug Burks
|
9c6f3f4808
|
FIX: Specify that static IP address is recommended #12643
|
2024-03-22 13:41:44 -04:00 |
|
Doug Burks
|
1ab56033a2
|
Merge pull request #12642 from Security-Onion-Solutions/fix/add-event.dataset
FEATURE: Add event.dataset to all Events column layouts #12641
|
2024-03-22 13:22:57 -04:00 |
|
Doug Burks
|
a78a304d4f
|
FEATURE: Add event.dataset to all Events column layouts #12641
|
2024-03-22 13:19:31 -04:00 |
|
DefensiveDepth
|
5ca9ec4b17
|
Enable Detections
|
2024-03-22 10:12:26 -04:00 |
|
weslambert
|
4e1543b6a8
|
Get only code
|
2024-03-22 09:56:21 -04:00 |
|
Jason Ertel
|
0e7d08b957
|
Merge pull request #12638 from Security-Onion-Solutions/jertel/logs
disregard benign telegraf error
|
2024-03-22 09:53:52 -04:00 |
|
Jason Ertel
|
f889a089bf
|
disregard benign telegraf error
|
2024-03-22 09:48:27 -04:00 |
|
Doug Burks
|
2b019ec8fe
|
Merge pull request #12634 from Security-Onion-Solutions/dougburks-patch-1
FEATURE: Add Events column layout for event.module system #12628
|
2024-03-22 05:52:23 -04:00 |
|
weslambert
|
77ac342786
|
Merge pull request #12632 from Security-Onion-Solutions/fix/remove_temp_yara
Remove temp YARA
|
2024-03-21 10:11:32 -04:00 |
|
weslambert
|
8429a364dc
|
Remove Strelka rules watch
|
2024-03-21 10:09:36 -04:00 |
|
weslambert
|
1568f57096
|
Remove Strelka config
|
2024-03-21 10:07:27 -04:00 |
|
weslambert
|
f431e9ae08
|
Remove Strelka config
|
2024-03-21 10:06:25 -04:00 |
|
Josh Brower
|
4b03d088c3
|
Merge pull request #12611 from Security-Onion-Solutions/2.4/enable-detections
Change Detections defaults
|
2024-03-21 08:04:03 -04:00 |
|
DefensiveDepth
|
4a33234c34
|
Default update to 24 hours
|
2024-03-21 07:26:19 -04:00 |
|
Doug Burks
|
778997bed4
|
FEATURE: Add Events column layout for event.module system #12628
|
2024-03-20 17:07:37 -04:00 |
|
Doug Burks
|
655d3e349c
|
Merge pull request #12627 from Security-Onion-Solutions/dougburks-patch-1
FIX: Annotations for BPF and Suricata PCAP #12626
|
2024-03-20 16:11:33 -04:00 |
|
Doug Burks
|
f3b921342e
|
FIX: Annotations for BPF and Suricata PCAP #12626
|
2024-03-20 16:06:25 -04:00 |
|
Doug Burks
|
fff4d20e39
|
Update soc_suricata.yaml
|
2024-03-20 16:03:45 -04:00 |
|
Doug Burks
|
d2fb067110
|
FIX: Annotations for BPF and Suricata PCAP #12626
|
2024-03-20 15:57:32 -04:00 |
|
Doug Burks
|
876690a9f6
|
FIX: Annotations for BPF and Suricata PCAP #12626
|
2024-03-20 15:49:46 -04:00 |
|
Jason Ertel
|
4c2f2759d4
|
Merge pull request #12601 from Security-Onion-Solutions/jertel/suripcap
reschedule close/lock jobs
|
2024-03-20 12:11:15 -04:00 |
|
Mike Reeves
|
dd603934bc
|
Merge pull request #12619 from Security-Onion-Solutions/TOoSmOotH-patch-1
Update VERSION
|
2024-03-20 11:06:05 -04:00 |
|
Mike Reeves
|
d4d17e1835
|
Update VERSION
|
2024-03-20 11:04:40 -04:00 |
|
Mike Reeves
|
7779a95341
|
Merge pull request #12617 from Security-Onion-Solutions/2.4/main
fix merges
|
2024-03-20 10:53:09 -04:00 |
|
Mike Reeves
|
68ea2836dd
|
Merge pull request #12615 from Security-Onion-Solutions/2.4.60
2.4.260
|
2024-03-20 10:43:08 -04:00 |
|
Mike Reeves
|
bb3bbd749c
|
2.4.260
|
2024-03-20 10:20:04 -04:00 |
|
DefensiveDepth
|
d84af803a6
|
Enable Autoupdates
|
2024-03-20 08:48:31 -04:00 |
|
DefensiveDepth
|
020eb47026
|
Change Detections defaults
|
2024-03-19 13:53:37 -04:00 |
|
Wes
|
c6df805556
|
Add SOC template
|
2024-03-18 14:53:36 +00:00 |
|
Jason Ertel
|
47d447eadd
|
Merge branch '2.4/dev' into jertel/suripcap
|
2024-03-18 07:34:43 -04:00 |
|
Jason Ertel
|
af5b3feb96
|
re-schedule lock jobs
|
2024-03-18 07:34:18 -04:00 |
|
Mike Reeves
|
4237210f0b
|
Merge pull request #12587 from Security-Onion-Solutions/TOoSmOotH-patch-10
Update soc_suricata.yaml
|
2024-03-14 11:37:35 -04:00 |
|
Mike Reeves
|
fd835f6394
|
Update soc_suricata.yaml
|
2024-03-14 11:36:45 -04:00 |
|
Mike Reeves
|
284e0d8435
|
Update soc_suricata.yaml
|
2024-03-14 11:33:47 -04:00 |
|
Jason Ertel
|
09bff01d79
|
Merge pull request #12584 from Security-Onion-Solutions/jertel/suripcap
handle airgap when detections not enabled
|
2024-03-13 21:35:06 -04:00 |
|
Jason Ertel
|
844cfe55cd
|
handle airgap when detections not enabled
|
2024-03-13 20:52:17 -04:00 |
|
Jason Ertel
|
927fe9039d
|
handle airgap when detections not enabled
|
2024-03-13 20:50:03 -04:00 |
|
Jason Ertel
|
cc1356c823
|
Merge pull request #12581 from Security-Onion-Solutions/jertel/suripcap
removed unused property
|
2024-03-13 14:20:22 -04:00 |
|
Jason Ertel
|
275a678fa1
|
removed unused property
|
2024-03-13 13:49:44 -04:00 |
|
Josh Patterson
|
3d33c99f53
|
Merge pull request #12579 from Security-Onion-Solutions/m0duspwnens-patch-1-dontshowchanges
Update init.sls
|
2024-03-13 11:26:20 -04:00 |
|