Josh Patterson
|
45f50cc121
|
Merge pull request #12019 from Security-Onion-Solutions/fix/extrahosts
fix extra_hosts
|
2023-12-14 12:03:07 -05:00 |
|
m0duspwnens
|
3dbf97944d
|
fix extra_hosts. https://github.com/Security-Onion-Solutions/securityonion/issues/12015
|
2023-12-14 10:26:29 -05:00 |
|
weslambert
|
5d3f2298b6
|
Merge pull request #12000 from Security-Onion-Solutions/feature/additional_integrations
Additional Integrations #2
|
2023-12-13 13:23:34 -05:00 |
|
weslambert
|
8cf5d9c1a6
|
Annotations
|
2023-12-13 11:55:40 -05:00 |
|
weslambert
|
cdac2bfa16
|
Add Anomali, Cybersixgill, Snort, and ThreatQuotient
|
2023-12-13 11:03:25 -05:00 |
|
Doug Burks
|
d49d13289e
|
Update so-elastic-clear
|
2023-12-12 16:37:06 -05:00 |
|
Wes
|
54c3167b10
|
Delete data streams when necessary
|
2023-12-12 05:25:50 +00:00 |
|
Wes
|
b1721b6467
|
Fix directory
|
2023-12-11 21:43:25 +00:00 |
|
Wes
|
d203aec44a
|
Remove Curator
|
2023-12-08 19:37:06 +00:00 |
|
Doug Burks
|
ab0e6f9bec
|
update broken help links in SOC Config
|
2023-12-06 14:35:51 -05:00 |
|
Doug Burks
|
93fb10de86
|
Merge pull request #11897 from Security-Onion-Solutions/2.4/nids-rule-reference
FIX: Update NIDS rule.reference in common.nids pipeline #11846
|
2023-11-29 12:19:12 -05:00 |
|
weslambert
|
9d63a47792
|
Certificate hash
|
2023-11-29 12:01:43 -05:00 |
|
weslambert
|
7001e90667
|
Client and server fingerprints
|
2023-11-29 12:00:46 -05:00 |
|
Doug Burks
|
0603e96c08
|
FIX: Update NIDS rule.reference in common.nids pipeline #11846
|
2023-11-29 09:46:11 -05:00 |
|
weslambert
|
02baa18502
|
Add metrics
|
2023-11-08 22:41:24 -05:00 |
|
weslambert
|
e39edab00d
|
Exclude osquery and display failed name
|
2023-11-08 20:55:08 -05:00 |
|
weslambert
|
acb6e84248
|
Don't load index template if component template doesn't exist
|
2023-11-08 20:34:08 -05:00 |
|
Jason Ertel
|
32079a7bce
|
Merge pull request #11734 from Security-Onion-Solutions/fix/elastic_scripts
Improve error handling and add retry logic
|
2023-11-08 12:19:00 -05:00 |
|
Jason Ertel
|
d256be3eb3
|
allow template loads to partially succeed only on the initial attempt
|
2023-11-08 10:32:11 -05:00 |
|
Wes
|
653fda124f
|
Check expected with retry
|
2023-11-08 13:02:17 +00:00 |
|
Wes
|
b46e86c39b
|
Extend index template loading to 60 attempts and a total of ~5 minutes
|
2023-11-08 02:29:09 +00:00 |
|
Wes
|
de9f9549af
|
Extend template loading to 24 attempts and a total of ~2 minutes
|
2023-11-07 23:55:03 +00:00 |
|
weslambert
|
749e22e4b9
|
Fix if statement
|
2023-11-07 17:29:38 -05:00 |
|
weslambert
|
69ec1987af
|
Fix if statement
|
2023-11-07 17:28:37 -05:00 |
|
Wes
|
570624da7e
|
Remove RETURN_CODE
|
2023-11-07 21:09:29 +00:00 |
|
Wes
|
7772657b4b
|
Remove RETURN_CODE
|
2023-11-07 21:06:35 +00:00 |
|
Wes
|
1676c84f9c
|
Use the retry function so-elasticsearch-query
|
2023-11-07 19:56:50 +00:00 |
|
weslambert
|
1dcca0bfd3
|
Change pipeline to 1.13.1
|
2023-11-07 12:17:51 -05:00 |
|
Wes
|
0b4a246ddb
|
State file changes and retry logic
|
2023-11-07 16:44:42 +00:00 |
|
weslambert
|
cce80eb2fb
|
Change pipeline to 1.8.0
|
2023-11-07 09:02:48 -05:00 |
|
Wes
|
c30a0d5b5b
|
Better error handling and state file management
|
2023-11-06 14:29:01 +00:00 |
|
Wes
|
74eda68d84
|
Exit if unable to communicate with Elasticsearch
|
2023-11-06 13:16:35 +00:00 |
|
Mike Reeves
|
3d8663db66
|
Update soc_elasticsearch.yaml
|
2023-11-03 11:29:45 -04:00 |
|
Wes
|
5bfef3f527
|
Add checkpoint and vsphere templates
|
2023-11-02 21:10:01 +00:00 |
|
weslambert
|
51e7861757
|
Don't source so-elastic-fleet-common if not there
|
2023-11-02 16:41:34 -04:00 |
|
Wes
|
ae45d40eca
|
Add Sublime Platform ingest pipeline
|
2023-11-01 13:34:30 +00:00 |
|
weslambert
|
c354924b68
|
Add import roles
|
2023-10-31 10:05:29 -04:00 |
|
weslambert
|
ed6473a34b
|
Add roles for eval mode
|
2023-10-30 20:41:49 -04:00 |
|
weslambert
|
76dd6f07ab
|
Remove policy for OSQuery manager indices
|
2023-10-27 17:26:33 -04:00 |
|
weslambert
|
c955f9210a
|
Remove policy for Cases indices
|
2023-10-27 17:24:27 -04:00 |
|
Mike Reeves
|
25f1a0251f
|
Annotation changes for warm node
|
2023-10-27 09:08:07 -04:00 |
|
Mike Reeves
|
87494f64c7
|
Annotation changes for warm node
|
2023-10-27 09:06:12 -04:00 |
|
Mike Reeves
|
ce1858fe05
|
Annotation changes for warm node
|
2023-10-27 09:02:39 -04:00 |
|
Mike Reeves
|
9fc3a73035
|
Annotation changes for warm node
|
2023-10-27 08:58:08 -04:00 |
|
Mike Reeves
|
b37e38e3c3
|
Update defaults.yaml
|
2023-10-26 16:03:58 -04:00 |
|
Mike Reeves
|
2e0100fd35
|
Update defaults.yaml
|
2023-10-26 12:37:55 -04:00 |
|
Wes
|
891ea997e7
|
Add lifecycle policies and warm settings
|
2023-10-26 12:25:37 +00:00 |
|
Mike Reeves
|
01810a782c
|
Annotation changes for warm node
|
2023-10-25 16:46:30 -04:00 |
|
Mike Reeves
|
6d6292714f
|
Annotation changes for warm node
|
2023-10-25 16:21:47 -04:00 |
|
Mike Reeves
|
88fb7d06e6
|
Annotation changes for warm node
|
2023-10-25 16:20:28 -04:00 |
|