m0duspwnens
|
80e5198f9e
|
combine local and default pillars to get pillar values locally
|
2022-02-28 14:35:16 -05:00 |
|
m0duspwnens
|
dc24cb711d
|
need local to be --local
|
2022-02-28 13:50:08 -05:00 |
|
m0duspwnens
|
c5bf818049
|
debug messages and pass local to lookup_salt_value
|
2022-02-28 13:39:50 -05:00 |
|
m0duspwnens
|
cd981fa2ae
|
forgot then for if
|
2022-02-28 12:25:06 -05:00 |
|
m0duspwnens
|
278235b0ca
|
update so-common lookup_salt_value to accept local option. soup get minion id from grains with local option
|
2022-02-28 12:15:23 -05:00 |
|
weslambert
|
a9caef9596
|
Merge pull request #7338 from Security-Onion-Solutions/fix/endgame_template
Revert Endgame index name changes
|
2022-02-28 08:13:09 -05:00 |
|
Doug Burks
|
e0b3635318
|
Merge pull request #7339 from Security-Onion-Solutions/fix/zeek_dns-import
Avoid changing _index for imported logs
|
2022-02-27 05:09:00 -05:00 |
|
Doug Burks
|
32b71fdcac
|
Avoid changing _index for imported logs
|
2022-02-26 10:36:09 -05:00 |
|
Wes Lambert
|
bd1b21a5b6
|
Revert Endgame index name changes
|
2022-02-26 02:53:57 +00:00 |
|
weslambert
|
56cb8d62ab
|
Merge pull request #7337 from Security-Onion-Solutions/fix/pb_overrides
Fix formatting for PB overrides
|
2022-02-25 20:48:38 -05:00 |
|
weslambert
|
e942d81433
|
Ensure correct formatting for source override
|
2022-02-25 19:14:58 -05:00 |
|
weslambert
|
a511fd33e9
|
Ensure correct formatting for destination override
|
2022-02-25 19:14:21 -05:00 |
|
Doug Burks
|
74037e6f00
|
Merge pull request #7335 from Security-Onion-Solutions/fix/soup-postversion
make sure that each post_to_* function sets POSTVERSION at end
|
2022-02-25 15:27:31 -05:00 |
|
Josh Brower
|
25b0069353
|
Merge pull request #7334 from Security-Onion-Solutions/delta
IDH Setup - dont show ssh fix screen
|
2022-02-25 15:01:25 -05:00 |
|
Josh Brower
|
6a270eb8b3
|
IDH Setup - dont show ssh fix screen - fix
|
2022-02-25 14:58:30 -05:00 |
|
Josh Brower
|
ee39ec1882
|
IDH Setup - dont show ssh fix screen
|
2022-02-25 14:55:28 -05:00 |
|
Doug Burks
|
8df47e809d
|
make sure that each post_to_* function sets POSTVERSION at end
|
2022-02-25 14:30:59 -05:00 |
|
Mike Reeves
|
fa15a2e012
|
Merge pull request #7333 from Security-Onion-Solutions/endgamecurator
Fix endgame index name
|
2022-02-25 13:31:29 -05:00 |
|
Mike Reeves
|
15924ebe0f
|
Fix endgame index name
|
2022-02-25 13:29:29 -05:00 |
|
weslambert
|
c95f48e49a
|
Merge pull request #7330 from Security-Onion-Solutions/fix/pb-override
Override destination/source mappings with .keyword for Playbook
|
2022-02-25 13:07:31 -05:00 |
|
Wes Lambert
|
a8bdff89ae
|
Move files into SO component template directory
|
2022-02-25 18:00:16 +00:00 |
|
Wes Lambert
|
08097fe9ec
|
Add Playbook override mappings
|
2022-02-25 17:58:51 +00:00 |
|
Josh Brower
|
ce4c859f3a
|
Merge pull request #7328 from Security-Onion-Solutions/fix/soup-sigma-refresh
.110 Post processing - sigma refresh
|
2022-02-25 12:24:19 -05:00 |
|
Josh Patterson
|
9de9d92b2b
|
Merge pull request #7329 from Security-Onion-Solutions/delta
add extra hosts for filebeat on idh node
|
2022-02-25 12:23:37 -05:00 |
|
m0duspwnens
|
d76facb1bb
|
add extra hosts for idh node
|
2022-02-25 12:21:43 -05:00 |
|
Josh Brower
|
1abf27873d
|
.110 Post processing - sigma refresh
|
2022-02-25 12:19:59 -05:00 |
|
weslambert
|
a6ab09501e
|
Merge pull request #7326 from Security-Onion-Solutions/fix/additional_text_subfield_mappings
Add additional .text subfield mappings
|
2022-02-25 11:29:26 -05:00 |
|
Wes Lambert
|
61dadc6249
|
Add additional .text subfield mappings
|
2022-02-25 16:27:37 +00:00 |
|
Josh Brower
|
be80f0530c
|
Merge pull request #7321 from Security-Onion-Solutions/delta
IDH Improvements
|
2022-02-24 21:27:36 -05:00 |
|
Josh Brower
|
96ed3cb158
|
IDH - Setup Summary new lines
|
2022-02-24 20:59:47 -05:00 |
|
Josh Brower
|
4a597b9f0e
|
Merge remote-tracking branch 'remotes/origin/dev' into delta
|
2022-02-24 19:58:10 -05:00 |
|
Josh Brower
|
cf7325a546
|
IDH - Play tweaks, Setup summary, log rotate
|
2022-02-24 19:57:11 -05:00 |
|
Josh Patterson
|
8302c45059
|
Merge pull request #7320 from Security-Onion-Solutions/delta_ssh
default to false if local role doesnt exist
|
2022-02-24 18:06:19 -05:00 |
|
m0duspwnens
|
0970bbc983
|
default to false if local role doesnt exist
|
2022-02-24 17:55:50 -05:00 |
|
Josh Brower
|
e8e683c2e9
|
Merge pull request #7319 from Security-Onion-Solutions/delta
Add and Update IDH Plays
|
2022-02-24 15:48:38 -05:00 |
|
Josh Brower
|
fbc702375c
|
Add and Update IDH Plays
|
2022-02-24 15:06:04 -05:00 |
|
Josh Patterson
|
5c747fbb4c
|
Merge pull request #7318 from Security-Onion-Solutions/delta_ssh
change name of selinux policy state for idh node
|
2022-02-24 14:49:55 -05:00 |
|
m0duspwnens
|
8b61d4818d
|
change name of selinux policy state for idh node
|
2022-02-24 14:47:14 -05:00 |
|
weslambert
|
22b01dab1e
|
Merge pull request #7317 from Security-Onion-Solutions/fix/add_text_subfield_to_dtc_mappings
Add .text subfield mappings for DTC where fields are defined
|
2022-02-24 14:47:11 -05:00 |
|
Wes Lambert
|
0f8a39002f
|
Add .text subfield mappings for DTC where fields are defined
|
2022-02-24 19:39:52 +00:00 |
|
weslambert
|
5e29c71381
|
Merge pull request #7315 from Security-Onion-Solutions/fix/split_zeek_dns
Split Zeek DNS records into a separate index
|
2022-02-24 13:21:52 -05:00 |
|
weslambert
|
23fb62c0d6
|
Split Zeek DNS records into a separate index
|
2022-02-24 12:52:25 -05:00 |
|
weslambert
|
313487a887
|
Merge pull request #7313 from Security-Onion-Solutions/fix/kibana_dashboard_load
Add Kibana dashboard updates for 2.3.110
|
2022-02-24 09:48:28 -05:00 |
|
weslambert
|
bc1794e437
|
Fix function name
|
2022-02-24 09:42:14 -05:00 |
|
Josh Patterson
|
d7aa413c46
|
Merge pull request #7314 from Security-Onion-Solutions/delta
default port 2222 for ssh idh node
|
2022-02-24 09:37:11 -05:00 |
|
weslambert
|
45ccfc5ad4
|
Add back post to .100 and call for .110
|
2022-02-24 09:35:43 -05:00 |
|
weslambert
|
582bf4c64c
|
Remove dashboard updates for .100 so we don't run twice
|
2022-02-24 09:25:59 -05:00 |
|
weslambert
|
7f08ecdcbe
|
Add function reference for .110 post changes
|
2022-02-24 09:25:15 -05:00 |
|
weslambert
|
a22e470038
|
Add Kibana dashboard updates for 2.3.110
|
2022-02-24 09:20:44 -05:00 |
|
weslambert
|
bc2c1b4ccc
|
Merge pull request #6935 from abesinger/issue/6912
Updated syslog pipeline, resolves #6912.
|
2022-02-24 08:33:55 -05:00 |
|