Wes
|
d07c46f27e
|
Change playbook and sysmon
|
2023-07-20 16:08:50 +00:00 |
|
Wes
|
b738325880
|
Remove keyword
|
2023-07-19 13:55:12 +00:00 |
|
Wes
|
6b8893ded5
|
Update saved objects
|
2023-07-10 18:13:34 +00:00 |
|
Wes
|
6da96a733f
|
Use tags instead of dataset
|
2023-07-10 13:06:38 +00:00 |
|
Wes
|
c277b7acfa
|
Change Zeek file from evet dataset to tags
|
2023-06-30 20:24:10 +00:00 |
|
Wes
|
6bdccec6b1
|
Add asterisk back to Modbus search
|
2023-06-30 19:01:53 +00:00 |
|
Wes
|
8b38cbe8cf
|
Fix Modbus since the previous fix was reverted
|
2023-06-30 17:38:05 +00:00 |
|
Wes
|
35ea084466
|
Update from exported saved objects again
|
2023-06-30 16:55:00 +00:00 |
|
Wes
|
e2acf027a9
|
Update from exported saved objects
|
2023-06-30 16:01:50 +00:00 |
|
Wes
|
273e78da94
|
Modbus dashboard - use asterisk
|
2023-06-30 15:03:20 +00:00 |
|
Wes
|
446376395e
|
Modbus dashboard - use tags
|
2023-06-30 13:56:08 +00:00 |
|
Wes
|
a13001dce0
|
PE dashboard - use tags
|
2023-06-30 13:40:36 +00:00 |
|
Wes
|
8819e1d4d6
|
HTTP search - use tags
|
2023-06-30 13:02:00 +00:00 |
|
Wes
|
8436b647dd
|
Remove Wazuh and use tags
|
2023-06-27 18:05:04 +00:00 |
|
Wes
|
0f30e787b3
|
Surround _id field in double quotes to prevent errors associated with values beginning with a hyphen
|
2023-05-08 15:34:35 +00:00 |
|
Wes
|
c6be0a48a1
|
Remove Security Onion 16.04 dashboards
|
2023-04-11 15:05:41 +00:00 |
|
Wes
|
790b3c5635
|
Replace 'so-*' index-pattern reference with 'logs-*' for Kibana dashboard visualizations
|
2023-02-15 16:30:56 +00:00 |
|
Wes Lambert
|
33ba45472f
|
Replace syslog facility and severity with label fields
|
2022-03-04 21:40:41 +00:00 |
|
Wes Lambert
|
5c1f61bda8
|
Switch from dns.answers to dns.answers.name for DTC
|
2022-02-17 15:03:46 +00:00 |
|
Wes Lambert
|
3b76c2421c
|
Update to allow for passing HL saved objects
|
2022-01-28 17:59:34 +00:00 |
|
Wes Lambert
|
1cafacfa51
|
Update saved objects to reflect removal of TheHive scripted field and replacement of PCAP pivot with Hunt pivot
|
2022-01-05 20:36:23 +00:00 |
|
Wes Lambert
|
0571612ea1
|
Add initial EG dashes
|
2021-12-03 22:38:30 +00:00 |
|
m0duspwnens
|
da4e92a7a3
|
change config id
|
2021-11-09 12:13:28 -05:00 |
|
m0duspwnens
|
7832e59629
|
only load default kibana saved_objects during setup
|
2021-10-13 15:19:20 -04:00 |
|
m0duspwnens
|
b36d46b7f2
|
change to jinja tem,plate
|
2021-07-28 09:27:44 -04:00 |
|
m0duspwnens
|
d78a37f9e3
|
allow for control of kibana discover sampleSize - https://github.com/Security-Onion-Solutions/securityonion/issues/3933
|
2021-07-28 09:12:31 -04:00 |
|
Jason Ertel
|
ad8c12afa5
|
Upgrade ES to 7.13.4
|
2021-07-21 15:07:02 -04:00 |
|
Jason Ertel
|
b95437347e
|
Upgrade ES to 7.13.2
|
2021-06-15 12:50:57 -04:00 |
|
Jason Ertel
|
719d841353
|
Update saved objects
|
2021-06-02 20:15:03 -04:00 |
|
doug
|
ada8255af0
|
bump version to 7.13.0
|
2021-05-28 08:59:40 -04:00 |
|
Jason Ertel
|
dda07af4d4
|
Update Kibana config defaults
|
2021-04-29 17:44:15 -04:00 |
|
Mike Reeves
|
e06e023d8e
|
Fix Dashboard Placeholder
|
2021-03-20 14:05:55 -04:00 |
|
Wes Lambert
|
b481cf885b
|
Update saved objects and remove index patterns because this is now handled by Field Caps API
|
2021-03-19 18:30:42 +00:00 |
|
Doug Burks
|
555f9b5091
|
Merge pull request #3417 from Security-Onion-Solutions/issue/3413
FIX: SMTP shoud read SNMP on Kibana SNMP view #3413
|
2021-03-12 06:52:21 -05:00 |
|
doug
|
a5779a520c
|
FIX: SMTP shoud read SNMP on Kibana SNMP view #3413
|
2021-03-12 06:48:57 -05:00 |
|
Jason Ertel
|
908720592a
|
Upgrade saved objects to 7.11.2
|
2021-03-11 15:32:22 -05:00 |
|
doug
|
d39b3280c8
|
FIX: Custom Kibana settings are not being applied properly on upgrades #3254
|
2021-03-03 14:04:32 -05:00 |
|
doug
|
397d8d0964
|
Kibana 7.10.2 config changes #2954
|
2021-02-14 07:04:51 -05:00 |
|
doug
|
3248edea8b
|
Update Kibana dashboard hyperlinks to new url format #2361
|
2021-02-12 17:25:42 -05:00 |
|
doug
|
31a0c2bc82
|
Update Kibana dashboard hyperlinks to new url format #2361
|
2021-02-12 15:37:25 -05:00 |
|
doug
|
797d2c4dba
|
Kibana 7.10.2 config changes #2954
|
2021-02-12 15:35:06 -05:00 |
|
Wes Lambert
|
d863f26f9d
|
Update Kibana mappings for event ack/eslacation
|
2020-10-15 18:46:37 +00:00 |
|
Wes Lambert
|
e7401b3e0c
|
Fix default discover query
|
2020-10-14 21:43:19 +00:00 |
|
Wes Lambert
|
adf0ef87c9
|
Fix network transport Kibana viz
|
2020-10-08 12:17:15 +00:00 |
|
Wes Lambert
|
575da0f9d3
|
Change alert to case
|
2020-10-05 15:45:10 +00:00 |
|
Wes Lambert
|
8a81a5148b
|
Update scripted field for TheHive case
|
2020-10-01 20:52:57 +00:00 |
|
Wes Lambert
|
36019727b3
|
Ensure IPs are typed as IP and ports as integer
|
2020-09-29 18:20:15 +00:00 |
|
Wes Lambert
|
44ef935d65
|
Add All Logs for Connections dashboard
|
2020-09-16 15:55:28 +00:00 |
|
Wes Lambert
|
bd8d2fc271
|
Kibana dashboard updates
|
2020-09-16 15:17:26 +00:00 |
|
Josh Brower
|
da155b5dea
|
Kibana Fleet Pivot Fix
|
2020-07-17 13:00:03 -04:00 |
|