Wes Lambert
|
4fa3749418
|
Remove bind or ES templates
|
2022-02-15 18:08:03 +00:00 |
|
Jason Ertel
|
eefcc929c2
|
Update copyright pattern to match other repos
|
2022-01-24 10:09:23 -05:00 |
|
m0duspwnens
|
7ebba1f325
|
use show_changes: False to prevent es pw from being shown when running the state
|
2022-01-19 12:11:38 -05:00 |
|
m0duspwnens
|
d0b0970353
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/6469
|
2021-12-15 17:08:56 -05:00 |
|
Mike Reeves
|
7cd1b1c482
|
Remove some previous hotfix code
|
2021-12-15 12:26:53 -05:00 |
|
m0duspwnens
|
ce0a39db4b
|
remove old EXTRAHOSTNAME EXTRAHOSTIP from being set for logstash
|
2021-12-15 09:43:46 -05:00 |
|
m0duspwnens
|
024860d0ae
|
rename EXTRA_NODES to LOGSTASH_NODES AND REDIS_NODES
|
2021-12-14 23:43:06 -05:00 |
|
m0duspwnens
|
55b74abcc5
|
extra_hosts and redis_input for logstash
|
2021-12-14 18:49:30 -05:00 |
|
m0duspwnens
|
4da017d61c
|
change extra_hosts for docker container
|
2021-12-14 17:05:30 -05:00 |
|
m0duspwnens
|
d0b6d5bba6
|
remove so-eval from lists since it doesnt run logstash
|
2021-12-14 15:33:06 -05:00 |
|
m0duspwnens
|
a31f034f2e
|
remove receiver add node for cacerts and tls-ca-bundle for logstash bind
|
2021-12-14 15:02:59 -05:00 |
|
m0duspwnens
|
6962e3f9b3
|
fix logstash certs mapped into container
|
2021-12-14 14:52:15 -05:00 |
|
Jason Ertel
|
8365b5f140
|
Strip JndiLookup.class from log4j-core jars, to match Elastic's mitigation approach
|
2021-12-13 09:02:41 -05:00 |
|
Mike Reeves
|
73ec595baa
|
Update init.sls
|
2021-12-10 14:10:05 -05:00 |
|
Mike Reeves
|
e48de18480
|
Update init.sls
|
2021-12-10 12:00:12 -05:00 |
|
m0duspwnens
|
59464af10c
|
filebeat certs for logstash on so-receiver
|
2021-12-08 09:41:17 -05:00 |
|
m0duspwnens
|
1ef63f3a23
|
ssl things for so-receiver
|
2021-12-08 09:08:46 -05:00 |
|
m0duspwnens
|
e7f43cff5e
|
limit nodes that bind filebeat certs in so-logstash
|
2021-10-27 10:45:10 -04:00 |
|
m0duspwnens
|
9f6407fcb0
|
fix dupe ids
|
2021-10-22 14:26:04 -04:00 |
|
m0duspwnens
|
f61400680d
|
fix dupe ids
|
2021-10-22 14:22:15 -04:00 |
|
m0duspwnens
|
fed8bfac67
|
more requires on docker containers
|
2021-10-22 14:10:59 -04:00 |
|
m0duspwnens
|
0627ca2fc2
|
use heavynode hostname for certs if heavynode. changes to logstash pipeline for redis if heavynode
|
2021-07-06 15:32:39 -04:00 |
|
weslambert
|
2f3f04e4ca
|
Change from nodename to host
|
2021-07-06 14:18:39 -04:00 |
|
weslambert
|
4946f32d88
|
Add extra_hosts entry for local instance when running as heavy node
|
2021-07-06 14:14:58 -04:00 |
|
Jason Ertel
|
dd8eb29a18
|
Continue merge of ECS into Elastic Auth
|
2021-06-15 09:11:58 -04:00 |
|
Mike Reeves
|
a0a8d12526
|
Enable SSL and Features
|
2021-03-04 10:08:28 -05:00 |
|
Mike Reeves
|
4212afe0c9
|
Add features option back
|
2021-01-30 19:57:18 -05:00 |
|
Mike Reeves
|
636687ac59
|
Merge pull request #2702 from Security-Onion-Solutions/essecurity
SSL with Elastic Basic license. Remove features option.
|
2021-01-21 13:57:28 -05:00 |
|
Mike Reeves
|
9408d62c65
|
Remove features
|
2021-01-21 13:55:53 -05:00 |
|
m0duspwnens
|
b693373d8d
|
change how we allow or disallow states to be run https://github.com/Security-Onion-Solutions/securityonion/issues/2679
|
2021-01-20 15:09:53 -05:00 |
|
William Wernert
|
a4897d2063
|
[fix] Add Elasticsearch to containers running on Helix sensor
|
2020-12-16 09:07:38 -05:00 |
|
William Wernert
|
15347d1209
|
[fix] More condition changes for Helix
|
2020-12-15 15:08:33 -05:00 |
|
m0duspwnens
|
1fca5e65df
|
redo how containers get added to so-status https://github.com/Security-Onion-Solutions/securityonion/issues/1681
|
2020-11-10 15:31:47 -05:00 |
|
Mike Reeves
|
13be0da484
|
Add a place where custom logstash certs can go
|
2020-10-28 15:26:41 -04:00 |
|
m0duspwnens
|
09cc8ae1fb
|
fail the state if it isnt in top
|
2020-09-09 16:48:50 -04:00 |
|
m0duspwnens
|
a229ae82ce
|
only allow state to run if it is in top for the node
|
2020-09-02 16:15:52 -04:00 |
|
Mike Reeves
|
df95baa835
|
Point logstash to use intca.crt
|
2020-08-20 10:45:48 -04:00 |
|
weslambert
|
b5dd868d1b
|
Add manager IP to container hosts file
|
2020-08-19 14:34:28 -04:00 |
|
Mike Reeves
|
28806513d9
|
Logstash logic fix
|
2020-08-10 20:53:56 -04:00 |
|
Mike Reeves
|
e659af3466
|
ES basic SSL
|
2020-08-10 14:26:56 -04:00 |
|
Mike Reeves
|
20dba6eaac
|
jruby ssl fun
|
2020-08-07 23:56:09 -04:00 |
|
Mike Reeves
|
ec1065462c
|
jruby ssl fun
|
2020-08-07 23:50:26 -04:00 |
|
Mike Reeves
|
321122cc87
|
update logstash
|
2020-08-07 22:43:34 -04:00 |
|
Mike Reeves
|
633c100ace
|
final logstash tweaks
|
2020-08-05 16:40:21 -04:00 |
|
Mike Reeves
|
95cae2f17a
|
SSL path for logstash
|
2020-08-05 14:14:35 -04:00 |
|
Mike Reeves
|
734f2979d2
|
add ca.crt to lgostash docker bind
|
2020-08-04 23:20:51 -04:00 |
|
Mike Reeves
|
61ff944087
|
add tmp to survive restarts
|
2020-08-04 18:18:06 -04:00 |
|
Mike Reeves
|
24ed92c9dc
|
minio and change to global
|
2020-08-04 15:54:03 -04:00 |
|
Wes Lambert
|
958ee25f6d
|
Move Wazuh from /opt/so/ to /nsm/wazuh
|
2020-07-27 11:58:12 +00:00 |
|
m0duspwnens
|
c61a52cc5e
|
fix the container watch for logstash container state
|
2020-07-16 15:05:54 -04:00 |
|