m0duspwnens
884e267db5
adding auth and comment back to pillar and salt top
2020-04-01 15:36:15 -04:00
m0duspwnens
832128ac96
adding auth state back
2020-04-01 15:04:32 -04:00
m0duspwnens
62e8aa1063
fix conflict in salt/top.sls
2020-04-01 13:09:23 -04:00
m0duspwnens
9acaa514cf
monitoring zeek - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/90
2020-04-01 13:06:37 -04:00
weslambert
44ae4604b5
Merge pull request #489 from Security-Onion-Solutions/fix/strelka-curly
...
Fix curly brace
2020-04-01 12:33:02 -04:00
weslambert
7390063026
Fix curly brace
2020-04-01 12:32:29 -04:00
Mike Reeves
7db4dafea1
Reserve Kratos Group ID
2020-04-01 11:56:36 -04:00
weslambert
92c714ea4c
Merge pull request #488 from Security-Onion-Solutions/fix/strelka_top
...
Update Eval for Strelka
2020-04-01 11:42:18 -04:00
weslambert
2fcfb06ba5
Update Eval for Strelka
2020-04-01 11:41:56 -04:00
weslambert
3001abc3ea
Merge pull request #487 from Security-Onion-Solutions/fix/elastic_fixes
...
Fix/elastic fixes
2020-04-01 11:32:22 -04:00
weslambert
f13093dc51
Add message rename
2020-04-01 11:31:57 -04:00
weslambert
26efad1c45
Update Strelka log path
2020-04-01 11:30:02 -04:00
Josh Brower
572c1b5582
Merge pull request #486 from Security-Onion-Solutions/feature/osquery-ingest
...
osquery ingest - initial support
2020-04-01 10:19:42 -04:00
Josh Brower
5ca9a643a8
Merge branch 'dev' into feature/osquery-ingest
2020-04-01 10:19:35 -04:00
Josh Brower
0e76447d11
osquery ingest - initial support
2020-04-01 10:17:36 -04:00
weslambert
9f44a86ae4
Merge pull request #485 from Security-Onion-Solutions/strelka_enable
...
Enable Strelka via Setup
2020-04-01 10:08:09 -04:00
Wes Lambert
2164de97b5
Enable Strelka via Setup
2020-04-01 14:06:19 +00:00
weslambert
fd6832bf51
Merge pull request #483 from Security-Onion-Solutions/elastic_config
...
template and kibana config updates
2020-04-01 09:15:10 -04:00
Wes Lambert
33512eca2a
template and kibana config updates
2020-04-01 13:14:13 +00:00
weslambert
a6b3e0e4a8
Merge pull request #482 from Security-Onion-Solutions/fix/strelka_config
...
add strelka index
2020-04-01 09:04:35 -04:00
Wes Lambert
6cc757e1de
add strelka index
2020-04-01 13:02:36 +00:00
weslambert
d8f30a0240
Merge pull request #481 from Security-Onion-Solutions/fix/strelka_stuff
...
Fix/strelka stuff
2020-04-01 09:00:07 -04:00
Wes Lambert
70422809ec
add category
2020-04-01 12:59:10 +00:00
Wes Lambert
9bbcc185aa
change Strelka log location
2020-04-01 12:57:51 +00:00
Jason Ertel
8767f17325
Removed obsolete osquery-packages.html since it's now in soc
2020-03-31 17:43:03 -04:00
Josh Brower
2bfacecb4b
Merge pull request #478 from Security-Onion-Solutions/bugfix/osquery
...
fleet init fix
2020-03-31 09:54:45 -04:00
Josh Brower
131fd1f322
fleet init fix
2020-03-31 09:53:59 -04:00
Jason Ertel
14c44e0f6e
Merge pull request #476 from Security-Onion-Solutions/feature/auth
...
Integrate new auth system and SOC interface
2020-03-31 08:57:19 -04:00
Jason Ertel
f7e9e99eae
Added new soc-related saltstack files.
2020-03-30 22:15:49 -04:00
weslambert
fd00cdf8f3
Merge pull request #473 from Security-Onion-Solutions/more_elastic_stuff
...
More elastic stuff
2020-03-30 20:41:56 -04:00
Wes Lambert
68138e009a
update FB config
2020-03-31 00:37:58 +00:00
Wes Lambert
5226ec1560
update Kibana config/dashboards/etc
2020-03-31 00:37:17 +00:00
Wes Lambert
eacd3c9bfd
update zeek.common
2020-03-31 00:36:42 +00:00
Jason Ertel
cbd710bcf2
Replaced auth system with new identity management system.
2020-03-30 19:27:56 -04:00
weslambert
9758563967
Merge pull request #470 from Security-Onion-Solutions/ecs_community_id
...
add community_id parsing for ingest
2020-03-30 11:51:05 -04:00
Wes Lambert
ad50093315
add community_id parsing for ingest
2020-03-30 15:49:36 +00:00
weslambert
ee4e3c0659
Merge pull request #469 from Security-Onion-Solutions/fix/ingest_stuff
...
update wazuh fields and category
2020-03-30 10:24:43 -04:00
Wes Lambert
93c3c86e2f
update wazuh fields and category
2020-03-30 14:24:01 +00:00
weslambert
b6db36723d
Merge pull request #467 from Security-Onion-Solutions/fix/kibana_config_update
...
update Kibana json config
2020-03-30 10:21:18 -04:00
Wes Lambert
70bc35eb7e
update Kibana json config
2020-03-30 14:20:06 +00:00
William Wernert
d7478bbcb7
[fix] Revert checksum script change
2020-03-27 09:05:21 -04:00
William Wernert
c105732976
Merge pull request #466 from Security-Onion-Solutions/bugfix/ubuntu-xenial-fixes
...
Bugfix/ubuntu xenial fixes
2020-03-26 18:55:41 -04:00
William Wernert
04cbda356f
Merge pull request #465 from Security-Onion-Solutions/hotfix/so-status-docker-api
...
[fix] Use v2 of Docker http api
2020-03-26 18:48:11 -04:00
William Wernert
7709bfd28e
[fix] Use v2 of Docker http api
...
Docker no longer exposes the default api path, so we need to use /v2 in our api call
2020-03-26 18:47:37 -04:00
William Wernert
f02808aaa7
[fix] Networking config fixes + 18.04 changes
...
* Add code to allow 18.04 to use Network Manager
* Disable ipv6 on all interfaces to prevent multicast traffic on sniffing interface (revisit later)
* Rename and modify checksum disable script for 18.04 compatibility
Fixes #387
Fixes #413
2020-03-26 18:45:56 -04:00
Josh Brower
e44157aa7d
Merge pull request #464 from Security-Onion-Solutions/feature/zeek-communityid
...
Zeek - enable Community ID policy
2020-03-26 16:34:46 -04:00
Josh Brower
31ae8a2c26
Zeek - enable Community ID policy
2020-03-26 16:33:47 -04:00
Josh Patterson
3918b697e4
Merge pull request #463 from Security-Onion-Solutions/issue/90
...
Issue/90
2020-03-26 15:54:25 -04:00
m0duspwnens
c14f32fcc9
more changes for healthcheck - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/90
2020-03-26 15:45:19 -04:00
Josh Brower
11907dc4ad
Merge pull request #462 from Security-Onion-Solutions/bugfix/fleet
...
Bugfix/fleet
2020-03-26 11:23:28 -04:00