Josh Brower
|
b4b122dbd9
|
Fleet setup bugfix
|
2020-07-07 20:55:47 -04:00 |
|
Mike Reeves
|
c59096d9bd
|
rename node pillar to elasticsearch
|
2020-07-07 10:42:12 -04:00 |
|
Mike Reeves
|
f05e366d49
|
Fix salt upgrade script
|
2020-07-06 15:56:55 -04:00 |
|
bryant-treacle
|
0b10b775c5
|
Additional so-container scripts
|
2020-07-02 07:02:35 +00:00 |
|
Jason Ertel
|
cf6a229f51
|
Import now requires execution on a sensor node due to the need for zeek and suricata; Automatically stop curator if curator is installed
|
2020-07-02 12:07:30 -04:00 |
|
William Wernert
|
c7a3cc9c17
|
[fix][revert] Change source in so-allow to correct path
|
2020-07-02 08:58:14 -04:00 |
|
Jason Ertel
|
4cedacf8fd
|
Improve curator verbiage in so-import-pcap
|
2020-07-02 06:01:17 -04:00 |
|
Jason Ertel
|
ac01b8de4b
|
Stop curator when directed on PCAP imports
|
2020-07-01 22:04:07 -04:00 |
|
Jason Ertel
|
e3126064e8
|
Improve usage instructions for so-import-pcap
|
2020-07-01 17:58:02 -04:00 |
|
Jason Ertel
|
96e93b012d
|
Adjust imports for filebeat configuration to ensure import data is placed into ES
|
2020-07-01 17:18:01 -04:00 |
|
Jason Ertel
|
d6feafb12a
|
Correct indentation in filebeat.yaml
|
2020-07-01 15:39:23 -04:00 |
|
Jason Ertel
|
930f15eea5
|
Introduce so-import-pcap tool - WIP
|
2020-06-30 14:56:08 -04:00 |
|
Josh Brower
|
1c0443458c
|
so-allow spacing fix
|
2020-06-30 08:13:00 -04:00 |
|
m0duspwnens
|
0f9d8024f8
|
add sensoroni to so-status output for sensors - https://github.com/Security-Onion-Solutions/securityonion/issues/878
|
2020-06-29 16:23:04 -04:00 |
|
William Wernert
|
8e15f858dd
|
Merge branch 'dev' of github.com:Security-Onion-Solutions/securityonion-saltstack into dev
# Conflicts:
# salt/common/tools/sbin/so-allow
|
2020-06-29 15:14:12 -04:00 |
|
Wes Lambert
|
ed60d48c81
|
Add ES REST API option for so-allow
|
2020-06-29 18:49:16 +00:00 |
|
William Wernert
|
8cbccb656d
|
[fix] Apply shellcheck fixes
|
2020-06-29 11:32:25 -04:00 |
|
Wes Lambert
|
9ac85cf674
|
Add Stelka mgmt scripts
|
2020-06-29 13:09:14 +00:00 |
|
weslambert
|
6f6e8a8853
|
Merge pull request #897 from Security-Onion-Solutions/fix/strelka_rules
Fix/strelka rules
|
2020-06-26 16:43:21 -04:00 |
|
William Wernert
|
22eb81128a
|
Merge pull request #891 from Security-Onion-Solutions/feature/navigator-to-nginx
Feature/navigator to nginx
|
2020-06-26 15:48:46 -04:00 |
|
weslambert
|
813c243d3d
|
Update so-yara-update
|
2020-06-26 13:26:08 -04:00 |
|
William Wernert
|
cf7e5f1b6f
|
[fix] Change permissions on so-yara-update + fix indents
|
2020-06-26 09:59:44 -04:00 |
|
Mike Reeves
|
65687fd28e
|
Update saltstack update to point to correct github
|
2020-06-25 13:02:17 -04:00 |
|
Wes Lambert
|
a24402de99
|
More Strelka rule config
|
2020-06-25 16:31:04 +00:00 |
|
bryant-treacle
|
443332d584
|
Update so-elastic-clear
|
2020-06-24 15:03:25 -04:00 |
|
bryant-treacle
|
08220e3330
|
Issue #885: so-elastic-clear not removing so-* indices
|
2020-06-24 18:40:11 +00:00 |
|
bryant-treacle
|
0849014b24
|
Issue #885: so-elastic-clear not removing so-* indices
|
2020-06-24 17:21:58 +00:00 |
|
William Wernert
|
bd36749959
|
[feat] Remove navigator container references
|
2020-06-24 12:38:32 -04:00 |
|
Wes Lambert
|
f7eacc2b05
|
Add FW config for Strelka frontend
|
2020-06-23 18:47:23 +00:00 |
|
Mike Reeves
|
6dbe83a77f
|
Update so-docker-refresh
|
2020-06-18 12:38:07 -04:00 |
|
Wes Lambert
|
6d25151ab8
|
Basic index read-only attr removal script
|
2020-06-17 18:59:13 +00:00 |
|
Josh Brower
|
a9df5d75b0
|
Beta3 Kibana dashboard updates
|
2020-06-16 10:16:31 -04:00 |
|
m0duspwnens
|
fe39179ba1
|
fix so-status for searchnode
|
2020-06-15 17:01:23 -04:00 |
|
m0duspwnens
|
91a50c0915
|
place searchnode role with node where referenced
|
2020-06-15 16:58:30 -04:00 |
|
Josh Patterson
|
1f305352a0
|
Merge pull request #844 from Security-Onion-Solutions/quickfix/addfwrules
Quickfix/addfwrules
|
2020-06-12 15:04:04 -04:00 |
|
Jason Ertel
|
b3d2ce0e18
|
support applying the firewall state directly from so-firewall
|
2020-06-12 13:52:24 -04:00 |
|
m0duspwnens
|
1f0509cfd6
|
update so-allow for wazuh and syslog
|
2020-06-12 11:35:18 -04:00 |
|
Mike Reeves
|
032c8ca4e9
|
Fix Conflicts
|
2020-06-11 13:14:11 -04:00 |
|
Mike Reeves
|
a37faff850
|
New so-allow
|
2020-06-11 13:03:21 -04:00 |
|
Jason Ertel
|
23be399a68
|
Ensure host doesn't exist in both include and exclude lists; add support for port management; add support for removing host from exclude list
|
2020-06-10 15:19:36 -04:00 |
|
Jason Ertel
|
c072905717
|
Initial firewall management script
|
2020-06-10 01:18:39 -04:00 |
|
Josh Brower
|
3f3990ac83
|
Merge remote-tracking branch 'remotes/origin/dev' into feature/fleet-setup
|
2020-06-08 08:30:37 -04:00 |
|
Mike Reeves
|
f3fabcd93c
|
Enable git
|
2020-06-03 16:21:45 -04:00 |
|
Josh Brower
|
eaacb7b71e
|
Fleet cleanup
|
2020-06-03 05:54:35 -04:00 |
|
Jason Ertel
|
07c0075fc0
|
Upgrade containerd.io and docker-ce to match ISO rpms
|
2020-06-02 08:43:06 -04:00 |
|
Mike Reeves
|
307cbe4b77
|
Couple of QOL scripts
|
2020-06-01 20:48:25 -04:00 |
|
m0duspwnens
|
6db8470de7
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-05-29 13:09:49 -04:00 |
|
Wes Lambert
|
7f75050682
|
Add basic Zeek stats script
|
2020-05-28 17:54:15 +00:00 |
|
Josh Brower
|
aeb71bb8f0
|
Simplified setup script
|
2020-05-28 13:21:25 -04:00 |
|
weslambert
|
b835c2e27e
|
Update for exact match (ex. thehive, thehive-es, thehive-cortex)
|
2020-05-28 13:17:31 -04:00 |
|