Mike Reeves
|
2e01330e1b
|
Update 9101_output_osquery_livequery.conf.jinja
|
2021-03-09 13:15:04 -05:00 |
|
Josh Brower
|
00da549430
|
Merge pull request #3358 from Security-Onion-Solutions/delta
FEATURE: Initial support for viewing Osquery Live Query results in Hunt
|
2021-03-09 09:18:57 -05:00 |
|
Josh Brower
|
fe8788c09a
|
Merge remote-tracking branch 'remotes/origin/dev' into delta
|
2021-03-08 12:56:47 -05:00 |
|
Josh Brower
|
548f67ca6f
|
Initial support for Live Queries in Hunt
|
2021-03-04 18:21:13 -05:00 |
|
Mike Reeves
|
a0a8d12526
|
Enable SSL and Features
|
2021-03-04 10:08:28 -05:00 |
|
Mike Reeves
|
49371a1d6a
|
fix elastic output for ssl
|
2021-03-03 14:30:45 -05:00 |
|
Mike Reeves
|
bfd05a8cfc
|
Change to https for elastic connections
|
2021-03-02 11:32:29 -05:00 |
|
Mike Reeves
|
3219f4cd12
|
Remove Features Option
|
2021-03-02 11:04:50 -05:00 |
|
Josh Brower
|
b8137214e4
|
Initial Support - Live Query to Hunt
|
2021-02-26 08:08:09 -05:00 |
|
Mike Reeves
|
4212afe0c9
|
Add features option back
|
2021-01-30 19:57:18 -05:00 |
|
Mike Reeves
|
636687ac59
|
Merge pull request #2702 from Security-Onion-Solutions/essecurity
SSL with Elastic Basic license. Remove features option.
|
2021-01-21 13:57:28 -05:00 |
|
Mike Reeves
|
9408d62c65
|
Remove features
|
2021-01-21 13:55:53 -05:00 |
|
m0duspwnens
|
b693373d8d
|
change how we allow or disallow states to be run https://github.com/Security-Onion-Solutions/securityonion/issues/2679
|
2021-01-20 15:09:53 -05:00 |
|
William Wernert
|
a4897d2063
|
[fix] Add Elasticsearch to containers running on Helix sensor
|
2020-12-16 09:07:38 -05:00 |
|
William Wernert
|
15347d1209
|
[fix] More condition changes for Helix
|
2020-12-15 15:08:33 -05:00 |
|
m0duspwnens
|
1fca5e65df
|
redo how containers get added to so-status https://github.com/Security-Onion-Solutions/securityonion/issues/1681
|
2020-11-10 15:31:47 -05:00 |
|
Mike Reeves
|
13be0da484
|
Add a place where custom logstash certs can go
|
2020-10-28 15:26:41 -04:00 |
|
Mike Reeves
|
361b13dc88
|
Add a place where custom logstash certs can go
|
2020-10-28 15:25:00 -04:00 |
|
Wes Lambert
|
884cc2d054
|
Don't predefine index date for Logstash outputs
|
2020-10-12 15:41:47 +00:00 |
|
Mike Reeves
|
96083e1458
|
update logstash outputs
|
2020-10-11 17:06:56 -04:00 |
|
Mike Reeves
|
e4ce17d4de
|
Turn on SSL output
|
2020-10-11 16:10:55 -04:00 |
|
Mike Reeves
|
a7bd1c2ce5
|
Turn on SSL output
|
2020-10-11 15:58:12 -04:00 |
|
Wes Lambert
|
69a04dedd3
|
Filterlog config changes
|
2020-10-09 23:56:52 +00:00 |
|
weslambert
|
8e829b47ae
|
Remove dataset name since pipeline no longer in use
|
2020-10-07 11:48:56 -04:00 |
|
m0duspwnens
|
748dc5ba91
|
logstash changes per https://github.com/Security-Onion-Solutions/securityonion/issues/1444
|
2020-10-05 14:10:05 -04:00 |
|
m0duspwnens
|
09cc8ae1fb
|
fail the state if it isnt in top
|
2020-09-09 16:48:50 -04:00 |
|
m0duspwnens
|
a229ae82ce
|
only allow state to run if it is in top for the node
|
2020-09-02 16:15:52 -04:00 |
|
Mike Reeves
|
df95baa835
|
Point logstash to use intca.crt
|
2020-08-20 10:45:48 -04:00 |
|
weslambert
|
b5dd868d1b
|
Add manager IP to container hosts file
|
2020-08-19 14:34:28 -04:00 |
|
Mike Reeves
|
8daf11f085
|
Fix logstash outputs
|
2020-08-11 13:58:28 -04:00 |
|
Mike Reeves
|
28806513d9
|
Logstash logic fix
|
2020-08-10 20:53:56 -04:00 |
|
Mike Reeves
|
e659af3466
|
ES basic SSL
|
2020-08-10 14:26:56 -04:00 |
|
Mike Reeves
|
bc09a89a01
|
output plugin to normal port
|
2020-08-08 20:36:28 -04:00 |
|
Mike Reeves
|
9248896a20
|
fix redis ports
|
2020-08-08 20:24:30 -04:00 |
|
Mike Reeves
|
f154d2fa78
|
Upodate SSL
|
2020-08-08 20:04:19 -04:00 |
|
Mike Reeves
|
20dba6eaac
|
jruby ssl fun
|
2020-08-07 23:56:09 -04:00 |
|
Mike Reeves
|
ec1065462c
|
jruby ssl fun
|
2020-08-07 23:50:26 -04:00 |
|
Mike Reeves
|
5525e235d1
|
jruby ssl fun
|
2020-08-07 23:28:58 -04:00 |
|
Mike Reeves
|
62a6f29c96
|
bucket stuff
|
2020-08-07 22:51:52 -04:00 |
|
Mike Reeves
|
321122cc87
|
update logstash
|
2020-08-07 22:43:34 -04:00 |
|
Mike Reeves
|
bbdaee28ed
|
Add upload queue thread
|
2020-08-06 15:41:10 -04:00 |
|
Mike Reeves
|
4e40615e51
|
Add tuneable to the global pillar
|
2020-08-05 22:47:12 -04:00 |
|
Mike Reeves
|
d9b1127308
|
Switch to gzip encoding
|
2020-08-05 22:36:23 -04:00 |
|
Mike Reeves
|
633c100ace
|
final logstash tweaks
|
2020-08-05 16:40:21 -04:00 |
|
Mike Reeves
|
95cae2f17a
|
SSL path for logstash
|
2020-08-05 14:14:35 -04:00 |
|
Mike Reeves
|
734f2979d2
|
add ca.crt to lgostash docker bind
|
2020-08-04 23:20:51 -04:00 |
|
Mike Reeves
|
970ee195a1
|
use hostname so TLS will work
|
2020-08-04 23:08:33 -04:00 |
|
Mike Reeves
|
58872c9b48
|
enable ssl logstash
|
2020-08-04 22:40:59 -04:00 |
|
Mike Reeves
|
61ff944087
|
add tmp to survive restarts
|
2020-08-04 18:18:06 -04:00 |
|
Mike Reeves
|
a2e5dca065
|
Fix output pillar for minio
|
2020-08-04 18:02:54 -04:00 |
|