Commit Graph

1116 Commits

Author SHA1 Message Date
Mike Reeves
8a4e180a18 Merge pull request #70 from defensivedepth/osquery
Osquery - tweaks to initial config
2019-01-02 09:54:19 -05:00
Josh Brower
ce43fd7cd4 Moved to dynamic 2019-01-01 11:20:09 -05:00
Josh Brower
b9f6269925 Moved to dynamic 2019-01-01 11:20:01 -05:00
Josh Brower
bc7bf5774a Enable osquery parsers for EVAL role 2019-01-01 11:14:38 -05:00
Josh Brower
15bfce07e8 Move osquery parsers from custom to dynamic 2019-01-01 11:13:05 -05:00
Josh Brower
f21e52b431 Add missing character 2019-01-01 11:11:29 -05:00
Mike Reeves
739c8b8d5e Merge pull request #68 from defensivedepth/osquery
Osquery/Fleet initial enhancements
2018-12-28 14:59:28 -05:00
Josh Brower
fff13d5861 Tag & initial JSON decode for osquery logs 2018-12-28 13:56:06 -05:00
Josh Brower
1917b469ec osquery-tagged logs output to ES 2018-12-28 13:55:02 -05:00
Josh Brower
389b57f226 parser for windows event logs shipped by osquery 2018-12-28 13:54:11 -05:00
Josh Brower
679a6841f8 Osquery Overview dashboard - initial version 2018-12-28 13:51:44 -05:00
Josh Brower
9c3f476f6d add bind for fleet logs 2018-12-28 13:50:43 -05:00
Josh Brower
44eed120cb add osquery logs if fleet is enabled 2018-12-28 13:49:53 -05:00
Mike Reeves
94d25d96e9 Merge pull request #66 from weslambert/master
Redis - Re-enable for Fleet live queries
2018-12-18 10:51:48 -05:00
Wes Lambert
04cdd2d976 Redis - Re-enable for Fleet live queries 2018-12-18 15:45:25 +00:00
Mike Reeves
7df029764d Merge pull request #65 from weslambert/master
Wazuh - Add conditional for config profile
2018-12-14 16:30:42 -05:00
Wes Lambert
9930aac556 Wazuh - Add conditional for config profile 2018-12-14 21:28:46 +00:00
Mike Reeves
46546e2952 Readme Update Version to 1.0.5 2018-12-14 15:22:22 -05:00
Mike Reeves
d3ddc52035 Merge pull request #64 from weslambert/master
Logstash - Wazuh parsing updates
2018-12-14 13:27:28 -05:00
Wes Lambert
172c9e0593 Logstash - Wazuh parsing updates 2018-12-14 18:00:19 +00:00
Mike Reeves
46372d1384 Merge pull request #63 from weslambert/master
Updates
2018-12-14 10:10:33 -05:00
Wes Lambert
2f12c36c87 Setup - Clean up old Wazuh stuff and move Curator config to SN Adv Mode 2018-12-14 14:07:20 +00:00
Wes Lambert
09f5c24251 SSL - Ensure storage node gets FB cert 2018-12-14 14:05:35 +00:00
Mike Reeves
26418cfb26 Merge pull request #62 from dlee35/master
remove nginx.conf.so-SENSOR
2018-12-14 08:18:26 -05:00
dlee35
e7c34cb1b8 remove nginx.conf.so-SENSOR 2018-12-14 08:04:46 -05:00
Mike Reeves
b3cb297813 Merge pull request #61 from weslambert/master
Cleanup - Lowercase SENSOR
2018-12-13 22:29:31 -05:00
Wes Lambert
55a426c347 Cleanup - Lowercase SENSOR 2018-12-14 03:27:13 +00:00
Mike Reeves
f8b1bd0ffc Merge pull request #59 from weslambert/master
Various updates
2018-12-13 20:35:43 -05:00
Mike Reeves
f00e59dea3 Merge pull request #60 from dlee35/master
fix filename and grep checks
2018-12-13 20:35:00 -05:00
dlee35
bd9f8ee2c7 fix filename and grep checks 2018-12-13 19:31:13 -05:00
Wes Lambert
9ce41f81b9 Setup - Make sensor minion config consistent 2018-12-14 00:12:37 +00:00
Wes Lambert
c7dcbb8dcb Merge remote-tracking branch 'upstream/master' 2018-12-13 23:57:24 +00:00
Wes Lambert
a662badc5b Firewall - Fix stuff for sensor 2018-12-13 23:52:15 +00:00
Mike Reeves
2e78fc2e1e Master Module - I dont' want to talk about it 2018-12-13 17:19:35 -05:00
Mike Reeves
5a8ab7830e Master Module - Update acng version 2018-12-13 17:04:14 -05:00
Wes Lambert
1d9fae304c Setup - Get Curator disk size when /nsm not present 2018-12-13 22:01:21 +00:00
Mike Reeves
de7e7df2b8 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2018-12-13 16:55:55 -05:00
Mike Reeves
cc5bf1cf64 Setup Script - Install the repo on Ubuntu 2018-12-13 16:55:48 -05:00
Mike Reeves
7d5d364bd7 Merge pull request #58 from dlee35/master
generate self-signed cert for osquery clients
2018-12-13 16:30:43 -05:00
dlee35
06037d8222 generate self-signed cert for osquery clients 2018-12-13 16:28:52 -05:00
Mike Reeves
1326d8d573 Setup Script - Cleanup of some Wazuh 2018-12-13 14:46:03 -05:00
Mike Reeves
1d0cb9c20e Setup Script - Cleanup of some Wazuh 2018-12-13 14:41:50 -05:00
Mike Reeves
52998d7340 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2018-12-13 14:24:47 -05:00
Mike Reeves
7ff47faa3d Common Module - Update core docker version 2018-12-13 14:24:40 -05:00
Mike Reeves
fdd6bcdd6b Merge pull request #56 from dlee35/master
add firewall rule option for osquery
2018-12-13 13:42:13 -05:00
Mike Reeves
7fd2869159 Merge pull request #57 from weslambert/master
Wazuh - Fix Jinja
2018-12-13 13:34:30 -05:00
Mike Reeves
d47e0ac4f8 Setup Script - Add Wazuh Repo for Ubuntu 2018-12-13 13:33:38 -05:00
Wes Lambert
bd04dc45a3 Wazuh - Fix Jinja 2018-12-13 18:30:04 +00:00
dlee35
fe56e171d4 add firewall rule option for osquery 2018-12-13 13:28:37 -05:00
Mike Reeves
07a2b34583 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2018-12-13 13:22:04 -05:00