Mike Reeves
|
348f7f39cc
|
strip node suffix
|
2020-08-11 11:37:53 -04:00 |
|
Mike Reeves
|
7e0249c377
|
ES cleanup
|
2020-08-11 10:28:21 -04:00 |
|
Mike Reeves
|
b84d7d818f
|
Fix for loop
|
2020-08-11 10:20:02 -04:00 |
|
Mike Reeves
|
d941209479
|
Walk nodes tab
|
2020-08-11 10:17:28 -04:00 |
|
Mike Reeves
|
59292425c0
|
Add transport hostname
|
2020-08-10 23:03:54 -04:00 |
|
Mike Reeves
|
ac3f490299
|
Add transport hostname
|
2020-08-10 23:02:03 -04:00 |
|
Mike Reeves
|
730e389aae
|
Add transport hostname
|
2020-08-10 22:57:49 -04:00 |
|
Mike Reeves
|
52cc56bebb
|
Add transport hostname
|
2020-08-10 22:56:15 -04:00 |
|
Mike Reeves
|
c3d8c599cc
|
Turn off user auth
|
2020-08-10 22:13:17 -04:00 |
|
Mike Reeves
|
6007a6c4d8
|
Things like this are why I hate Java
|
2020-08-10 22:10:03 -04:00 |
|
Mike Reeves
|
d00231af06
|
Things like this are why I hate Java
|
2020-08-10 22:05:46 -04:00 |
|
Mike Reeves
|
31ab1e8ed8
|
Things like this are why I hate Java
|
2020-08-10 22:03:24 -04:00 |
|
Mike Reeves
|
6d2be9af7e
|
Things like this are why I hate Java
|
2020-08-10 21:58:44 -04:00 |
|
Mike Reeves
|
cdda46ce58
|
ca typeo
|
2020-08-10 21:54:36 -04:00 |
|
Mike Reeves
|
811da5732a
|
Elastic logic fix
|
2020-08-10 21:51:29 -04:00 |
|
Mike Reeves
|
cf5c29d01c
|
Change certs path on elstic
|
2020-08-10 21:30:53 -04:00 |
|
Mike Reeves
|
e28619604c
|
Change certs path on elstic
|
2020-08-10 21:26:00 -04:00 |
|
Mike Reeves
|
e7cd527d49
|
Enable SSL in elastic
|
2020-08-10 21:18:03 -04:00 |
|
Mike Reeves
|
92cc176b6d
|
Fix features logic in all states that use it
|
2020-08-10 20:59:41 -04:00 |
|
Mike Reeves
|
f840c85a46
|
make script run
|
2020-08-08 17:31:59 -04:00 |
|
Mike Reeves
|
ec1065462c
|
jruby ssl fun
|
2020-08-07 23:50:26 -04:00 |
|
Mike Reeves
|
d171adb9c9
|
jruby ssl fun
|
2020-08-07 23:39:13 -04:00 |
|
Mike Reeves
|
64af6f99e9
|
jruby ssl fun
|
2020-08-07 23:34:55 -04:00 |
|
Mike Reeves
|
2705cbbf45
|
jruby ssl fun
|
2020-08-07 23:33:02 -04:00 |
|
Mike Reeves
|
5525e235d1
|
jruby ssl fun
|
2020-08-07 23:28:58 -04:00 |
|
Mike Reeves
|
321122cc87
|
update logstash
|
2020-08-07 22:43:34 -04:00 |
|
Mike Reeves
|
0d66e32305
|
sync cacerts
|
2020-08-07 22:39:29 -04:00 |
|
Mike Reeves
|
952234446f
|
fix logic
|
2020-08-07 22:18:58 -04:00 |
|
Mike Reeves
|
cca0dd9344
|
enable jinja
|
2020-08-07 22:14:33 -04:00 |
|
Mike Reeves
|
1b0f90b7e4
|
sync script
|
2020-08-07 22:12:47 -04:00 |
|
Mike Reeves
|
d15d53bcdc
|
Add script to extract cacerts
|
2020-08-07 22:04:30 -04:00 |
|
Josh Brower
|
928e5ed832
|
Playbook/Nav Fixes - Issue #1064
|
2020-08-07 17:02:48 -04:00 |
|
Josh Brower
|
ff209cfd65
|
Merge pull request #1149 from Security-Onion-Solutions/feature/wlb-parsing
Ingest Parsing Update for Sysmon/WEL
|
2020-08-07 13:37:22 -04:00 |
|
Josh Brower
|
a8b980b6a7
|
More Playbook Fixes - Issue #1064
|
2020-08-07 13:35:43 -04:00 |
|
Josh Brower
|
15efe77e06
|
Ingest Parsing Update for Sysmon/WEL
|
2020-08-06 13:11:47 -04:00 |
|
Mike Reeves
|
24ed92c9dc
|
minio and change to global
|
2020-08-04 15:54:03 -04:00 |
|
Josh Brower
|
d971d07720
|
Osquery & WLB Parsing Update for WEL & Sysmon
|
2020-07-31 16:06:15 -04:00 |
|
Josh Brower
|
55e60cb749
|
initial refactor - beats/sysmon parsing
|
2020-07-28 11:03:33 -04:00 |
|
Jason Ertel
|
d2df405cf0
|
so-import-pcap improvements: Ensure PCAP filenames with spaces are handled properly; Provide link directly to the imported logs, filtered by import ID; Require sudo access to run so-import-pcap
|
2020-07-21 11:07:09 -04:00 |
|
Josh Patterson
|
f1d8548913
|
Merge pull request #1017 from Security-Onion-Solutions/quickfix/lstoes
dont run templates script if there arent templates
|
2020-07-16 13:37:15 -04:00 |
|
m0duspwnens
|
9606d86e84
|
dont run templates script if there arent templates
|
2020-07-16 13:36:44 -04:00 |
|
Josh Patterson
|
549916306c
|
Merge pull request #1008 from Security-Onion-Solutions/quickfix/lstoes
Quickfix/lstoes
|
2020-07-14 17:37:19 -04:00 |
|
m0duspwnens
|
5cf71596b2
|
add curlys
|
2020-07-14 17:36:52 -04:00 |
|
m0duspwnens
|
acaec6c125
|
remove recurse causing issues
|
2020-07-14 17:12:29 -04:00 |
|
Josh Brower
|
8647944ae6
|
Parsing & Hunt query updates
|
2020-07-14 16:59:06 -04:00 |
|
m0duspwnens
|
57bf23d83c
|
move templates from logstash to elasticsearch
|
2020-07-14 16:07:46 -04:00 |
|
Doug Burks
|
a1e6a85a68
|
explicitly set Suricata timestamp timezone to UTC
|
2020-07-14 15:49:46 -04:00 |
|
Wes Lambert
|
f9df39977b
|
Add observer name for Strelka events
|
2020-07-14 17:38:43 +00:00 |
|
Wes Lambert
|
d6afde90b0
|
Convert message timestamp to @timestamp
|
2020-07-14 13:37:00 +00:00 |
|
Jason Ertel
|
8f66a27f07
|
Refactor image repository to a single variable
|
2020-07-13 18:26:43 -04:00 |
|