Commit Graph

672 Commits

Author SHA1 Message Date
Josh Brower 9c3f476f6d add bind for fleet logs 2018-12-28 13:50:43 -05:00
Josh Brower 44eed120cb add osquery logs if fleet is enabled 2018-12-28 13:49:53 -05:00
Wes Lambert 04cdd2d976 Redis - Re-enable for Fleet live queries 2018-12-18 15:45:25 +00:00
Wes Lambert 9930aac556 Wazuh - Add conditional for config profile 2018-12-14 21:28:46 +00:00
Wes Lambert 172c9e0593 Logstash - Wazuh parsing updates 2018-12-14 18:00:19 +00:00
Wes Lambert 09f5c24251 SSL - Ensure storage node gets FB cert 2018-12-14 14:05:35 +00:00
Mike Reeves 26418cfb26 Merge pull request #62 from dlee35/master
remove nginx.conf.so-SENSOR
2018-12-14 08:18:26 -05:00
dlee35 e7c34cb1b8 remove nginx.conf.so-SENSOR 2018-12-14 08:04:46 -05:00
Wes Lambert 55a426c347 Cleanup - Lowercase SENSOR 2018-12-14 03:27:13 +00:00
Mike Reeves f8b1bd0ffc Merge pull request #59 from weslambert/master
Various updates
2018-12-13 20:35:43 -05:00
dlee35 bd9f8ee2c7 fix filename and grep checks 2018-12-13 19:31:13 -05:00
Wes Lambert c7dcbb8dcb Merge remote-tracking branch 'upstream/master' 2018-12-13 23:57:24 +00:00
Wes Lambert a662badc5b Firewall - Fix stuff for sensor 2018-12-13 23:52:15 +00:00
Mike Reeves 2e78fc2e1e Master Module - I dont' want to talk about it 2018-12-13 17:19:35 -05:00
Mike Reeves 5a8ab7830e Master Module - Update acng version 2018-12-13 17:04:14 -05:00
dlee35 06037d8222 generate self-signed cert for osquery clients 2018-12-13 16:28:52 -05:00
Mike Reeves 52998d7340 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2018-12-13 14:24:47 -05:00
Mike Reeves 7ff47faa3d Common Module - Update core docker version 2018-12-13 14:24:40 -05:00
Mike Reeves fdd6bcdd6b Merge pull request #56 from dlee35/master
add firewall rule option for osquery
2018-12-13 13:42:13 -05:00
Wes Lambert bd04dc45a3 Wazuh - Fix Jinja 2018-12-13 18:30:04 +00:00
dlee35 fe56e171d4 add firewall rule option for osquery 2018-12-13 13:28:37 -05:00
Wes Lambert 75ed258d19 Firewall - Fix Wazuh IP logic for sensors 2018-12-13 17:57:22 +00:00
Wes Lambert 4db52ec865 Wazuh - Add logic for sensors 2018-12-13 17:56:51 +00:00
Wes Lambert 5e23859557 Salt - Add Wazuh to other roles 2018-12-13 17:34:19 +00:00
Wes Lambert 62067f37cf Wazuh - Fix agent ip for storage nodes 2018-12-13 17:33:12 +00:00
Wes Lambert d13e7559fe Filebeat - Enabled for master and only enable Bro/Suri inputs when needed 2018-12-13 17:32:03 +00:00
Mike Reeves 8163beadb0 Merge pull request #54 from dlee35/master
Updated Fleet init.sls and nginx confs for fleet
2018-12-12 16:34:35 -05:00
dlee35 5c737e9fda Updated Fleet init.sls and nginx confs for fleet 2018-12-12 16:19:35 -05:00
Wes Lambert 41e9c4c7e0 Logstash - Alter input for Wazuh logs 2018-12-12 20:52:18 +00:00
Wes Lambert 54c35cdc0d Filebeat - Add Wazuh archive logs 2018-12-12 20:51:41 +00:00
Wes Lambert 8496834f8b Wazuh - Re-order top.sls so Filebeat does not overrite Wazuh logs 2018-12-12 15:48:59 +00:00
Wes Lambert 9d86744e07 Filebeat - Fix Wazuh alerts path 2018-12-12 15:19:51 +00:00
Wes Lambert e20ab3b407 Filebeat - Config for Wazuh alerts 2018-12-12 14:48:17 +00:00
Wes Lambert 5822842d2e Wazuh - Add sleep to wait for API 2018-12-12 13:36:13 +00:00
Wes Lambert 8404897fe3 Wazuh - Move agent config to init.sls 2018-12-12 06:05:13 +00:00
Wes Lambert 823a589fae Wazuh - Set mode for agent registration script 2018-12-12 04:01:13 +00:00
Wes Lambert 1a4a7382e2 Wazuh - Fix Wazuh agent registration script name 2018-12-12 03:18:55 +00:00
Wes Lambert 113f030873 Wazuh - Add agent register script to init.sls 2018-12-12 02:26:38 +00:00
Wes Lambert 9a021164ac Wazuh - Fix port, add agent conf, and agent registration script 2018-12-12 01:42:05 +00:00
Wes Lambert 223237f8c2 Wazuh - Expose both UDP and TCP ports 2018-12-11 19:45:56 +00:00
Wes Lambert 6cdf1ef857 Firewall - Add rules for Wazuh Manager 2018-12-11 19:44:32 +00:00
Mike Reeves dd15a6e31a SSL Module - Fixed it so certs do not keep renewing 2018-12-11 12:27:57 -05:00
Mike Reeves a54a5ede8c MySQL Module - fix password designation 2018-12-11 11:32:37 -05:00
Mike Reeves 8c1a7b3e0c Setup - Change so passwords survive re-install 2018-12-11 11:19:54 -05:00
Wes Lambert 0f5fbadaf5 Filebeat - Switch negation to equals 2018-12-10 20:17:41 +00:00
Wes Lambert 2544984433 Wazuh - add to top.sls for Eval Mode 2018-12-10 19:51:57 +00:00
Wes Lambert e70db05a0f Filebeat - Modify config for Wazuh alerts 2018-12-10 19:50:55 +00:00
Wes Lambert cb68f502ee Wazuh - Changes to init.sls 2018-12-10 19:49:14 +00:00
Wes Lambert e6469d505a Wazuh - initial init.sls 2018-12-07 18:13:42 +00:00
Mike Reeves cdc8b577bd Redis Module - Update REDIS version to address vuln 2018-12-07 10:28:43 -05:00