Jorge Reyes
|
942c1aa3a6
|
Merge pull request #14126 from Security-Onion-Solutions/reyesj2/es-integ-tmp
merge dev
|
2025-01-17 11:24:31 -06:00 |
|
reyesj2
|
d35ffef503
|
merge 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-17 11:23:54 -06:00 |
|
Jason Ertel
|
7705f45d78
|
Revert "subgrid config annotations"
This reverts commit 3ab1b907e4.
|
2025-01-17 12:16:12 -05:00 |
|
Jason Ertel
|
964bbe6aa5
|
additional web server security measures
|
2025-01-17 12:14:30 -05:00 |
|
reyesj2
|
01a2e4cd4f
|
check for index existence before attemping rollover
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-17 09:27:28 -06:00 |
|
m0duspwnens
|
1f13554bd9
|
move add virt install and pool creation to images/init. start moving to /nsm/libvirt/
|
2025-01-17 09:43:39 -05:00 |
|
reyesj2
|
9032d7d7bc
|
any suricata.alert with event.imported: true remains in logs-import-so
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-16 18:48:31 -06:00 |
|
reyesj2
|
d573c0922d
|
add 2.4.111 -> postupgrade check
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-16 18:25:06 -06:00 |
|
reyesj2
|
45d3438d18
|
update ingest pipeline for imported logs
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-16 17:33:14 -06:00 |
|
m0duspwnens
|
4cc3691489
|
give all nodes access to soc license pillar file
|
2025-01-16 17:51:39 -05:00 |
|
m0duspwnens
|
24eadf2507
|
add libvirt state to highstate for hypervisor. update allowed_states for libvirt
|
2025-01-16 17:46:20 -05:00 |
|
m0duspwnens
|
a274bfb744
|
license note
|
2025-01-16 17:45:07 -05:00 |
|
m0duspwnens
|
2277c792b9
|
update feature error logging in so-minion
|
2025-01-16 17:13:36 -05:00 |
|
m0duspwnens
|
61f5614ac9
|
added logging and error handling so-minion
|
2025-01-16 16:57:36 -05:00 |
|
m0duspwnens
|
6367aed62a
|
reactor needs to match runner function parameter structure
|
2025-01-16 14:59:11 -05:00 |
|
m0duspwnens
|
739f592061
|
remove old line of code
|
2025-01-16 14:06:01 -05:00 |
|
m0duspwnens
|
116c2b73c1
|
update gitignore
|
2025-01-16 11:16:34 -05:00 |
|
m0duspwnens
|
58be7ae5db
|
rename from coreol9 or coreol9Small to sool9
|
2025-01-16 11:16:20 -05:00 |
|
m0duspwnens
|
0e0fb885d2
|
hypervisor highstate after image creation, not when key accepted
|
2025-01-16 11:13:36 -05:00 |
|
m0duspwnens
|
e8546b82f8
|
default image: sool9. cloud-init add local repo
|
2025-01-16 08:43:46 -05:00 |
|
m0duspwnens
|
837fbab96d
|
minimize packages installed on manager for hyper
|
2025-01-15 17:00:06 -05:00 |
|
m0duspwnens
|
cbd2d88000
|
sync the runners
|
2025-01-15 16:59:39 -05:00 |
|
Jorge Reyes
|
6c80fd0e18
|
Merge pull request #14116 from Security-Onion-Solutions/reyesj2-patch-8
update global@custom
|
2025-01-15 14:23:40 -06:00 |
|
m0duspwnens
|
01ac1cdcca
|
check features and allowed/states
|
2025-01-15 14:13:12 -05:00 |
|
reyesj2
|
b3b7fb8f29
|
add null check and move tag lookup to .contains() in global@custom
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-15 12:16:11 -06:00 |
|
Jason Ertel
|
d101fda423
|
Merge branch '2.4/dev' into jertel/wip
|
2025-01-15 11:06:05 -05:00 |
|
Jorge Reyes
|
b1d523a4e6
|
Merge pull request #14113 from Security-Onion-Solutions/reyesj2/es-integ-tmp
update fleet-optional-integrations-load
|
2025-01-14 15:26:33 -06:00 |
|
reyesj2
|
dab56f0882
|
update fleet-optional-integrations-load
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-14 15:24:59 -06:00 |
|
m0duspwnens
|
161e8a6c21
|
ssh config for manager. dont need to create soqemussh user on manager
|
2025-01-14 16:21:17 -05:00 |
|
m0duspwnens
|
2e3c1adc63
|
runner to setup manager for first hypervisor
|
2025-01-14 16:20:21 -05:00 |
|
Jorge Reyes
|
846f2485db
|
Merge pull request #14111 from Security-Onion-Solutions/reyesj2-patch-1
update http query
|
2025-01-14 08:26:43 -06:00 |
|
Jorge Reyes
|
107ca38268
|
fix http query for "includes" function
|
2025-01-14 08:24:07 -06:00 |
|
Jorge Reyes
|
35547b476f
|
update http query
|
2025-01-14 08:13:27 -06:00 |
|
Jorge Reyes
|
ad765200c3
|
Merge pull request #14105 from Security-Onion-Solutions/reyesj2/moarzeekparse
Additional Zeek parsing & cloudflare_logpush integration
|
2025-01-13 11:37:21 -06:00 |
|
reyesj2
|
4618256442
|
include okta-mappings in so-logs-okta.system index template
|
2025-01-13 11:32:27 -06:00 |
|
reyesj2
|
323ef1d5d6
|
add missing lifecycle name to trend_micro_vision_one indices
|
2025-01-13 09:29:22 -06:00 |
|
reyesj2
|
a5b1648b68
|
add missing lifecycle name to crowdstrike indices
|
2025-01-13 09:26:16 -06:00 |
|
reyesj2
|
14c920a258
|
fix hidden ldap menu subtitle
|
2025-01-13 09:23:32 -06:00 |
|
reyesj2
|
4f92b7ced1
|
add support for cloudflare_logpush integration
|
2025-01-13 09:23:05 -06:00 |
|
Josh Brower
|
5ec2006c9e
|
Merge pull request #14102 from Security-Onion-Solutions/2.4/nav-airgap
Fix folder perm
|
2025-01-10 16:20:18 -05:00 |
|
Joshua Brower
|
dcdf31eee8
|
Fix folder perm
|
2025-01-10 16:15:17 -05:00 |
|
Jason Ertel
|
3ab1b907e4
|
subgrid config annotations
|
2025-01-10 13:45:42 -05:00 |
|
reyesj2
|
e60a1e4357
|
zeek ldap & ldap_search parsing
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-01-09 16:06:10 -06:00 |
|
m0duspwnens
|
776afa4a36
|
setup items on manager when hypervisor joins the grid
|
2025-01-09 16:32:41 -05:00 |
|
m0duspwnens
|
3cac19d498
|
createvm script without setting network in base domain
|
2025-01-09 16:31:51 -05:00 |
|
m0duspwnens
|
2ba8a87c9d
|
add directory where qcow2 images will be distributed from
|
2025-01-09 16:20:56 -05:00 |
|
m0duspwnens
|
d677dc51de
|
add comment about reactors required by salt-master
|
2025-01-09 16:19:23 -05:00 |
|
m0duspwnens
|
ebbfcd169c
|
add pkg required for so-qcow2-modify-network
|
2025-01-09 16:17:50 -05:00 |
|
m0duspwnens
|
574d2994d1
|
use cmd.run instead of cmd.script to resolve issue 64962
|
2025-01-09 16:16:59 -05:00 |
|
m0duspwnens
|
ecc5d64584
|
move logge def to global
|
2025-01-09 16:14:57 -05:00 |
|