Commit Graph

4363 Commits

Author SHA1 Message Date
Mike Reeves 2705cbbf45 jruby ssl fun 2020-08-07 23:33:02 -04:00
Mike Reeves 5525e235d1 jruby ssl fun 2020-08-07 23:28:58 -04:00
Mike Reeves 62a6f29c96 bucket stuff 2020-08-07 22:51:52 -04:00
Mike Reeves 321122cc87 update logstash 2020-08-07 22:43:34 -04:00
Mike Reeves 0d66e32305 sync cacerts 2020-08-07 22:39:29 -04:00
Mike Reeves 952234446f fix logic 2020-08-07 22:18:58 -04:00
Mike Reeves cca0dd9344 enable jinja 2020-08-07 22:14:33 -04:00
Mike Reeves 1b0f90b7e4 sync script 2020-08-07 22:12:47 -04:00
Mike Reeves d15d53bcdc Add script to extract cacerts 2020-08-07 22:04:30 -04:00
Josh Brower 4b99f55e0a Merge pull request #1155 from Security-Onion-Solutions/feature/playbook-fixes2
Playbook/Nav Fixes - Issue #1064
2020-08-07 17:03:32 -04:00
Josh Brower 928e5ed832 Playbook/Nav Fixes - Issue #1064 2020-08-07 17:02:48 -04:00
m0duspwnens 30e0abf326 Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-07 16:43:02 -04:00
m0duspwnens 0c2ea53f25 revert back to local_salt_dir 2020-08-07 16:42:46 -04:00
m0duspwnens b02332d84a fix global pillar location for setup 2020-08-07 16:18:11 -04:00
m0duspwnens 7933bafd55 more fixes for importpcap node 2020-08-07 15:46:45 -04:00
m0duspwnens d7b55c1109 add so-status map for importpcap 2020-08-07 15:21:07 -04:00
m0duspwnens 86b118ba1a add importpcap to local assigned hostgroups yaml 2020-08-07 15:00:32 -04:00
m0duspwnens 9649994f73 add importpcap to pillar/top 2020-08-07 14:40:02 -04:00
m0duspwnens a8147d7d3b add importpcap to salt_checkin for setup ssl/ca 2020-08-07 14:19:58 -04:00
Jason Ertel 847939e9b2 Fixed extra space that causes global.sls file to be empty 2020-08-07 14:11:28 -04:00
m0duspwnens fadd81c9f3 so-importpcap to ssl state 2020-08-07 13:58:29 -04:00
m0duspwnens 7c3070655b copy_minion_tmp_files for IMPORTPCAP too 2020-08-07 13:39:17 -04:00
Josh Brower ff209cfd65 Merge pull request #1149 from Security-Onion-Solutions/feature/wlb-parsing
Ingest Parsing Update for Sysmon/WEL
2020-08-07 13:37:22 -04:00
Josh Brower 3ec1b1db71 Merge pull request #1154 from Security-Onion-Solutions/feature/playbook-fixes
More Playbook Fixes - Issue #1064
2020-08-07 13:36:38 -04:00
Josh Brower a8b980b6a7 More Playbook Fixes - Issue #1064 2020-08-07 13:35:43 -04:00
m0duspwnens 2d7aefed0d add IMPORTPCAP node to set_hostname 2020-08-07 11:42:48 -04:00
m0duspwnens 7d11fc345f dont ask for patch schedule for importpcap node 2020-08-07 11:19:31 -04:00
m0duspwnens 24b77fa855 enlarge whiptail for install type selection 2020-08-07 11:16:52 -04:00
m0duspwnens 2c6a20fee9 enlarge whiptail for install type selection 2020-08-07 11:11:21 -04:00
m0duspwnens d668b85033 copy_ssh_key for is_importpcap also 2020-08-07 11:09:12 -04:00
m0duspwnens fce22c1cc4 Merge remote-tracking branch 'remotes/origin/dev' into issue/1049 2020-08-07 10:27:11 -04:00
Mike Reeves b534d2b975 Update so-functions 2020-08-07 10:05:47 -04:00
Mike Reeves d3e6657b45 Fix Spacing 2020-08-07 10:01:40 -04:00
Mike Reeves 80550b0d76 Merge pull request #1151 from Security-Onion-Solutions/feature/minio
Feature/minio
2020-08-06 15:45:27 -04:00
Josh Brower c3da302353 Merge pull request #1150 from Security-Onion-Solutions/feature/playbook-fixes
Simplify elastalert rules
2020-08-06 15:45:06 -04:00
Josh Brower ddd099233a Playbook Fixes - Issue #1064 2020-08-06 15:43:45 -04:00
Mike Reeves bbdaee28ed Add upload queue thread 2020-08-06 15:41:10 -04:00
Mike Reeves 16d0c02113 Fix cert dev null 2020-08-06 15:39:02 -04:00
Mike Reeves 63e31bd6b9 Add upload queue thread 2020-08-06 15:33:48 -04:00
Jason Ertel 31fd0b6407 Update the Hunt event fields lookups to reflect the latest ingest configs 2020-08-06 14:59:39 -04:00
Josh Brower 4f9ef89098 Simplify elastalert rules 2020-08-06 14:30:44 -04:00
Josh Brower 15efe77e06 Ingest Parsing Update for Sysmon/WEL 2020-08-06 13:11:47 -04:00
Mike Reeves 4936da9b5d Merge pull request #1146 from Security-Onion-Solutions/feature/minio
Feature/minio
2020-08-05 23:01:58 -04:00
Mike Reeves e7225349a6 Ability to toggle between redis and minio 2020-08-05 22:56:41 -04:00
Mike Reeves 4e40615e51 Add tuneable to the global pillar 2020-08-05 22:47:12 -04:00
Mike Reeves d9b1127308 Switch to gzip encoding 2020-08-05 22:36:23 -04:00
m0duspwnens d7801acea5 add mode 1 2020-08-05 17:09:41 -04:00
Mike Reeves 633c100ace final logstash tweaks 2020-08-05 16:40:21 -04:00
Jason Ertel 30ff6d2b93 Update event fields to reflect new ECS terms - WIP 2020-08-05 16:28:36 -04:00
William Wernert 64c366971f [fix] Redirect ca state apply in setup to /dev/null
Redirect ca state apply line in accept_salt_key_remote to /dev/null to avoid generating error in setup log
2020-08-05 16:13:25 -04:00