Commit Graph

1208 Commits

Author SHA1 Message Date
Mike Reeves a4ff015c04 Merge pull request #150 from m0duspwnens/master
revert Ubuntu to Salt py2.7
2019-12-05 10:47:32 -05:00
m0duspwnens fb0fc1120b revert Ubuntu to Salt py2.7 2019-12-05 10:41:21 -05:00
Wes Lambert b58b3afa35 add auto_analyze_alerts option 2019-12-05 03:22:10 +00:00
Wes Lambert 79e1ac5336 add webhook 2019-12-04 18:39:58 +00:00
Wes Lambert 5eb0a4f19c update SOCtopus conf 2019-12-04 03:12:02 +00:00
Mike Reeves ffaadcf1ca Merge pull request #145 from defensivedepth/fleetfixes
Fleet - Fix path issues
2019-11-26 11:43:45 -05:00
Josh Brower f36d7b6926 Update so-fleet-setup.sh 2019-11-26 10:28:48 -05:00
Mike Reeves aafa99ec4e Merge pull request #143 from defensivedepth/playbook-alert-tweaks
Playbook - thehive alert name change
2019-11-26 09:58:39 -05:00
Mike Reeves d9f21ebcb8 Merge pull request #144 from m0duspwnens/master
patch motd changes and py3 salt ubuntu
2019-11-26 09:58:23 -05:00
Josh Brower 185dd7983c Update so-fleet-setup.sh 2019-11-26 08:28:06 -05:00
Josh Brower 3ac4aa255e Merge remote-tracking branch 'upstream/master' into fleet-fixes 2019-11-26 07:01:08 -05:00
Josh Brower ed9c52925a Playbook - thehive alert tweak 2019-11-23 14:09:41 -05:00
Josh Brower d16f5c5398 redmine db updated for new custom field - Case Analyzers 2019-11-21 16:10:22 -05:00
Mike Reeves c0aa48ad89 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2019-11-20 10:36:44 -05:00
Mike Reeves 21a29d7274 Initial Setup overhaul testing 2019-11-20 10:36:32 -05:00
m0duspwnens 312946bf58 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2019-11-19 15:35:00 -05:00
m0duspwnens 6153c25c37 update mine via mine_interval now vs applying a state 2019-11-19 15:34:27 -05:00
Mike Reeves 5140a17fe3 Merge pull request #140 from defensivedepth/logstash-fix
Fix dup events
2019-11-19 15:25:46 -05:00
Josh Brower 7373473b3f Fix dup events 2019-11-19 15:02:35 -05:00
Mike Reeves 0151955bdd Merge pull request #139 from weslambert/master
Cortex org changes
2019-11-19 14:55:36 -05:00
Josh Brower 118f4e34f2 Update nginx.conf.so-eval 2019-11-19 14:33:51 -05:00
Josh Brower e895d8509b append /fleet to osquery client config 2019-11-19 14:06:12 -05:00
Wes Lambert 76cdc02305 user Cortex org user instead 2019-11-19 16:28:42 +00:00
Wes Lambert b7ad65a837 add Cortex org user 2019-11-19 16:28:05 +00:00
m0duspwnens 09bf22c97a fix issues with updating motd if nodes needs restarted due to OS patch updates 2019-11-19 10:06:52 -05:00
m0duspwnens 767115c218 fix typo in salt top file 2019-11-18 16:27:14 -05:00
m0duspwnens bec95f3aef apply patch.needs_restarting state to all nodes 2019-11-18 16:25:06 -05:00
m0duspwnens 726251cd94 changes to patch motd so nodes can be removed after they restarted - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/112 2019-11-18 16:02:48 -05:00
m0duspwnens d7a1b035bd Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2019-11-18 15:34:13 -05:00
m0duspwnens cc5565d5bc fix needs_restarting module 2019-11-18 15:33:21 -05:00
Mike Reeves cbc635da76 Merge pull request #135 from m0duspwnens/master
os patch motd changes, install pip3 for Centos install
2019-11-18 09:30:16 -05:00
m0duspwnens 95a3919df4 make socore own /opt/so/saltstack recursively - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/113 2019-11-15 16:08:50 -05:00
m0duspwnens 8261b6fc63 move cmd assignment - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/112 2019-11-15 14:02:06 -05:00
m0duspwnens ff4077a46f update all nodes motd with nodes that need restarted from patch updates - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/112 2019-11-15 13:58:32 -05:00
Mike Reeves f8fed24aa5 Version Updates 2019-11-14 13:14:33 -05:00
Mike Reeves dcabe04992 Merge pull request #134 from defensivedepth/fleetupdate
Fleet - New Docker env var for path prefix
2019-11-14 11:10:43 -05:00
Mike Reeves 8cdcfd0a51 Merge pull request #132 from defensivedepth/playbook-tweaks
Playbook - Bulk import
2019-11-13 14:29:14 -05:00
Josh Brower 0007af1e12 Updated for bulk import 2019-11-13 14:27:24 -05:00
Josh Brower 7259a5346b Update osquery.template 2019-11-13 13:49:34 -05:00
Josh Brower 3fc43fa2da Update osquery.template 2019-11-13 09:52:07 -05:00
Josh Brower 977f39cea7 Update generic.template 2019-11-13 09:47:04 -05:00
Wes Lambert 55db27c898 fix require 2019-11-13 02:21:36 +00:00
Wes Lambert 1feddb7922 add Cyberchef dir 2019-11-12 22:50:46 +00:00
Wes Lambert e364638a62 add Cyberchef 2019-11-12 22:50:00 +00:00
Wes Lambert 2e82d06f27 only configure Telegraf if Grafana enabled 2019-11-12 21:10:31 +00:00
m0duspwnens 67108ccc77 iteritems deprecated for items in py3 - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/105 2019-11-11 11:09:32 -05:00
m0duspwnens 3ba2ae9a23 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2019-11-11 09:49:52 -05:00
m0duspwnens 939ab918b4 update states using module.run - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/106 2019-11-07 17:31:06 -05:00
Mike Reeves 59cdf05fad Merge pull request #124 from defensivedepth/soctopus-logging
Soctopus logging
2019-11-07 15:57:19 -05:00
Josh Brower c0cb281d27 Move logging outside container 2019-11-07 15:41:40 -05:00