Commit Graph

935 Commits

Author SHA1 Message Date
Mike Reeves
aef56d243d Merge pull request #117 from weslambert/master
pin Wazuh agent version
2019-10-31 11:13:14 -04:00
Mike Reeves
fdee590c82 Merge pull request #118 from defensivedepth/nids2hive-tweak
Adds NIDS SID to Hive Alert as a Tag
2019-10-31 11:13:03 -04:00
Josh Brower
0b0d8e21ed Adds NIDS SID to Hive Alert as a Tag 2019-10-31 11:08:52 -04:00
Wes Lambert
74428f33eb pin Wazuh agent version 2019-10-31 14:55:14 +00:00
Mike Reeves
054be1db11 Merge pull request #116 from m0duspwnens/master
changes for issues #92 and #96
2019-10-30 12:41:19 -04:00
m0duspwnens
974efbaf21 fix ca signing policies for changes related to https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/96 2019-10-30 12:37:44 -04:00
m0duspwnens
07d2ae013d changes to address - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/96 and https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/92 2019-10-29 11:24:17 -04:00
Mike Reeves
9d9b3c18f3 Merge pull request #115 from defensivedepth/logstash-tweaks
Logstash tweaks
2019-10-28 10:38:51 -04:00
Josh Brower
4dbc5f07b2 Enable 0006_input_beats.conf by default on EVAL 2019-10-25 10:19:05 -04:00
Mike Reeves
783a9cd102 Elastic Search State - Fix ingest to work with storage nodes 2019-10-25 09:51:04 -04:00
Mike Reeves
20c4f15bbb Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:51:32 -04:00
Mike Reeves
c064121f49 Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:47:21 -04:00
Mike Reeves
f6a8b192df Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:45:33 -04:00
Josh Brower
504dd6559d Default ssl to false 2019-10-24 16:44:33 -04:00
Mike Reeves
0f5c0373c5 SSL Issue 79 - Remove extensions from filebeat cert 2019-10-23 15:27:31 -04:00
Mike Reeves
3ecb6a7c3f SSL Issue 79 - Add extended type to all certs 2019-10-21 17:55:06 -04:00
Mike Reeves
06261b0b9a SSL Issue 79 - Add extended type to all certs 2019-10-21 17:54:09 -04:00
Mike Reeves
792cc7d4c4 SSL Issue 79 - Reduce valid time 2019-10-21 17:04:18 -04:00
Mike Reeves
776cc89520 Filebeat Module - Issue 61 2019-10-16 11:22:54 -04:00
Mike Reeves
ca4cd782a1 Docker URL Fix - Issue #68 2019-10-16 10:39:18 -04:00
Mike Reeves
ac9500c011 Merge pull request #113 from dlee35/master
beats template parity w/16.04.6.2 & rm fleet-launcher container fix
2019-10-11 08:56:36 -04:00
Dustin Lee
96ec2863dc fleet-launcher: rm container after run 2019-10-11 08:37:09 -04:00
Dustin Lee
699371a4d7 logstash: add beats template used in latest SO 2019-10-11 08:36:44 -04:00
Mike Reeves
e999a27d3e 1.1.2 2019-10-09 14:15:05 -04:00
Mike Reeves
32d1641b6e Firewall Module - Fix some docker iptables issues 2019-10-09 13:33:07 -04:00
Josh Brower
308041fad6 SOCtopus - Edit osquery playbook template
Fixes bug for when there is no [osquery][columns][address] field
2019-10-01 17:59:35 -04:00
Mike Reeves
176677add4 Common Module - Upgrade core version 2019-09-30 13:57:07 -04:00
Josh Brower
6486dbc0d8 Kibana - New docker HH1.1.1 2019-09-27 16:29:32 -04:00
Josh Brower
93c73b50ce Playbook - Move db outside of container 2019-09-27 15:21:02 -04:00
Mike Reeves
657ddc42a8 Playbook - Add flag for runtime 2019-09-27 10:40:28 -04:00
Josh Brower
4352b1ebf6 Updated Kibana NIDS SID Drilldown dashboard 2019-09-26 11:11:18 -04:00
Mike Reeves
1dd59e92e4 Common Module - Fix nginx for websockets 2019-09-25 16:58:15 -04:00
Mike Reeves
063f9012d1 PCAP Module - Fix sensoroni logging 2019-09-25 16:21:02 -04:00
Josh Brower
563378e2a4 Merge pull request #108 from defensivedepth/playbook
Playbook & SOCtopus init edits
2019-09-25 15:28:58 -04:00
Josh Brower
d9713cc14a Playbook & SOCtopus init edits 2019-09-25 15:18:18 -04:00
Mike Reeves
d979be82fb Hive Module - New Version 2019-09-25 13:16:49 -04:00
Josh Brower
f69a5212ff Merge pull request #106 from defensivedepth/playbook
Playbook and Navigator - initial salt config
2019-09-25 13:07:44 -04:00
Josh Brower
909e35ec3b Playbook and Navigator - initial salt config 2019-09-25 13:04:53 -04:00
Mike Reeves
58073cd04f Hive Module - Fix ES 2019-09-25 11:43:30 -04:00
Mike Reeves
db7920710b Hive Module - Temp remove init 2019-09-25 10:34:46 -04:00
Josh Brower
bc788a3d35 Playbook - initial commit 2019-09-24 20:09:20 -04:00
Wes Lambert
5bd77a5177 update log path 2019-09-24 20:37:07 +00:00
Wes Lambert
497edcbe45 update Filebeat log config 2019-09-24 19:38:06 +00:00
Mike Reeves
1fc4cca2ad Hive Module - update version 2019-09-24 15:23:12 -04:00
Mike Reeves
b0b76c1809 Filebeat - Roll back version 2019-09-24 14:15:00 -04:00
Mike Reeves
5e2cc08039 PCAP Module - Update steno image 2019-09-24 14:05:20 -04:00
doug
cb899943aa incoming bro_tunnel logs should go to bro_tunnels 2019-09-24 14:00:22 -04:00
Josh Brower
eb10914969 Update nids2hive.yaml 2019-09-24 12:32:59 -04:00
Mike Reeves
b1f582d218 Logstash Module - 1.1.1 2019-09-24 11:22:07 -04:00
Mike Reeves
e6ea6b4d73 Wazuh Module - Fix gid error 2019-09-24 11:07:38 -04:00