Commit Graph

3029 Commits

Author SHA1 Message Date
Doug Burks b291b242ee temporarily hardcode radius user.name to user.name.keyword 2020-05-18 13:47:21 -04:00
Mike Reeves a10617c182 Update nids2hive.yaml 2020-05-18 13:43:25 -04:00
Mike Reeves a56c776695 Update SOCtopus.conf 2020-05-18 13:41:37 -04:00
Mike Reeves f144fa241f Change to URL base 2020-05-18 13:36:52 -04:00
Josh Patterson 35cb60b801 Merge pull request #720 from Security-Onion-Solutions/quickfix/strelka
change strelka ip for sensor nodes
2020-05-18 10:56:35 -04:00
m0duspwnens eebe0eb618 get the first ip for the ip_interfaces:mainint grain 2020-05-18 10:54:07 -04:00
m0duspwnens 037bedb0c0 remove whitespace at top of file 2020-05-18 10:48:02 -04:00
m0duspwnens 15cd0c6b49 change strelka ip for sensor nodes 2020-05-18 10:41:39 -04:00
Doug Burks 00f6e8d61b update geoip country descriptions 2020-05-18 10:27:03 -04:00
Doug Burks 028d84b805 remove commas from groupby segments 2020-05-18 10:25:05 -04:00
Doug Burks a3323c24ac fix ftp.argument 2020-05-18 09:52:56 -04:00
Doug Burks 2f15c30d9a fix dhcp query 2020-05-18 09:44:49 -04:00
weslambert 43a8ec6f50 Merge pull request #719 from Security-Onion-Solutions/fix/so-kibana-config
Fix/so kibana config
2020-05-18 09:23:17 -04:00
Wes Lambert ee5937d038 update Kibana config 2020-05-18 13:21:18 +00:00
Wes Lambert 228bbbea5f update config export 2020-05-18 13:16:42 +00:00
Mike Reeves fbbacd205c Update filebeat.yml 2020-05-18 08:47:03 -04:00
Doug Burks bd4dfcb351 fix dns domain queries 2020-05-18 08:35:43 -04:00
Doug Burks 9cc750a90f fix dns tld failures 2020-05-18 08:32:37 -04:00
Mike Reeves b29decb95f Remove Kratos placeholder 2020-05-17 21:23:12 -04:00
William Wernert f319257f8d [feat] Change kratos:redirect to master:url_base 2020-05-17 13:14:28 -04:00
Josh Brower b01209457d Merge pull request #718 from Security-Onion-Solutions/bugfix/kibana-fleet
Update Fleet IP placeholder
2020-05-17 12:51:57 -04:00
Josh Brower 8a8970d9ee Update Fleet IP placeholder 2020-05-17 12:51:20 -04:00
Mike Reeves bc5e86bd4b Merge pull request #717 from Security-Onion-Solutions/issue/140
Issue/140
2020-05-17 11:24:59 -04:00
Mike Reeves 329a030585 Merge remote-tracking branch 'remotes/origin/dev' into issue/140 2020-05-17 09:38:30 -04:00
weslambert f7de391518 Merge pull request #713 from Security-Onion-Solutions/fix/kibana_config_load
change KRATOS to MASTER
2020-05-16 13:07:24 -04:00
Wes Lambert 23eb73a943 change KRATOS to MASTER 2020-05-16 16:31:06 +00:00
weslambert 907702441f Merge pull request #712 from Security-Onion-Solutions/fix/kibana_config_load_order
Fix load order for PLACEHOLDER
2020-05-16 11:49:58 -04:00
Wes Lambert 047f4e31ad Fix load order for PLACEHOLDER 2020-05-16 15:48:55 +00:00
weslambert 6e9784f68c Merge pull request #711 from Security-Onion-Solutions/fix/kibana_config_placeholder
fix placeholder
2020-05-16 11:46:46 -04:00
Wes Lambert 3363a5a20a fix placeholder 2020-05-16 15:45:52 +00:00
weslambert 9d4397806b Merge pull request #710 from Security-Onion-Solutions/fix/kibana_config_export
Fix/kibana config export
2020-05-16 11:35:43 -04:00
Wes Lambert 9b8cf3845a update Kibana config export 2020-05-16 15:34:33 +00:00
Wes Lambert 89527c533a update Kibana config export 2020-05-16 15:33:20 +00:00
weslambert 5d7c020223 Merge pull request #709 from Security-Onion-Solutions/fix/kibana_config
update Kibana config
2020-05-16 11:09:45 -04:00
Wes Lambert bd5cc35fc0 update Kibana config 2020-05-16 15:07:33 +00:00
weslambert 95141574d4 Merge pull request #707 from Security-Onion-Solutions/fix/dhcp_parsing
Fix/dhcp parsing
2020-05-16 11:04:13 -04:00
Wes Lambert 4b91ade2e8 fix message_types one more time :) 2020-05-16 15:03:27 +00:00
Wes Lambert 9845ee189c fix message_types for real 2020-05-16 15:02:41 +00:00
Wes Lambert f0662eed48 remark Beat tag for now 2020-05-16 14:59:41 +00:00
Wes Lambert 6a2ddd4ef6 move to DNS 2020-05-16 14:58:51 +00:00
Wes Lambert 66c89abbc6 Fix DHCP message types 2020-05-16 14:58:06 +00:00
William Wernert 5619768212 [fix] Use hostname or ip in Kibana based on setup
Fixes #603
2020-05-15 20:40:35 -04:00
m0duspwnens 6c7f487a3e Merge remote-tracking branch 'remotes/origin/dev' into issue/140 2020-05-15 19:43:18 -04:00
m0duspwnens 0086f0b71b add redis state to standalone - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/140 2020-05-15 19:43:06 -04:00
m0duspwnens bb2587aaa0 add standalone to curator conf and scripts as well as other appopriate node types - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/140 2020-05-15 15:42:04 -04:00
Doug Burks cc7a244d0b Create zeek.dns.tld
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/599
2020-05-15 15:32:25 -04:00
Doug Burks 60d2a0818b Add to zeek.dns and have it send to zeek.dns.tld
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/599
2020-05-15 15:31:17 -04:00
m0duspwnens 2bd3a4ddd1 allow curator state to install on so-searchnode, so-eval, so-node, so-mastersearch, so-heavynode, so-standalone - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/140 2020-05-15 15:30:00 -04:00
m0duspwnens 4e63477b98 Merge remote-tracking branch 'remotes/origin/dev' into issue/140 2020-05-15 15:21:03 -04:00
m0duspwnens e7baca16ef allow grafana and influxdb states to run on standalone mode - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/140 2020-05-15 15:20:36 -04:00