Jorge Reyes
b4f588e150
Merge pull request #15462 from Security-Onion-Solutions/reyesj2-patch-15
...
WIP:airgap autosoupv2
2026-02-04 16:23:07 -06:00
reyesj2
63b08d541c
WIP:airgap autosoupv2
2026-02-04 16:21:50 -06:00
coreyogburn
c431ac3765
Merge pull request #15443 from Security-Onion-Solutions/cogburn/gemini
...
Cogburn/gemini
2026-02-04 08:49:45 -07:00
Corey Ogburn
6ff4901067
Regex on Model Name
...
This matches the regex we apply to the adapter name as we join these 2 using an @ to get things done.
2026-02-03 13:54:21 -07:00
Corey Ogburn
eea14b493c
Assistant Config Tweaks
2026-02-03 12:24:26 -07:00
Corey Ogburn
6b98c5a10d
Fix Adapter Names
...
The bedrock adapter was renamed to securityonion_ai_cloud. The available models needed updating to match.
2026-02-03 12:24:26 -07:00
Corey Ogburn
6d5ac5a16b
Describe Priorities
...
If apiKey, serviceAccountJSON, and serviceAccountLocation are all provided, the service account will override the apiKey.
2026-02-03 12:24:25 -07:00
Corey Ogburn
42060a9112
Organized, Annotated
...
Settling on the final shape of the new config values.
2026-02-03 12:24:25 -07:00
Corey Ogburn
cca4bec43f
Adapter Field
2026-02-03 12:24:24 -07:00
Jorge Reyes
9e7c304ea1
Merge pull request #15448 from Security-Onion-Solutions/reyesj2-patch-14
2026-02-03 11:24:53 -06:00
reyesj2
d540b024b2
keep logsdb disabled
2026-01-30 16:02:46 -06:00
Jorge Reyes
cf1c3ac38d
Merge pull request #15447 from Security-Onion-Solutions/reyesj2-patch-13
...
use logstash merged values for logstash metric collection
2026-01-30 12:54:02 -06:00
reyesj2
a99c553ada
use logstash merged values for logstash metric collection
2026-01-30 11:40:12 -06:00
Jorge Reyes
b1575237fc
Merge pull request #15442 from Security-Onion-Solutions/reyesj2-patch-idx
2026-01-29 16:24:26 -06:00
reyesj2
6ce6eb95d6
use existing retry
2026-01-29 15:54:36 -06:00
reyesj2
b3d1dd51a4
initialize specific indices as needed
2026-01-29 15:41:39 -06:00
Jorge Reyes
fd29fdd975
Merge pull request #15438 from Security-Onion-Solutions/reyesj2-patch-13
...
ensure exclude_files excludes log rotation pattern
2026-01-29 11:45:08 -06:00
reyesj2
2de98b1397
ensure exclude_files excludes log rotation pattern
2026-01-29 11:06:24 -06:00
Jorge Reyes
1d57c02608
Merge pull request #15436 from Security-Onion-Solutions/reyesj2-patch-13
2026-01-28 15:36:50 -06:00
reyesj2
ebeeb91297
run fleet ssl state in fleet.config to ensure all required certs are created before so-elastic-fleet-setup runs
2026-01-28 15:23:38 -06:00
Jorge Reyes
6282beb6bd
Merge pull request #15435 from Security-Onion-Solutions/reyesj2/patch-ea-grid-upgrade
...
include all so-grid-nodes_* policies in automatic EA upgrades
2026-01-28 14:22:19 -06:00
reyesj2
1c06bddb09
include all so-grid-nodes_* policies in automatic EA upgrades
2026-01-28 11:01:57 -06:00
Jorge Reyes
36f8c490c8
Merge pull request #15418 from Security-Onion-Solutions/reyesj2-patch-11
...
update heavynode's elastic-agent standalone policy
2026-01-28 08:11:02 -06:00
Jorge Reyes
94c1a641d8
Merge pull request #15424 from Security-Onion-Solutions/reyesj2-patch-5
...
update redis log file path
2026-01-28 08:10:47 -06:00
reyesj2
057131dce7
disable redis on heavynodes -- no longer in use
2026-01-27 16:39:07 -06:00
reyesj2
e5226b50ed
disable logstash metrics collection on nodes not running logstash + fleet nodes
2026-01-27 16:37:23 -06:00
reyesj2
ff4ec69f7c
remove redis log collection on heavynodes (disabled)
2026-01-27 16:28:06 -06:00
reyesj2
4ad6136d98
update redis log file path
2026-01-27 14:23:22 -06:00
Jorge Reyes
006c17bdca
Merge pull request #15420 from Security-Onion-Solutions/reyesj2-patch-12
...
exclude known error
2026-01-27 13:41:23 -06:00
reyesj2
6b1939b827
exclude known issues with 3 integrations
2026-01-27 12:59:17 -06:00
reyesj2
2038227308
remove reference to .fleet_final_pipeline-1
...
- configure global@custom ingest pipeline to run .fleet_final_pipeline-1 when available (heavynodes do not have this pipeline).
- Update global@custom pipeline to remove error message related to sending EA logs through logstash (https://github.com/elastic/kibana/issues/183959 )
2026-01-26 14:01:58 -06:00
reyesj2
950852d673
update heavynode standalone elastic agent policy
2026-01-26 13:57:19 -06:00
reyesj2
8900f9ade3
collect elasticsearch logs on heavynodes via fleet managed elastic agent
2026-01-26 13:51:58 -06:00
reyesj2
8cf0d59560
remove block of elasticsearch-logs integration on heavynodes
2026-01-26 12:48:15 -06:00
reyesj2
a78e0b0871
only create /opt/so/state/eaintegrations.txt when all policies have been created/updated successfully
2026-01-26 12:26:21 -06:00
reyesj2
32f030f6f6
formatting
2026-01-26 12:24:31 -06:00
Jorge Reyes
b0d87b49c6
Merge pull request #15414 from Security-Onion-Solutions/reyesj2/patch-falsepos
2026-01-23 17:20:56 -06:00
reyesj2
55b3fa389e
no dates
2026-01-23 16:33:22 -06:00
reyesj2
b3ae716929
ignore kratos file mapping error
2026-01-23 16:31:30 -06:00
reyesj2
5d0c187497
format json
2026-01-23 14:45:31 -06:00
Jorge Reyes
30d8cf5a6c
Merge pull request #15412 from Security-Onion-Solutions/reyesj2-patch-9
...
missing updates to variables
2026-01-22 17:01:53 -06:00
Jorge Reyes
07dbdb9f8f
Merge pull request #15411 from Security-Onion-Solutions/reyesj2-patch-10
...
add retries to so-resources repo pull
2026-01-22 17:01:35 -06:00
reyesj2
b4c8f7924a
missing updates to variables
2026-01-22 16:49:20 -06:00
reyesj2
809422c517
add retries to so-resources repo pull
2026-01-22 16:39:19 -06:00
Jorge Reyes
bb7593a53a
Merge pull request #15410 from Security-Onion-Solutions/reyesj2-patch-9
...
fix auto soup - check for compatible versions and fallback to a known…
2026-01-22 16:36:40 -06:00
reyesj2
8e3ba8900f
fix auto soup - check for compatible versions and fallback to a known good value as needed
2026-01-22 16:12:21 -06:00
Jorge Reyes
005ec87248
Merge pull request #15408 from Security-Onion-Solutions/reyesj2-patch-7
...
fix kafka state
2026-01-21 12:58:58 -06:00
reyesj2
4c6ff0641b
fix kafka state
2026-01-21 12:47:58 -06:00
Jorge Reyes
3e242913e9
Merge pull request #15407 from Security-Onion-Solutions/reyesj2-patch-6
...
more better
2026-01-20 15:31:44 -06:00
reyesj2
ba68e3c9bd
more better
2026-01-20 15:30:19 -06:00