Josh Patterson
|
aafd365f2b
|
Merge pull request #1583 from Security-Onion-Solutions/issue/1551
add firewall rules for syslog
|
2020-10-21 11:21:18 -04:00 |
|
m0duspwnens
|
5f43380aa0
|
add firewall rules for syslog
|
2020-10-21 11:20:34 -04:00 |
|
Josh Brower
|
844ffe8fdf
|
nest case_template
|
2020-10-21 09:58:31 -04:00 |
|
Josh Brower
|
1e14d66f54
|
Add case_template field to Playbook alerts
|
2020-10-21 08:59:26 -04:00 |
|
weslambert
|
e2d95e0deb
|
Merge pull request #1576 from Security-Onion-Solutions/fix/comon_nids_rule_ruleset
Change rule_ruleset to rule.ruleset
|
2020-10-20 22:15:00 -04:00 |
|
weslambert
|
4765ef5f5c
|
Change rule_ruleset to rule.ruleset
|
2020-10-20 22:14:23 -04:00 |
|
William Wernert
|
d63358c8f0
|
[fix] Correct pillar reference + nginx errors
|
2020-10-20 14:30:06 -04:00 |
|
Jason Ertel
|
d37ddf584a
|
Correct quick action defaults
|
2020-10-20 14:12:23 -04:00 |
|
jtgreen-cse
|
eaa41266a2
|
fix for rendering error >1 search node
Fails rendering if you have more than one search node.
|
2020-10-20 13:24:53 -04:00 |
|
Mike Reeves
|
4a9fcfb8cf
|
Fix missing quote
|
2020-10-20 13:17:40 -04:00 |
|
Mike Reeves
|
a119d8f27d
|
Fix config for airgap installs
|
2020-10-20 11:28:49 -04:00 |
|
Josh Patterson
|
ba1dfcd774
|
Merge pull request #1554 from Security-Onion-Solutions/issue/1551
Issue/1551
|
2020-10-19 16:10:50 -04:00 |
|
m0duspwnens
|
10e4248cfc
|
and node that gets filebeat state now can listen for syslog - https://github.com/Security-Onion-Solutions/securityonion/issues/1551
|
2020-10-19 16:10:20 -04:00 |
|
William Wernert
|
42e285cfbe
|
Merge branch 'dev' into feature/nginx-update
# Conflicts:
# salt/nginx/etc/nginx.conf
# salt/nginx/etc/nginx.conf.so-eval
# salt/nginx/etc/nginx.conf.so-manager
# salt/nginx/etc/nginx.conf.so-standalone
|
2020-10-19 13:25:46 -04:00 |
|
m0duspwnens
|
79854f111e
|
add 514 tcp listener to filebeat docker and add syslog listener to fb config for manager and manager search - https://github.com/Security-Onion-Solutions/securityonion/issues/1551
|
2020-10-19 10:27:40 -04:00 |
|
Josh Patterson
|
a05329e7d8
|
Merge pull request #1532 from Masaya-A/patch-1
Grafana /nsm fix for eval/standalone
|
2020-10-16 16:48:12 -04:00 |
|
Masaya-A
|
47652ac080
|
Update eval.json
|
2020-10-17 04:45:12 +09:00 |
|
Masaya-A
|
964919109d
|
Update standalone.json
|
2020-10-17 04:35:39 +09:00 |
|
Jason Ertel
|
a968e5c23f
|
Increment version to 2.3.1
|
2020-10-16 10:57:31 -04:00 |
|
Mike Reeves
|
ba7b34a8ce
|
Merge pull request #1529 from Security-Onion-Solutions/dev
2.3.0 GA!
2.3.0
|
2020-10-16 10:53:53 -04:00 |
|
Mike Reeves
|
e2f16d51a6
|
Update VERIFY_ISO.md
|
2020-10-15 20:54:11 -04:00 |
|
Mike Reeves
|
42a6693101
|
Sig File for ISO
|
2020-10-15 20:36:08 -04:00 |
|
Jason Ertel
|
2326701cc0
|
Moved known issues underneath new changes
|
2020-10-15 19:29:33 -04:00 |
|
Jason Ertel
|
6ee37977c3
|
Fixed quotes and href targets
|
2020-10-15 19:25:26 -04:00 |
|
Mike Reeves
|
1ae35a39c3
|
Update changes.json
|
2020-10-15 19:11:55 -04:00 |
|
Mike Reeves
|
943aa82ce4
|
Update changes.json
|
2020-10-15 19:09:46 -04:00 |
|
Mike Reeves
|
131e105106
|
Update changes.json
|
2020-10-15 19:07:37 -04:00 |
|
Mike Reeves
|
cc56dc5a7f
|
Update changes.json
|
2020-10-15 19:05:47 -04:00 |
|
weslambert
|
657e251f51
|
Merge pull request #1528 from Security-Onion-Solutions/fix/kibana_ack
Update Kibana mappings for event ack/eslacation
|
2020-10-15 14:48:00 -04:00 |
|
Wes Lambert
|
d863f26f9d
|
Update Kibana mappings for event ack/eslacation
|
2020-10-15 18:46:37 +00:00 |
|
Mike Reeves
|
a7e0df84bb
|
Update README.md
|
2020-10-15 14:46:13 -04:00 |
|
William Wernert
|
1fdf431c12
|
[fix] so-user spelling+syntax fixes
* Consistent ending punctuation
* Consistent capitalization
* Correct comparison operators
|
2020-10-15 13:44:23 -04:00 |
|
Mike Reeves
|
35b10b1f91
|
Sensors should clean up their dockers as well
|
2020-10-15 10:31:51 -04:00 |
|
weslambert
|
36b9450a39
|
Merge pull request #1526 from Security-Onion-Solutions/fix/kibana_things
Intel mapping enforcement and winlog.verion
|
2020-10-15 08:43:34 -04:00 |
|
Wes Lambert
|
af9daa4d71
|
Intel mapping enforcement and winlog.verion
|
2020-10-15 12:42:33 +00:00 |
|
weslambert
|
c81ee9621d
|
Merge pull request #1525 from Security-Onion-Solutions/fix/kibana_discover_default
Fix default discover query
|
2020-10-14 17:44:55 -04:00 |
|
Wes Lambert
|
e7401b3e0c
|
Fix default discover query
|
2020-10-14 21:43:19 +00:00 |
|
weslambert
|
f2125242f9
|
Merge pull request #1523 from Security-Onion-Solutions/fix/strelka_file_mime_type
Rename file.flavors.mime to file.mime_type
|
2020-10-14 14:58:15 -04:00 |
|
Wes Lambert
|
54c4ee796f
|
Rename file.flavors.mime to file.mime_type
|
2020-10-14 18:56:44 +00:00 |
|
weslambert
|
8d4fd6c18d
|
Merge pull request #1522 from Security-Onion-Solutions/fix/pipeline_commmon_remove_ignore_missing
Fix common pipeline field removal so won't fail for missing fields
|
2020-10-14 09:56:34 -04:00 |
|
Wes Lambert
|
3c820365ab
|
Fix common pipeline field removal so won't fail for missing fields
|
2020-10-14 13:55:24 +00:00 |
|
Doug Burks
|
a106913d1a
|
Heavy node filebeat needs extra_hosts for the heavy node itself #1521
|
2020-10-14 09:51:59 -04:00 |
|
Josh Patterson
|
493c9a11df
|
Merge pull request #1520 from Security-Onion-Solutions/issue/1519
disable strelka by default for sensor nodes during setup
|
2020-10-14 09:38:50 -04:00 |
|
m0duspwnens
|
1283708186
|
disable strelka by default for sensor nodes during setup
|
2020-10-14 09:36:59 -04:00 |
|
Josh Patterson
|
2e62494793
|
Merge pull request #1518 from Security-Onion-Solutions/issue/1153
fix issue with schedule being placed in wrong location
|
2020-10-14 09:26:31 -04:00 |
|
Doug Burks
|
f88403e83e
|
use ssl on nodes that support it
|
2020-10-14 05:50:29 -04:00 |
|
m0duspwnens
|
a08d0c8b6f
|
fix issue with schedule being placed in wrong location
|
2020-10-13 18:24:44 -04:00 |
|
Josh Patterson
|
9f6fcb3763
|
Merge pull request #1516 from Security-Onion-Solutions/quickfix/managerestempalte
add elasticsearch template manager pillar and assign to manager node
|
2020-10-13 16:09:24 -04:00 |
|
m0duspwnens
|
1afa12e607
|
add elasticsearch template manager pillar and assign to manager node
|
2020-10-13 16:08:15 -04:00 |
|
Doug Burks
|
190869a1f2
|
enable https on elasticsearch nodes that support it
|
2020-10-13 16:04:55 -04:00 |
|