weslambert
|
c91bc0e681
|
Clean up some stuff
|
2020-06-02 15:31:48 -04:00 |
|
Mike Reeves
|
25aae21cf6
|
Trying to get decoded packet
|
2020-06-02 15:06:39 -04:00 |
|
Mike Reeves
|
b507b87871
|
Trying to get decoded packet
|
2020-06-02 14:49:07 -04:00 |
|
Mike Reeves
|
fb68506418
|
Add mor suricata ingest parser types
|
2020-06-02 14:42:15 -04:00 |
|
Mike Reeves
|
3096d8d988
|
Add mor suricata ingest parser types
|
2020-06-02 14:34:38 -04:00 |
|
Mike Reeves
|
0ea2252b5b
|
Add Suricata Flow pipeline
|
2020-06-02 13:40:46 -04:00 |
|
weslambert
|
98e0f0d7d8
|
Merge pull request #814 from Security-Onion-Solutions/feature/syslog
Feature/syslog
|
2020-06-02 13:39:23 -04:00 |
|
Wes Lambert
|
8cac30728b
|
update Logstash config
|
2020-06-02 17:36:36 +00:00 |
|
Wes Lambert
|
91673a5d70
|
Update FB config
|
2020-06-02 17:33:42 +00:00 |
|
Josh Brower
|
782c669835
|
Fleet standalone fixes - req
|
2020-06-02 12:42:14 -04:00 |
|
Mike Reeves
|
617f60d472
|
Fix Syntax
|
2020-06-02 12:01:26 -04:00 |
|
Mike Reeves
|
e63f39a9c4
|
Rename dataset
|
2020-06-02 11:58:14 -04:00 |
|
Mike Reeves
|
d47acd1d80
|
Change suricata to hit suricata.common
|
2020-06-02 11:41:13 -04:00 |
|
Josh Brower
|
77df87880c
|
Fleet standalone fixes - fleet sa req
|
2020-06-02 10:20:29 -04:00 |
|
Josh Brower
|
b5cc653179
|
Fleet standalone fixes - mainip
|
2020-06-02 09:39:42 -04:00 |
|
Jason Ertel
|
42683ddb67
|
always restart acng and registry containers when docker restarts
|
2020-06-02 09:12:25 -04:00 |
|
Jason Ertel
|
07c0075fc0
|
Upgrade containerd.io and docker-ce to match ISO rpms
|
2020-06-02 08:43:06 -04:00 |
|
Josh Brower
|
b695b7f245
|
Fleet standalone fixes - firewall
|
2020-06-02 08:05:48 -04:00 |
|
Jason Ertel
|
9d5f4049b5
|
Avoid filtering NIC when it's an empty string
|
2020-06-02 05:52:03 -04:00 |
|
Mike Reeves
|
69f940fe8c
|
Merge pull request #811 from Security-Onion-Solutions/feature/updatetool
Couple of QOL scripts
|
2020-06-01 20:49:42 -04:00 |
|
Mike Reeves
|
307cbe4b77
|
Couple of QOL scripts
|
2020-06-01 20:48:25 -04:00 |
|
Josh Brower
|
4b14ecf1d9
|
Fleet standalone fixes
|
2020-06-01 16:36:32 -04:00 |
|
Mike Reeves
|
45d17c5148
|
Pillarize Suricata Round 1
|
2020-06-01 14:53:04 -04:00 |
|
Josh Patterson
|
cc6a323f45
|
Merge pull request #810 from Security-Onion-Solutions/issue/749
Issue/749
|
2020-06-01 12:20:28 -04:00 |
|
m0duspwnens
|
f5c8091fd6
|
remove unneeded INITIALSETUP var from addtotab
|
2020-06-01 12:17:52 -04:00 |
|
m0duspwnens
|
1737b46abb
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-06-01 12:15:00 -04:00 |
|
Doug Burks
|
80d1814f10
|
remove event.module:zeek to make queries more generic
|
2020-06-01 12:00:33 -04:00 |
|
Mike Reeves
|
b091fe07c9
|
Merge pull request #809 from Security-Onion-Solutions/feature/metasuri
Suricata 5 Meta Data
|
2020-06-01 11:05:38 -04:00 |
|
Mike Reeves
|
03f34404b1
|
Suricata 5 Meta Data
|
2020-06-01 11:03:43 -04:00 |
|
weslambert
|
551c663046
|
Merge pull request #808 from Security-Onion-Solutions/fix/tunnel_parents
Rename tunnel_parents
|
2020-06-01 09:52:55 -04:00 |
|
Wes Lambert
|
51f5d64ef6
|
Rename tunnel_parents
|
2020-06-01 13:51:32 +00:00 |
|
weslambert
|
fa8b88b090
|
Merge pull request #806 from Security-Onion-Solutions/feature/vxlan_tunnel_id
fix naming of uid field for tunnel
|
2020-06-01 08:54:12 -04:00 |
|
Wes Lambert
|
d7ce3d4719
|
fix naming of uid field for tunnel
|
2020-06-01 12:52:57 +00:00 |
|
Doug Burks
|
f559621f00
|
add x509 issuer and subject groupby queries
|
2020-06-01 07:48:50 -04:00 |
|
Doug Burks
|
46dc5f42e9
|
combine two http queries into one with multiple groupby
|
2020-06-01 07:30:08 -04:00 |
|
m0duspwnens
|
5ddfb7ccce
|
fix merge conflicts
|
2020-05-29 17:31:07 -04:00 |
|
Josh Patterson
|
0eeafa292e
|
Merge pull request #802 from Security-Onion-Solutions/quickfix/wazuh/whitelistmanager
change how whitelist script determines if wazuh is enabled
|
2020-05-29 17:26:10 -04:00 |
|
m0duspwnens
|
4dfb58a98c
|
change how whitelist script determines if wazuh is enabled
|
2020-05-29 17:22:39 -04:00 |
|
Josh Patterson
|
5f4e480b4c
|
Merge pull request #801 from Security-Onion-Solutions/quickfix/search/nginx
add nginx state to searchnode in salt/top
|
2020-05-29 17:02:49 -04:00 |
|
m0duspwnens
|
17879ad88c
|
add nginx state to searchnode in salt/top
|
2020-05-29 17:01:43 -04:00 |
|
m0duspwnens
|
a84203be7c
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-05-29 16:38:10 -04:00 |
|
Josh Patterson
|
828f8a0df8
|
Merge pull request #800 from Security-Onion-Solutions/quickfix/node
fix minion_type for *NODE install_type
|
2020-05-29 16:37:04 -04:00 |
|
m0duspwnens
|
d7e904e1ab
|
fix minion_type for *NODE install_type
|
2020-05-29 16:35:39 -04:00 |
|
m0duspwnens
|
9ae68b52ef
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-05-29 16:22:00 -04:00 |
|
Josh Patterson
|
16d6e4ae2e
|
Merge pull request #799 from Security-Onion-Solutions/quickfix/distrib_install_firewall
Quickfix/distrib install firewall
|
2020-05-29 15:36:53 -04:00 |
|
m0duspwnens
|
52954d8e5d
|
set_intial_firewall policy sooner in install process so packages can be installed if masterupdates are enabled
|
2020-05-29 15:34:18 -04:00 |
|
m0duspwnens
|
15fc97e516
|
adding suricata.master state to mastersearch - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/749
|
2020-05-29 13:11:55 -04:00 |
|
m0duspwnens
|
6db8470de7
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-05-29 13:09:49 -04:00 |
|
m0duspwnens
|
42ea39ee35
|
Merge branch 'dev' of https://github.com/Security-Onion-Solutions/securityonion-saltstack into dev
|
2020-05-29 13:09:26 -04:00 |
|
Josh Patterson
|
aa24dacb86
|
Merge pull request #798 from Security-Onion-Solutions/quickfix/master_navigator
add navigator to master if enabled
|
2020-05-29 13:08:43 -04:00 |
|