Jason Ertel
b8b77693e1
Merge pull request #14254 from Security-Onion-Solutions/jertel/wip
...
use consistent ciphers across listeners
2025-02-18 12:19:24 -05:00
Jason Ertel
19593cd771
use consistent ciphers across listeners
2025-02-18 12:17:50 -05:00
Jason Ertel
564d8c2868
Merge branch '2.4/dev' into jertel/wip
2025-02-18 11:50:21 -05:00
Doug Burks
8033cdbc89
Merge pull request #14253 from Security-Onion-Solutions/dougburks-patch-1
...
FIX: Add TLSv1.3 to nginx config #14252
2025-02-18 11:49:22 -05:00
Jason Ertel
7dd64380cc
Enable TLSv1.3 and use consistent ciphers across listeners
2025-02-18 11:48:00 -05:00
Doug Burks
5c3e28535a
FIX: Add TLSv1.3 to nginx config #14252
2025-02-18 11:46:45 -05:00
Mike Reeves
e9e7434c69
Merge pull request #14222 from Security-Onion-Solutions/TOoSmOotH-patch-2
...
Update 2-4.yml
2025-02-12 11:30:38 -05:00
Mike Reeves
d2ac6ec10f
Update 2-4.yml
2025-02-12 11:29:07 -05:00
Mike Reeves
4f19884c8d
Merge pull request #14221 from Security-Onion-Solutions/TOoSmOotH-patch-1
...
Update VERSION
2025-02-12 11:28:11 -05:00
Mike Reeves
16c332ad2e
Update VERSION
2025-02-12 11:27:43 -05:00
Mike Reeves
d430dd2b73
Merge pull request #14219 from Security-Onion-Solutions/2.4/dev
...
2.4.120
2.4.120-20250212
2025-02-12 11:14:56 -05:00
Mike Reeves
43a0020a9e
Merge pull request #14220 from Security-Onion-Solutions/fixeroni
...
Merge Conflict Fix
2025-02-12 09:37:04 -05:00
Mike Reeves
b0e82cd59b
Fix Conflict
2025-02-12 09:35:52 -05:00
Mike Reeves
237370f0c7
Merge pull request #14218 from Security-Onion-Solutions/2.4.120
...
2.4.120
2025-02-12 09:20:40 -05:00
Mike Reeves
69be367acf
2.4.120
2025-02-12 09:09:38 -05:00
Jorge Reyes
66bc0d487c
Merge pull request #14206 from Security-Onion-Solutions/reyesj2-patch-00
...
zeek.software typo
2025-02-07 15:27:52 -06:00
reyesj2
9bde70a8e2
zeek.software typo
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-02-07 15:19:40 -06:00
Jorge Reyes
322941f29a
Merge pull request #14203 from Security-Onion-Solutions/reyesj2-patch-00
...
fix defining custom logstash pipelines when kafka is enabled
2025-02-07 07:52:11 -06:00
reyesj2
dd17ee7665
fix defining custom logstash pipelines when kafka is enabled
2025-02-06 22:19:24 -06:00
Jason Ertel
4b51066327
Merge pull request #14191 from Security-Onion-Solutions/jertel/wip
...
ca download; ignore shard errors on startup; clarify oidc id
2025-02-05 15:09:57 -05:00
Jason Ertel
bf19c6e730
ca download; ignore shard errors on startup; clarify oidc id
2025-02-05 15:04:04 -05:00
Josh Brower
12a2b491c3
Merge pull request #14190 from Security-Onion-Solutions/2.4/fixmsi
...
Refresh Agent installers
2025-02-05 10:22:17 -05:00
Joshua Brower
4636a8d9b1
Refresh Agent installers
2025-02-05 09:38:33 -05:00
Josh Brower
abbb0db1ff
Merge pull request #14189 from Security-Onion-Solutions/2.4/fixmsi
...
Rework for MSI
2025-02-05 09:35:37 -05:00
Joshua Brower
95fe212202
Rework for MSI
2025-02-05 09:29:45 -05:00
coreyogburn
fbb9bf14e9
Merge pull request #14183 from Security-Onion-Solutions/cogburn/escalate-limit
...
New Limit on Bulk Creating Related Events
2025-02-04 15:24:53 -07:00
Corey Ogburn
23ebe966e0
Added Large Values Warning
...
maxBulkEscalateEvents now has a warning that large values may run into other limits.
2025-02-04 10:33:04 -07:00
Corey Ogburn
d0fa6eaf83
New Limit on Bulk Creating Related Events
...
Used by the UI and API to hint at a user that not every event will be attached to a case. Supports values up to 10,000 (the default limit on the number of documents returned by a single ES search).
2025-02-03 14:20:33 -07:00
Josh Brower
7a0309cdf4
Merge pull request #14179 from Security-Onion-Solutions/2.4/fixilmpolicy
...
Fix ip-mappings ILM
2025-02-03 09:35:55 -05:00
Joshua Brower
b874619f0d
Fix ip-mappings ILM
2025-02-03 09:31:08 -05:00
Jason Ertel
028c73fd3a
Merge pull request #14162 from Security-Onion-Solutions/TOoSmOotH-patch-2
...
Update so-functions
2025-01-29 10:12:20 -05:00
Mike Reeves
27e9773782
Update so-functions
2025-01-29 10:07:52 -05:00
Josh Patterson
7ae128dec6
Merge pull request #14161 from Security-Onion-Solutions/esdtsn
...
env discovery.type single-node change
2025-01-29 09:29:04 -05:00
Josh Patterson
fe4129c8e0
env discovery.type single-node change
...
only managers and heavynodes are eligible for discovery.type=single-node
2025-01-29 09:11:52 -05:00
Jason Ertel
ca0c1170ab
Merge pull request #14140 from Security-Onion-Solutions/jertel/wip
...
fix issue with first-time api client permission toggling
2025-01-22 17:43:54 -05:00
Jason Ertel
db9387764d
fix issue with first-time api client permission toggling
2025-01-22 17:41:04 -05:00
Jorge Reyes
704e30219a
Merge pull request #14124 from Security-Onion-Solutions/reyesj2-patch-8
...
keep imported data in logs-import-so index
2025-01-17 13:33:26 -06:00
reyesj2
1396083b7d
use so-elasticsearch-query where possible; simplify suricata.alerts index reroute
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-17 13:29:46 -06:00
Jason Ertel
7017024ba7
Merge pull request #14123 from Security-Onion-Solutions/jertel/wip
...
Additional web security measures
2025-01-17 12:31:42 -05:00
Jason Ertel
7705f45d78
Revert "subgrid config annotations"
...
This reverts commit 3ab1b907e4 .
2025-01-17 12:16:12 -05:00
Jason Ertel
964bbe6aa5
additional web server security measures
2025-01-17 12:14:30 -05:00
reyesj2
01a2e4cd4f
check for index existence before attemping rollover
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-17 09:27:28 -06:00
reyesj2
9032d7d7bc
any suricata.alert with event.imported: true remains in logs-import-so
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-16 18:48:31 -06:00
reyesj2
d573c0922d
add 2.4.111 -> postupgrade check
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-16 18:25:06 -06:00
reyesj2
45d3438d18
update ingest pipeline for imported logs
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-16 17:33:14 -06:00
Jorge Reyes
6c80fd0e18
Merge pull request #14116 from Security-Onion-Solutions/reyesj2-patch-8
...
update global@custom
2025-01-15 14:23:40 -06:00
reyesj2
b3b7fb8f29
add null check and move tag lookup to .contains() in global@custom
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-01-15 12:16:11 -06:00
Jason Ertel
d101fda423
Merge branch '2.4/dev' into jertel/wip
2025-01-15 11:06:05 -05:00
Jorge Reyes
846f2485db
Merge pull request #14111 from Security-Onion-Solutions/reyesj2-patch-1
...
update http query
2025-01-14 08:26:43 -06:00
Jorge Reyes
107ca38268
fix http query for "includes" function
2025-01-14 08:24:07 -06:00