Wes
|
ae45d40eca
|
Add Sublime Platform ingest pipeline
|
2023-11-01 13:34:30 +00:00 |
|
weslambert
|
c354924b68
|
Add import roles
|
2023-10-31 10:05:29 -04:00 |
|
weslambert
|
ed6473a34b
|
Add roles for eval mode
|
2023-10-30 20:41:49 -04:00 |
|
weslambert
|
76dd6f07ab
|
Remove policy for OSQuery manager indices
|
2023-10-27 17:26:33 -04:00 |
|
weslambert
|
c955f9210a
|
Remove policy for Cases indices
|
2023-10-27 17:24:27 -04:00 |
|
Mike Reeves
|
25f1a0251f
|
Annotation changes for warm node
|
2023-10-27 09:08:07 -04:00 |
|
Mike Reeves
|
87494f64c7
|
Annotation changes for warm node
|
2023-10-27 09:06:12 -04:00 |
|
Mike Reeves
|
ce1858fe05
|
Annotation changes for warm node
|
2023-10-27 09:02:39 -04:00 |
|
Mike Reeves
|
9fc3a73035
|
Annotation changes for warm node
|
2023-10-27 08:58:08 -04:00 |
|
Mike Reeves
|
b37e38e3c3
|
Update defaults.yaml
|
2023-10-26 16:03:58 -04:00 |
|
Mike Reeves
|
2e0100fd35
|
Update defaults.yaml
|
2023-10-26 12:37:55 -04:00 |
|
Wes
|
891ea997e7
|
Add lifecycle policies and warm settings
|
2023-10-26 12:25:37 +00:00 |
|
Mike Reeves
|
01810a782c
|
Annotation changes for warm node
|
2023-10-25 16:46:30 -04:00 |
|
Mike Reeves
|
6d6292714f
|
Annotation changes for warm node
|
2023-10-25 16:21:47 -04:00 |
|
Mike Reeves
|
88fb7d06e6
|
Annotation changes for warm node
|
2023-10-25 16:20:28 -04:00 |
|
Josh Patterson
|
39abe19cfd
|
Update config.map.jinja
|
2023-10-25 16:17:06 -04:00 |
|
Josh Patterson
|
807b40019f
|
Update soc_elasticsearch.yaml
|
2023-10-25 16:16:48 -04:00 |
|
Josh Patterson
|
5f168a33ed
|
Update defaults.yaml
|
2023-10-25 16:16:01 -04:00 |
|
Mike Reeves
|
d1170cb69f
|
Update soc_elasticsearch.yaml
|
2023-10-25 16:05:20 -04:00 |
|
m0duspwnens
|
19fdc9319b
|
fix role update
|
2023-10-25 15:58:26 -04:00 |
|
Josh Patterson
|
af4b34801f
|
Update defaults.yaml
|
2023-10-25 15:48:27 -04:00 |
|
Josh Patterson
|
1ae8896a05
|
Update config.map.jinja
|
2023-10-25 15:47:40 -04:00 |
|
Mike Reeves
|
6fb0c5dbfe
|
Annotation changes for warm node
|
2023-10-25 15:37:36 -04:00 |
|
Mike Reeves
|
a887551dad
|
Annotation changes for warm node
|
2023-10-25 15:22:47 -04:00 |
|
weslambert
|
660020cc76
|
Parse pkt_src for Suricata logs
|
2023-10-23 15:45:41 -04:00 |
|
Wes
|
28b7a24cc1
|
Add templates for integrations
|
2023-10-18 20:36:04 +00:00 |
|
Wes
|
0bba68769b
|
Make scan.pe.image_version type of 'float'
|
2023-09-26 14:05:12 +00:00 |
|
Wes
|
2e0ea3f374
|
Set final pipeline
|
2023-09-19 13:33:12 +00:00 |
|
Wes
|
508260bd46
|
Use event.created for timestamp
|
2023-09-19 13:32:03 +00:00 |
|
Wes
|
98499c3963
|
Clean component template directory
|
2023-09-15 13:51:46 +00:00 |
|
defensivedepth
|
0c11a9b733
|
Add transform role
|
2023-09-14 09:33:17 -04:00 |
|
Wes
|
cf19c8f8c2
|
Remove templates
|
2023-09-05 13:43:41 +00:00 |
|
Wes
|
0fed757b11
|
Add entropy mapping
|
2023-08-31 15:10:27 +00:00 |
|
Wes
|
1a3b3b21fb
|
Change entropy value syntax
|
2023-08-31 15:09:19 +00:00 |
|
weslambert
|
d090852895
|
Correct fortigate template name
|
2023-08-30 15:40:40 -04:00 |
|
weslambert
|
706a6e2d56
|
Make sure a data stream is created for syslog
|
2023-08-30 08:34:04 -04:00 |
|
weslambert
|
d2063c7e11
|
Add auditd reference back
|
2023-08-29 11:14:49 -04:00 |
|
weslambert
|
f118e25e8c
|
Add Apache references
|
2023-08-29 11:00:31 -04:00 |
|
weslambert
|
d40bbf6b09
|
Add Apache templates
|
2023-08-29 10:59:40 -04:00 |
|
Jason Ertel
|
bdb88cc87b
|
Merge pull request #11161 from Security-Onion-Solutions/jertel/alts
use consistent cert dir and reduce jinja complexity
|
2023-08-24 11:18:34 -04:00 |
|
Wes
|
d2d0d53eef
|
Change order
|
2023-08-23 20:20:44 +00:00 |
|
Wes
|
31a49268cb
|
Add o365 and okta
|
2023-08-23 20:20:06 +00:00 |
|
Wes
|
2f51349ff8
|
Add SOC configuration
|
2023-08-23 20:07:42 +00:00 |
|
Wes
|
3f2793088a
|
Add templates
|
2023-08-23 19:02:50 +00:00 |
|
Jason Ertel
|
8a751e097d
|
cert path refactor
|
2023-08-23 14:32:05 -04:00 |
|
Mike Reeves
|
ce32a0081e
|
Merge pull request #11128 from Security-Onion-Solutions/2.4/main
Merge in hotfix
|
2023-08-21 16:29:40 -04:00 |
|
Jason Ertel
|
222352b4b3
|
fix typo
|
2023-08-17 17:26:35 -04:00 |
|
m0duspwnens
|
4ac95447eb
|
pop sort settings if index_sorting is false
|
2023-08-17 16:15:27 -04:00 |
|
m0duspwnens
|
9cba9d9ae0
|
allow to override number_of_replicas from one place in soc ui
|
2023-08-17 15:00:01 -04:00 |
|
Wes
|
7971d9749a
|
Assign pipeline to import
|
2023-08-17 14:08:48 +00:00 |
|