weslambert
|
c2efd7ef64
|
Merge pull request #10655 from Security-Onion-Solutions/feature/supported_integrations
Restructure Elasticsearch templates for supported integrations
|
2023-06-26 09:43:10 -04:00 |
|
Josh Brower
|
2247cafe5f
|
Change policy name
|
2023-06-24 17:13:28 -04:00 |
|
Josh Brower
|
85a8da6331
|
Change policy name
|
2023-06-24 16:58:36 -04:00 |
|
Josh Brower
|
bb0cfc5253
|
Create & assign Heavy Node Fleet Policy
|
2023-06-23 15:49:03 -04:00 |
|
Josh Brower
|
a9585b2a7f
|
Fix Elastic Agent for Heavy
|
2023-06-23 10:45:58 -04:00 |
|
Wes
|
5e8748c436
|
Load Elasticsearch templates
|
2023-06-23 13:28:01 +00:00 |
|
Wes
|
e2cca917c1
|
Add package load command to Fleet setup
|
2023-06-23 13:26:06 +00:00 |
|
Wes
|
a3c7e40c40
|
Add package load command
|
2023-06-23 13:20:05 +00:00 |
|
Wes
|
94fe456e28
|
Add package functions
|
2023-06-23 13:19:20 +00:00 |
|
Wes
|
662db41857
|
Add default packages
|
2023-06-23 13:17:38 +00:00 |
|
Josh Brower
|
d0d7ab57ca
|
Add Elastic Agent container for Heavy Nodes
|
2023-06-22 16:02:17 -04:00 |
|
Josh Brower
|
6ddf887342
|
Refactor EVTX Import
|
2023-06-21 09:32:42 -04:00 |
|
Josh Brower
|
9947f9def4
|
Rework tarball naming schema
|
2023-06-14 07:38:03 -04:00 |
|
Josh Brower
|
0d4f6b4fe6
|
Change Elastic Fleet Tarball naming
|
2023-06-13 16:32:19 -04:00 |
|
Doug Burks
|
998c85e3f8
|
Update defaults.yaml
|
2023-06-12 09:31:19 -04:00 |
|
Doug Burks
|
ae14e4870d
|
Add ocsp to logging.zeek.exclued in defaults.yaml
|
2023-06-12 08:44:46 -04:00 |
|
Wes
|
302e580d8f
|
Add so-fleet role logic
|
2023-05-31 19:56:17 +00:00 |
|
Wes
|
344e2bf1d0
|
Update defaults file
|
2023-05-31 15:30:03 +00:00 |
|
Wes
|
2bb77251b0
|
Move Elastic Fleet logging exclusions to the Fleet pillar
|
2023-05-31 13:38:58 +00:00 |
|
weslambert
|
36791665f3
|
Merge pull request #10462 from Security-Onion-Solutions/feature/elastic_agent_zeek_logging
Dynamic integration configuration and Zeek log exclusions for Elastic Agent
|
2023-05-30 19:27:13 -04:00 |
|
Wes
|
e4b4bbcfdc
|
Use ZEEKMERGED from zeek/config.map.jinja
|
2023-05-30 19:51:13 +00:00 |
|
Wes
|
b6e090f29f
|
Move Elastic Fleet logic in so-common to so-elastic-fleet-common
|
2023-05-30 18:43:56 +00:00 |
|
Wes
|
b9d692eb0e
|
Remove default value
|
2023-05-30 17:08:52 +00:00 |
|
Wes
|
36a7f54160
|
Add extension
|
2023-05-30 16:46:38 +00:00 |
|
Wes
|
9035fa3037
|
Don't load Elasticsearch integration
|
2023-05-30 15:46:00 +00:00 |
|
Wes
|
b4b87e5620
|
Only provide JSON output
|
2023-05-30 15:43:31 +00:00 |
|
Wes
|
97c53d70a4
|
Remove integrations
|
2023-05-30 14:05:40 +00:00 |
|
Wes
|
53b4f7bd5c
|
Add spacing
|
2023-05-30 14:05:11 +00:00 |
|
Wes
|
79014a53ec
|
Remove extra lines
|
2023-05-30 12:35:32 +00:00 |
|
Wes
|
799e92e595
|
Add files
|
2023-05-30 02:56:23 +00:00 |
|
Wes
|
c835c523a9
|
Elastic Fleet integration update improvements
|
2023-05-30 02:54:39 +00:00 |
|
Josh Brower
|
9ec1492fad
|
Change Fleet Host URL API Endpoint
|
2023-05-29 07:44:18 -04:00 |
|
Mike Reeves
|
38881231ac
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-26 15:16:38 -04:00 |
|
Josh Brower
|
b3e0e68896
|
Change Fleet Host URL API
|
2023-05-24 11:27:41 -04:00 |
|
Mike Reeves
|
cace817c79
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 08:43:03 -04:00 |
|
Josh Brower
|
502277b1b7
|
Hash check, use url base
|
2023-05-23 16:38:37 -04:00 |
|
Josh Brower
|
df0dc2e4d1
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/smallfixes
|
2023-05-22 16:02:30 -04:00 |
|
Josh Brower
|
766f4dd661
|
Add Elastic Defend Integration
|
2023-05-22 16:02:08 -04:00 |
|
weslambert
|
167051af28
|
Exclude Zeek's reporter.log from being picked up by Elastic Agent
|
2023-05-19 15:44:09 -04:00 |
|
weslambert
|
eb9c5e9af0
|
Merge pull request #10307 from Security-Onion-Solutions/fix/elastic_fleet_ignore_zeek_logs
Don't read from 'known_hosts.log', 'known_services.log', or 'ntp.log'
|
2023-05-19 15:09:15 -04:00 |
|
Mike Reeves
|
5315c51197
|
Allow additional docker parameters
|
2023-05-18 16:52:38 -04:00 |
|
Mike Reeves
|
c0dc05f26a
|
Allow additional docker parameters
|
2023-05-18 16:39:42 -04:00 |
|
Mike Reeves
|
7ab31e36af
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-18 15:19:15 -04:00 |
|
Mike Reeves
|
0fd9fb9294
|
Allow additional docker parameters
|
2023-05-18 15:19:09 -04:00 |
|
Josh Brower
|
901e3c4a20
|
Set Fleet Host timeouts to 120 seconds
|
2023-05-17 16:07:59 -04:00 |
|
Josh Brower
|
47e67fda46
|
Rework restart scripts for Elastic Fleet
|
2023-05-17 15:37:39 -04:00 |
|
m0duspwnens
|
77834c1e58
|
fix grep logic for so-elastic-fleet sostatus.sls
|
2023-05-16 15:05:14 -04:00 |
|
Josh Brower
|
000507c366
|
Update Integrations
|
2023-05-16 12:50:40 -04:00 |
|
m0duspwnens
|
b253cd45ca
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-16 09:22:48 -04:00 |
|
Josh Brower
|
923de356e1
|
Fix typos
|
2023-05-16 08:06:31 -04:00 |
|