Jason Ertel
|
ebcae86c0b
|
Correct log directory for sensoroni agent
|
2020-04-02 09:06:37 -04:00 |
|
Josh Brower
|
1ca290c766
|
osquery updates and fixes
|
2020-04-02 08:28:22 -04:00 |
|
Wes Lambert
|
e023aeb9be
|
use agent name for observer name
|
2020-04-01 21:27:25 +00:00 |
|
Josh Patterson
|
7e21dd92ba
|
Merge pull request #496 from Security-Onion-Solutions/issue/90
adding auth and comment back to pillar and salt top
|
2020-04-01 15:37:21 -04:00 |
|
m0duspwnens
|
884e267db5
|
adding auth and comment back to pillar and salt top
|
2020-04-01 15:36:15 -04:00 |
|
weslambert
|
5f8d1c29b4
|
Merge pull request #494 from Security-Onion-Solutions/search_ls_pillar
Search ls pillar
|
2020-04-01 15:13:17 -04:00 |
|
Wes Lambert
|
09022ad752
|
Update Zeek and Strelka
|
2020-04-01 19:11:10 +00:00 |
|
Wes Lambert
|
1df2302287
|
Update Zeek and Strelka
|
2020-04-01 19:09:38 +00:00 |
|
Josh Patterson
|
38b5cffd16
|
Merge pull request #493 from Security-Onion-Solutions/issue/90
adding auth state back
|
2020-04-01 15:05:43 -04:00 |
|
m0duspwnens
|
832128ac96
|
adding auth state back
|
2020-04-01 15:04:32 -04:00 |
|
weslambert
|
82c99edbfc
|
Update Suricata output
|
2020-04-01 15:02:52 -04:00 |
|
weslambert
|
e1008269ce
|
Update OSSEC output
|
2020-04-01 15:00:52 -04:00 |
|
weslambert
|
cc4b1bf936
|
Add Zeek extracted file sync
|
2020-04-01 14:19:36 -04:00 |
|
weslambert
|
5173da5a33
|
Remove restart policy
|
2020-04-01 13:19:31 -04:00 |
|
m0duspwnens
|
62e8aa1063
|
fix conflict in salt/top.sls
|
2020-04-01 13:09:23 -04:00 |
|
m0duspwnens
|
9acaa514cf
|
monitoring zeek - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/90
|
2020-04-01 13:06:37 -04:00 |
|
weslambert
|
7390063026
|
Fix curly brace
|
2020-04-01 12:32:29 -04:00 |
|
weslambert
|
2fcfb06ba5
|
Update Eval for Strelka
|
2020-04-01 11:41:56 -04:00 |
|
weslambert
|
f13093dc51
|
Add message rename
|
2020-04-01 11:31:57 -04:00 |
|
weslambert
|
26efad1c45
|
Update Strelka log path
|
2020-04-01 11:30:02 -04:00 |
|
Josh Brower
|
5ca9a643a8
|
Merge branch 'dev' into feature/osquery-ingest
|
2020-04-01 10:19:35 -04:00 |
|
Josh Brower
|
0e76447d11
|
osquery ingest - initial support
|
2020-04-01 10:17:36 -04:00 |
|
weslambert
|
fd6832bf51
|
Merge pull request #483 from Security-Onion-Solutions/elastic_config
template and kibana config updates
|
2020-04-01 09:15:10 -04:00 |
|
Wes Lambert
|
33512eca2a
|
template and kibana config updates
|
2020-04-01 13:14:13 +00:00 |
|
Wes Lambert
|
6cc757e1de
|
add strelka index
|
2020-04-01 13:02:36 +00:00 |
|
Wes Lambert
|
70422809ec
|
add category
|
2020-04-01 12:59:10 +00:00 |
|
Wes Lambert
|
9bbcc185aa
|
change Strelka log location
|
2020-04-01 12:57:51 +00:00 |
|
Jason Ertel
|
8767f17325
|
Removed obsolete osquery-packages.html since it's now in soc
|
2020-03-31 17:43:03 -04:00 |
|
Josh Brower
|
2bfacecb4b
|
Merge pull request #478 from Security-Onion-Solutions/bugfix/osquery
fleet init fix
|
2020-03-31 09:54:45 -04:00 |
|
Josh Brower
|
131fd1f322
|
fleet init fix
|
2020-03-31 09:53:59 -04:00 |
|
Jason Ertel
|
14c44e0f6e
|
Merge pull request #476 from Security-Onion-Solutions/feature/auth
Integrate new auth system and SOC interface
|
2020-03-31 08:57:19 -04:00 |
|
Jason Ertel
|
f7e9e99eae
|
Added new soc-related saltstack files.
|
2020-03-30 22:15:49 -04:00 |
|
Wes Lambert
|
68138e009a
|
update FB config
|
2020-03-31 00:37:58 +00:00 |
|
Wes Lambert
|
5226ec1560
|
update Kibana config/dashboards/etc
|
2020-03-31 00:37:17 +00:00 |
|
Wes Lambert
|
eacd3c9bfd
|
update zeek.common
|
2020-03-31 00:36:42 +00:00 |
|
Jason Ertel
|
cbd710bcf2
|
Replaced auth system with new identity management system.
|
2020-03-30 19:27:56 -04:00 |
|
Wes Lambert
|
ad50093315
|
add community_id parsing for ingest
|
2020-03-30 15:49:36 +00:00 |
|
weslambert
|
ee4e3c0659
|
Merge pull request #469 from Security-Onion-Solutions/fix/ingest_stuff
update wazuh fields and category
|
2020-03-30 10:24:43 -04:00 |
|
Wes Lambert
|
93c3c86e2f
|
update wazuh fields and category
|
2020-03-30 14:24:01 +00:00 |
|
Wes Lambert
|
70bc35eb7e
|
update Kibana json config
|
2020-03-30 14:20:06 +00:00 |
|
William Wernert
|
04cbda356f
|
Merge pull request #465 from Security-Onion-Solutions/hotfix/so-status-docker-api
[fix] Use v2 of Docker http api
|
2020-03-26 18:48:11 -04:00 |
|
William Wernert
|
7709bfd28e
|
[fix] Use v2 of Docker http api
Docker no longer exposes the default api path, so we need to use /v2 in our api call
|
2020-03-26 18:47:37 -04:00 |
|
Josh Brower
|
31ae8a2c26
|
Zeek - enable Community ID policy
|
2020-03-26 16:33:47 -04:00 |
|
Josh Patterson
|
3918b697e4
|
Merge pull request #463 from Security-Onion-Solutions/issue/90
Issue/90
|
2020-03-26 15:54:25 -04:00 |
|
m0duspwnens
|
c14f32fcc9
|
more changes for healthcheck - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/90
|
2020-03-26 15:45:19 -04:00 |
|
Josh Brower
|
11907dc4ad
|
Merge pull request #462 from Security-Onion-Solutions/bugfix/fleet
Bugfix/fleet
|
2020-03-26 11:23:28 -04:00 |
|
Josh Brower
|
1c9dd40b02
|
Fleet webpage fix
|
2020-03-26 11:20:20 -04:00 |
|
m0duspwnens
|
22127a3d58
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/90
|
2020-03-26 11:01:10 -04:00 |
|
m0duspwnens
|
cfdaedb89c
|
changes to healthcheck. specify mount points for telegraf
|
2020-03-26 11:00:46 -04:00 |
|
Josh Brower
|
e5ecf0f4cb
|
Fleet dedicated node - various fixes
|
2020-03-25 13:03:40 -04:00 |
|