Wes Lambert
|
330de46249
|
update SOCtopus config for hostname/ip
|
2020-05-26 13:19:15 +00:00 |
|
Wes Lambert
|
e09027e795
|
update Strelka cron
|
2020-05-26 13:00:03 +00:00 |
|
Josh Brower
|
35f3498ffa
|
Merge pull request #760 from Security-Onion-Solutions/feature/ingest-communityid
Ingest pipeline commid fix for conn logs
|
2020-05-22 17:11:38 -04:00 |
|
Josh Brower
|
56f5fbdf6b
|
Ingest pipeline commid fix for conn logs
|
2020-05-22 17:11:08 -04:00 |
|
Josh Brower
|
767eda6d60
|
Merge pull request #754 from Security-Onion-Solutions/feature/ingest-communityid
Feature/ingest communityid
|
2020-05-21 14:36:08 -04:00 |
|
Josh Brower
|
bff86ea802
|
zeek.common ingest parser fix
|
2020-05-21 14:35:25 -04:00 |
|
Josh Brower
|
c74ace89ba
|
Initial support - Ingest community_id
|
2020-05-21 14:34:00 -04:00 |
|
m0duspwnens
|
0a6f0efdc5
|
Sort so-status output alphabetically - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/747
|
2020-05-21 09:21:28 -04:00 |
|
m0duspwnens
|
9f5a38c26f
|
add so-filebeat to so-status for eval - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/706
|
2020-05-21 09:19:24 -04:00 |
|
m0duspwnens
|
d4840d203c
|
fix version lock for wazuh
|
2020-05-20 11:23:55 -04:00 |
|
m0duspwnens
|
92c2222879
|
ensure wazuh-agent service is enabled and running
|
2020-05-19 16:59:43 -04:00 |
|
Mike Reeves
|
0f2369b5cb
|
Fix permissions due to umask issues in Ubuntu 18
|
2020-05-19 16:31:39 -04:00 |
|
Mike Reeves
|
c045e3f936
|
remove replicas
|
2020-05-19 13:57:31 -04:00 |
|
Mike Reeves
|
46762e5ad9
|
change cortex to 0 replicas
|
2020-05-19 13:56:59 -04:00 |
|
Josh Patterson
|
07560463de
|
Merge pull request #737 from Security-Onion-Solutions/quickfix/wazuh
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/695
|
2020-05-19 13:27:52 -04:00 |
|
Doug Burks
|
064768d07d
|
Fix dce_rpc hunt query #736
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/736
|
2020-05-19 11:27:01 -04:00 |
|
Josh Brower
|
10691036e0
|
Update hive_init
|
2020-05-19 10:27:46 -04:00 |
|
m0duspwnens
|
4f65d17690
|
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/695
|
2020-05-19 10:14:40 -04:00 |
|
Doug Burks
|
29420da565
|
Only process zeek.dns.tld if dns.query.name contains a dot #734
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/734
|
2020-05-19 10:08:30 -04:00 |
|
Mike Reeves
|
fc4afe6767
|
Fix Curl statement
|
2020-05-19 09:58:16 -04:00 |
|
Mike Reeves
|
1d677bb529
|
Update known issues list
|
2020-05-19 09:36:36 -04:00 |
|
Josh Patterson
|
8957af0a4d
|
Merge pull request #733 from Security-Onion-Solutions/quickfix/sostatus
removing strelka-backend from strelka so-status map
|
2020-05-18 17:53:32 -04:00 |
|
m0duspwnens
|
411389b68e
|
removing strelka-backend from strelka so-status map
|
2020-05-18 17:52:47 -04:00 |
|
Josh Patterson
|
341c70de9e
|
Merge pull request #732 from Security-Onion-Solutions/quickfix/sostatus
add strelka container list for so-status
|
2020-05-18 17:46:55 -04:00 |
|
m0duspwnens
|
e6bc8f2d26
|
add strelka container list for so-status
|
2020-05-18 17:46:14 -04:00 |
|
Josh Patterson
|
d25fbfec84
|
Merge pull request #731 from Security-Onion-Solutions/quickfix/sostatus
add strelka container list for so-status
|
2020-05-18 17:39:09 -04:00 |
|
m0duspwnens
|
5638c386db
|
add strelka container list for so-status
|
2020-05-18 17:36:32 -04:00 |
|
Mike Reeves
|
8202344d01
|
Fix for Strelka
|
2020-05-18 17:28:26 -04:00 |
|
Doug Burks
|
def928804f
|
Fix Hunt DHCP message_types query #728
https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/728
|
2020-05-18 17:12:20 -04:00 |
|
m0duspwnens
|
492e021fa4
|
remove so-nginx from sensor so-status map
|
2020-05-18 17:08:04 -04:00 |
|
m0duspwnens
|
a6575e7910
|
prevent wazuh-agent from updating - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/695
|
2020-05-18 17:00:18 -04:00 |
|
Josh Brower
|
b951094ea2
|
Change alert pivot links for MASTER
|
2020-05-18 14:13:32 -04:00 |
|
m0duspwnens
|
8a4da01b7f
|
allow utility state to run for so-standalone
|
2020-05-18 14:01:01 -04:00 |
|
Doug Burks
|
b291b242ee
|
temporarily hardcode radius user.name to user.name.keyword
|
2020-05-18 13:47:21 -04:00 |
|
Mike Reeves
|
a10617c182
|
Update nids2hive.yaml
|
2020-05-18 13:43:25 -04:00 |
|
Mike Reeves
|
a56c776695
|
Update SOCtopus.conf
|
2020-05-18 13:41:37 -04:00 |
|
Mike Reeves
|
f144fa241f
|
Change to URL base
|
2020-05-18 13:36:52 -04:00 |
|
Josh Patterson
|
35cb60b801
|
Merge pull request #720 from Security-Onion-Solutions/quickfix/strelka
change strelka ip for sensor nodes
|
2020-05-18 10:56:35 -04:00 |
|
m0duspwnens
|
eebe0eb618
|
get the first ip for the ip_interfaces:mainint grain
|
2020-05-18 10:54:07 -04:00 |
|
m0duspwnens
|
037bedb0c0
|
remove whitespace at top of file
|
2020-05-18 10:48:02 -04:00 |
|
m0duspwnens
|
15cd0c6b49
|
change strelka ip for sensor nodes
|
2020-05-18 10:41:39 -04:00 |
|
Doug Burks
|
00f6e8d61b
|
update geoip country descriptions
|
2020-05-18 10:27:03 -04:00 |
|
Doug Burks
|
028d84b805
|
remove commas from groupby segments
|
2020-05-18 10:25:05 -04:00 |
|
Doug Burks
|
a3323c24ac
|
fix ftp.argument
|
2020-05-18 09:52:56 -04:00 |
|
Doug Burks
|
2f15c30d9a
|
fix dhcp query
|
2020-05-18 09:44:49 -04:00 |
|
Wes Lambert
|
ee5937d038
|
update Kibana config
|
2020-05-18 13:21:18 +00:00 |
|
Wes Lambert
|
228bbbea5f
|
update config export
|
2020-05-18 13:16:42 +00:00 |
|
Mike Reeves
|
fbbacd205c
|
Update filebeat.yml
|
2020-05-18 08:47:03 -04:00 |
|
Doug Burks
|
bd4dfcb351
|
fix dns domain queries
|
2020-05-18 08:35:43 -04:00 |
|
Doug Burks
|
9cc750a90f
|
fix dns tld failures
|
2020-05-18 08:32:37 -04:00 |
|