weslambert
|
b10dd40376
|
Merge pull request #1287 from Security-Onion-Solutions/fix/suri_home_net
Change HOME_NET and EXTERNAL_NET defaults
|
2020-09-03 08:15:51 -04:00 |
|
weslambert
|
8db8dcb71a
|
Change HOME_NET and EXTERNAL_NET defaults
|
2020-09-03 08:15:14 -04:00 |
|
m0duspwnens
|
770cd6eafc
|
add endif
|
2020-09-02 16:19:58 -04:00 |
|
Mike Reeves
|
9745191f19
|
Add Airgap State
|
2020-09-02 16:17:44 -04:00 |
|
m0duspwnens
|
a229ae82ce
|
only allow state to run if it is in top for the node
|
2020-09-02 16:15:52 -04:00 |
|
weslambert
|
870e042c4c
|
Merge pull request #1285 from Security-Onion-Solutions/fix/so_stop_start_restart
Require at least one arg for start/stop/restart scripts
|
2020-09-02 14:58:19 -04:00 |
|
Wes Lambert
|
770aaf415c
|
Require at least on arg for start/stop/restart scripts
|
2020-09-02 18:55:59 +00:00 |
|
Jason Ertel
|
0142f43493
|
Add so-user-disable script which deletes the SOC user and disables the users in Fleet, TheHive, and Cortex
|
2020-09-02 13:54:50 -04:00 |
|
m0duspwnens
|
9d85b3223f
|
fix note about localrules
|
2020-09-02 11:46:48 -04:00 |
|
Josh Patterson
|
066c795e71
|
Merge pull request #1279 from Security-Onion-Solutions/fix/redhat
move redhat with centos
|
2020-09-02 09:12:44 -04:00 |
|
m0duspwnens
|
1f8f197066
|
move redhat with centos
|
2020-09-02 09:12:05 -04:00 |
|
weslambert
|
d35cca7fc5
|
Merge pull request #1278 from Security-Onion-Solutions/fix/elastalert_extra_hosts
Add manager to hosts file
|
2020-09-02 07:44:49 -04:00 |
|
weslambert
|
5d920885e0
|
Add manager to hosts file
|
2020-09-02 07:43:55 -04:00 |
|
Josh Patterson
|
7fa083069d
|
Merge pull request #1277 from Security-Onion-Solutions/issue/968
Issue/968
|
2020-09-01 15:43:22 -04:00 |
|
m0duspwnens
|
08ca2055dc
|
fix telegraf file input for zeek log
|
2020-09-01 15:34:06 -04:00 |
|
m0duspwnens
|
93f30a2064
|
fix telegraf config
|
2020-09-01 15:29:29 -04:00 |
|
m0duspwnens
|
b13b07eddf
|
add newline to end
|
2020-09-01 15:10:56 -04:00 |
|
m0duspwnens
|
01777c64d9
|
fix influxtime
|
2020-09-01 14:58:48 -04:00 |
|
m0duspwnens
|
b6d66bddfc
|
add redis to proper node types. grafana dahsboard changes. change zeek_restart to not use telegraf socket but read from file instead
|
2020-09-01 14:38:10 -04:00 |
|
Josh Brower
|
6cd0d16b91
|
Merge pull request #1276 from Security-Onion-Solutions/feature/import-wel
Initial support for evtx import
|
2020-09-01 13:48:12 -04:00 |
|
Josh Brower
|
a79d0319cd
|
Initial support for evtx import
|
2020-09-01 13:47:27 -04:00 |
|
Mike Reeves
|
951fe2ac69
|
Create repo
|
2020-09-01 11:26:33 -04:00 |
|
Mike Reeves
|
9cff7c1427
|
Enable airgap functions
|
2020-09-01 11:24:22 -04:00 |
|
Mike Reeves
|
643dab12d0
|
Enable airgap
|
2020-09-01 11:09:33 -04:00 |
|
Josh Patterson
|
67766745a4
|
Merge pull request #1275 from Security-Onion-Solutions/fix/redhat
resolve issue with salt state if os is redhat
|
2020-09-01 10:44:59 -04:00 |
|
m0duspwnens
|
2fee151bff
|
resolve issue with salt state if os is redhat
|
2020-09-01 10:43:21 -04:00 |
|
m0duspwnens
|
ada1c81ab7
|
manager and standalone dashboard changes
|
2020-09-01 10:40:20 -04:00 |
|
Jason Ertel
|
ff5d1cd815
|
Expand nginx body size limit to 2.5GB to handle 2G PCAPs from sensors
|
2020-09-01 10:07:28 -04:00 |
|
Doug Burks
|
45c0a7ac77
|
Kernel messages can overwrite whiptail screen #812
Kernel messages can overwrite whiptail screen #812
|
2020-09-01 08:55:34 -04:00 |
|
m0duspwnens
|
a1a7b36319
|
merge with dev and resolve conflict
|
2020-08-31 16:05:34 -04:00 |
|
m0duspwnens
|
31f25eca57
|
fix grafana related issues. add redis to standalone
|
2020-08-31 15:56:58 -04:00 |
|
weslambert
|
011958a2f3
|
Merge pull request #1274 from Security-Onion-Solutions/fix/zeek_syslog
Ensure Zeek syslog log is enabled for Import node
|
2020-08-31 13:08:44 -04:00 |
|
Wes Lambert
|
ae3fe9e892
|
Ensure Zeek syslog log is enabled for Import node
|
2020-08-31 17:07:16 +00:00 |
|
weslambert
|
96f25914db
|
Merge pull request #1273 from Security-Onion-Solutions/fix/zeek_syslog_default
Fix/zeek syslog default
|
2020-08-31 12:32:52 -04:00 |
|
Wes Lambert
|
5ed5e6603d
|
Fix space
|
2020-08-31 16:32:12 +00:00 |
|
Wes Lambert
|
26ffc44fd1
|
Only enable syslog log by default in Eval mode
|
2020-08-31 16:30:32 +00:00 |
|
Jason Ertel
|
dc3b065a41
|
Set exec bit on new user-add scripts
|
2020-08-31 10:57:23 -04:00 |
|
weslambert
|
6350c83e05
|
Merge pull request #1272 from Security-Onion-Solutions/feature/wazuh_mgmt_wrappers
Add Wazuh mgmt wrappers for manage_agents and upgrade
|
2020-08-31 10:55:25 -04:00 |
|
Wes Lambert
|
46e7e121e3
|
Add Wazuh mgmt wrappers for manage_agents and upgrade
|
2020-08-31 14:54:24 +00:00 |
|
weslambert
|
5db70cbd59
|
Merge pull request #1271 from Security-Onion-Solutions/fix/remove_minio
Remove minio for now
|
2020-08-31 10:29:30 -04:00 |
|
Wes Lambert
|
6d14f2af96
|
Remove minio for now
|
2020-08-31 14:07:47 +00:00 |
|
weslambert
|
42bd75a1cc
|
Merge pull request #1270 from Security-Onion-Solutions/fix/elastalert_startup
Wait for Elasticsearch indices to be queryable before starting Elasta…
|
2020-08-31 09:56:18 -04:00 |
|
Wes Lambert
|
9abbda8e04
|
Wait for Elasticsearch indices to be queryable before starting Elastalert container
|
2020-08-31 13:54:49 +00:00 |
|
Jason Ertel
|
189c02648d
|
Move container status check to so-common
|
2020-08-31 09:52:06 -04:00 |
|
Jason Ertel
|
8e06f0453e
|
Only add users to aux systems if those systems are currently running
|
2020-08-31 09:41:06 -04:00 |
|
Doug Burks
|
9680270b20
|
Set default monospace font to Liberation
|
2020-08-30 16:42:44 -04:00 |
|
Doug Burks
|
2f09156a02
|
quote filename when spawning NetworkMiner
|
2020-08-30 16:10:47 -04:00 |
|
Doug Burks
|
77b3ebdabe
|
Hunt Events table should show ssl.server_name when searching for ssl
Hunt Events table should show ssl.server_name when searching for ssl #1267
|
2020-08-30 06:56:15 -04:00 |
|
Doug Burks
|
13ce439678
|
Update README
|
2020-08-29 06:52:26 -04:00 |
|
Doug Burks
|
df5ef7c956
|
Update so-analyst
|
2020-08-29 06:07:58 -04:00 |
|