Josh Brower
|
c99e7da5a7
|
Remove Comments
|
2023-07-11 10:26:18 -04:00 |
|
Josh Patterson
|
60d66b973c
|
Merge pull request #10739 from Security-Onion-Solutions/yararules
include *.yara
|
2023-07-11 10:21:35 -04:00 |
|
m0duspwnens
|
304830d2ee
|
remove old rules prior to copy
|
2023-07-11 10:20:04 -04:00 |
|
m0duspwnens
|
d7285d69a7
|
include *.yara
|
2023-07-11 09:59:13 -04:00 |
|
weslambert
|
b7cab1d118
|
Change path to old one
|
2023-07-11 09:10:20 -04:00 |
|
weslambert
|
f03a472ee5
|
Merge pull request #10731 from Security-Onion-Solutions/fix/kibana_file_search
Kibana dashboard changes
|
2023-07-11 08:50:03 -04:00 |
|
Mike Reeves
|
c7a0801eed
|
Merge pull request #10725 from Security-Onion-Solutions/yararules
Yararules
|
2023-07-11 08:49:20 -04:00 |
|
Josh Brower
|
5a72c558cb
|
Tag at top level
|
2023-07-11 08:35:47 -04:00 |
|
Josh Brower
|
a6e907f76c
|
Tag Playbook Alerts
|
2023-07-11 08:03:15 -04:00 |
|
Josh Brower
|
8437fcd94c
|
Exclude Import and Eval from autoupdate
|
2023-07-10 17:10:08 -04:00 |
|
m0duspwnens
|
f8ed2e6e8e
|
make parent dirs
|
2023-07-10 16:11:45 -04:00 |
|
m0duspwnens
|
5069d1163c
|
only *.yar files
|
2023-07-10 14:36:34 -04:00 |
|
Josh Brower
|
31edf2e8ea
|
Tighten & Document Pipelines
|
2023-07-10 14:17:42 -04:00 |
|
Wes
|
6b8893ded5
|
Update saved objects
|
2023-07-10 18:13:34 +00:00 |
|
m0duspwnens
|
1f8b7bda89
|
fix output_dir var
|
2023-07-10 13:39:31 -04:00 |
|
m0duspwnens
|
1ac72e5b24
|
ensure /nsm/rules/yara directory exists
|
2023-07-10 11:10:37 -04:00 |
|
Josh Brower
|
7805ca8beb
|
Add Failover Support
|
2023-07-10 10:38:14 -04:00 |
|
m0duspwnens
|
47b2481cdd
|
nothing in strelka/tools/sbin_jinja to file.recurse
|
2023-07-10 10:29:19 -04:00 |
|
m0duspwnens
|
fa933d3f53
|
use file_mode
|
2023-07-10 10:26:30 -04:00 |
|
m0duspwnens
|
f4dc73a206
|
yara download and update
|
2023-07-10 09:42:37 -04:00 |
|
Wes
|
6da96a733f
|
Use tags instead of dataset
|
2023-07-10 13:06:38 +00:00 |
|
Josh Brower
|
8c16feb772
|
Rename Fleet pipelines
|
2023-07-09 12:22:55 -04:00 |
|
Josh Brower
|
ce1f363424
|
Allow base_url
|
2023-07-08 13:30:19 -04:00 |
|
Josh Brower
|
e8860a7d2c
|
Fix perms
|
2023-07-08 09:04:55 -04:00 |
|
Josh Brower
|
beb26596fd
|
Merge remote-tracking branch 'origin/2.4/dev' into 2.4/fleetautogen
|
2023-07-07 19:12:47 -04:00 |
|
Josh Brower
|
ff3bb11fbb
|
Elastic Fleet Certs Refactor
|
2023-07-07 16:44:16 -04:00 |
|
m0duspwnens
|
8be5082b60
|
yara scripts
|
2023-07-07 16:43:26 -04:00 |
|
Corey Ogburn
|
da7770a900
|
Allow an additional kratos endpoint through
The /auth/self-service/errors route is used to lookup auth issues so the route must also be proxied to kratos.
|
2023-07-07 12:47:55 -06:00 |
|
weslambert
|
79ed17b506
|
Change path
|
2023-07-07 13:31:43 -04:00 |
|
Josh Patterson
|
2785587840
|
Merge pull request #10714 from Security-Onion-Solutions/remove_so-logstash-get-unparsed
remove so-logstash-get-unparsed, use so-redis-count instead
|
2023-07-07 09:53:54 -04:00 |
|
weslambert
|
9f95306458
|
Merge pull request #10708 from Security-Onion-Solutions/fix/elasticsearch_templates_hn
Fix heavy node Elasticsearch template load
|
2023-07-07 09:52:54 -04:00 |
|
m0duspwnens
|
55bed0771b
|
remove so-logstash-get-unparsed, use so-redis-count instead
|
2023-07-07 09:52:21 -04:00 |
|
Wes
|
0b5ee49873
|
Fix inverted logic for component template
|
2023-07-06 20:46:35 +00:00 |
|
Jason Ertel
|
224f0606c2
|
Merge pull request #10706 from Security-Onion-Solutions/kilo
incorporate features pillar
|
2023-07-06 14:04:12 -04:00 |
|
Wes
|
910125f13a
|
Restructure logic
|
2023-07-06 17:49:06 +00:00 |
|
Jason Ertel
|
5eca1acbeb
|
incorporate features pillar
|
2023-07-06 13:24:45 -04:00 |
|
Wes
|
d551faeb16
|
Heavy node template considerations
|
2023-07-06 17:19:28 +00:00 |
|
m0duspwnens
|
869f60ccaa
|
cipher deprecated for x509_+v2
|
2023-07-06 10:51:44 -04:00 |
|
m0duspwnens
|
12c82d2812
|
bits deprecation to keysize
|
2023-07-06 10:49:32 -04:00 |
|
m0duspwnens
|
b49a296276
|
we can remove the unless in ssl state since x509_v2 is patched
|
2023-07-06 09:44:58 -04:00 |
|
Josh Patterson
|
9de8814412
|
Merge pull request #10692 from Security-Onion-Solutions/issue/10545
Issue/10545
|
2023-07-03 11:05:55 -04:00 |
|
Josh Brower
|
35e7659904
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleetautogen
|
2023-07-03 10:36:29 -04:00 |
|
weslambert
|
d31ea4097d
|
Merge pull request #10683 from Security-Onion-Solutions/fix/kibana_http_search
Kibana dashboard changes
|
2023-06-30 17:17:37 -04:00 |
|
Wes
|
c277b7acfa
|
Change Zeek file from evet dataset to tags
|
2023-06-30 20:24:10 +00:00 |
|
m0duspwnens
|
97a9e0989d
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10545
|
2023-06-30 15:46:41 -04:00 |
|
Wes
|
6bdccec6b1
|
Add asterisk back to Modbus search
|
2023-06-30 19:01:53 +00:00 |
|
m0duspwnens
|
7319d7ae9b
|
replace . with _x_
|
2023-06-30 14:18:20 -04:00 |
|
Wes
|
8b38cbe8cf
|
Fix Modbus since the previous fix was reverted
|
2023-06-30 17:38:05 +00:00 |
|
Wes
|
35ea084466
|
Update from exported saved objects again
|
2023-06-30 16:55:00 +00:00 |
|
Wes
|
e2acf027a9
|
Update from exported saved objects
|
2023-06-30 16:01:50 +00:00 |
|