m0duspwnens
|
7176fdf7a1
|
rename from bro to zeek
|
2020-07-17 14:53:01 -04:00 |
|
m0duspwnens
|
e3efaee864
|
change reference from bro to zeek
|
2020-07-17 14:41:44 -04:00 |
|
Mike Reeves
|
74f6f2abee
|
Update soup
|
2020-07-17 13:38:55 -04:00 |
|
Josh Brower
|
da155b5dea
|
Kibana Fleet Pivot Fix
|
2020-07-17 13:00:03 -04:00 |
|
Josh Brower
|
6e4eb76393
|
Eval Ubuntu Fleet fix
|
2020-07-17 10:25:48 -04:00 |
|
weslambert
|
e91aa751a7
|
Change verbiage
|
2020-07-17 09:38:43 -04:00 |
|
William Wernert
|
958d614bef
|
[fix] Only show motd ip message on manager node
|
2020-07-17 09:21:47 -04:00 |
|
Josh Brower
|
32a6f825c2
|
Kibana dashboard updates
|
2020-07-17 08:14:37 -04:00 |
|
m0duspwnens
|
cc77a50d8d
|
change from manager to master for salt config.get
|
2020-07-16 21:05:44 -04:00 |
|
Mike Reeves
|
2d68d5419b
|
fix adtotab perms
|
2020-07-16 19:47:15 -04:00 |
|
Mike Reeves
|
258d9d3bfc
|
change salt perms
|
2020-07-16 17:07:04 -04:00 |
|
Mike Reeves
|
03ff592aa4
|
Merge pull request #1022 from Security-Onion-Solutions/fix/telegrafperms
Fix salt refresh script
|
2020-07-16 16:38:40 -04:00 |
|
Mike Reeves
|
21f09a9cd5
|
Fix salt refresh script
|
2020-07-16 16:37:48 -04:00 |
|
Josh Brower
|
4fd1daeca1
|
Merge pull request #1021 from Security-Onion-Solutions/bugfix/fleet-packages-urlbase
Osquery packages hostname fix
|
2020-07-16 16:36:30 -04:00 |
|
Josh Brower
|
51beb52bb8
|
Osquery packages hostname fix
|
2020-07-16 16:35:51 -04:00 |
|
Mike Reeves
|
d31ce4aa48
|
Fix soup issues
|
2020-07-16 16:32:38 -04:00 |
|
Mike Reeves
|
07626905c5
|
Fix telegraf script perms
|
2020-07-16 15:20:11 -04:00 |
|
Josh Patterson
|
5634446fcb
|
Merge pull request #1019 from Security-Onion-Solutions/quickfix/lstoes
fix the container watch for logstash container state
|
2020-07-16 15:06:29 -04:00 |
|
m0duspwnens
|
c61a52cc5e
|
fix the container watch for logstash container state
|
2020-07-16 15:05:54 -04:00 |
|
Josh Patterson
|
f1d8548913
|
Merge pull request #1017 from Security-Onion-Solutions/quickfix/lstoes
dont run templates script if there arent templates
|
2020-07-16 13:37:15 -04:00 |
|
m0duspwnens
|
9606d86e84
|
dont run templates script if there arent templates
|
2020-07-16 13:36:44 -04:00 |
|
Josh Patterson
|
582edd7aac
|
Merge pull request #1016 from Security-Onion-Solutions/quickfix/lstoes
including elasticsearch in logstash state
|
2020-07-16 10:13:18 -04:00 |
|
m0duspwnens
|
f10f47ad4e
|
including elasticsearch in logstash state
|
2020-07-16 10:12:10 -04:00 |
|
Wes Lambert
|
8275f458a1
|
Fix module eval
|
2020-07-16 13:30:38 +00:00 |
|
Mike Reeves
|
473606371a
|
Fix Features Download
|
2020-07-15 17:49:13 -04:00 |
|
Mike Reeves
|
d71dc89b13
|
New SOUP
|
2020-07-15 17:46:33 -04:00 |
|
Jason Ertel
|
9781d8d0e7
|
Ensure permissions are consistently applied to all imported PCAP files
|
2020-07-15 13:53:28 -04:00 |
|
Jason Ertel
|
0a976861f3
|
Dynamically set sensor checkin interval; allow overrides if var is preset
|
2020-07-15 13:22:14 -04:00 |
|
Josh Brower
|
d11ef08961
|
Playbook anonymous perms fix
|
2020-07-15 12:37:04 -04:00 |
|
Jason Ertel
|
9dc1151347
|
Imported logs are sent to so-import index on eval installations
|
2020-07-14 22:59:42 -04:00 |
|
Josh Patterson
|
549916306c
|
Merge pull request #1008 from Security-Onion-Solutions/quickfix/lstoes
Quickfix/lstoes
|
2020-07-14 17:37:19 -04:00 |
|
m0duspwnens
|
5cf71596b2
|
add curlys
|
2020-07-14 17:36:52 -04:00 |
|
Jason Ertel
|
acb800d1c9
|
Using static UID for Grafana overview dashboard to allow SOC to directly link to those dashboards
|
2020-07-14 17:36:30 -04:00 |
|
Jason Ertel
|
9bbbaa485c
|
Switch PM to AM since we want to span midnight to midnight
|
2020-07-14 17:36:30 -04:00 |
|
m0duspwnens
|
acaec6c125
|
remove recurse causing issues
|
2020-07-14 17:12:29 -04:00 |
|
Josh Brower
|
e7e1982862
|
Merge pull request #1007 from Security-Onion-Solutions/bugfix/ingest-parsing
Parsing & Hunt query updates
|
2020-07-14 17:00:04 -04:00 |
|
Josh Brower
|
8647944ae6
|
Parsing & Hunt query updates
|
2020-07-14 16:59:06 -04:00 |
|
Mike Reeves
|
55056f3193
|
Merge pull request #1006 from Security-Onion-Solutions/fix/perms
Change opt/so perms
|
2020-07-14 16:19:02 -04:00 |
|
m0duspwnens
|
57bf23d83c
|
move templates from logstash to elasticsearch
|
2020-07-14 16:07:46 -04:00 |
|
Doug Burks
|
a1e6a85a68
|
explicitly set Suricata timestamp timezone to UTC
|
2020-07-14 15:49:46 -04:00 |
|
Wes Lambert
|
f9df39977b
|
Add observer name for Strelka events
|
2020-07-14 17:38:43 +00:00 |
|
weslambert
|
7ed902c0ae
|
Merge pull request #1001 from Security-Onion-Solutions/fix/suricata_timestamp
Convert message timestamp to @timestamp
|
2020-07-14 13:34:58 -04:00 |
|
Josh Brower
|
ba8395fc11
|
Fleet reactor fix
|
2020-07-14 13:04:29 -04:00 |
|
William Wernert
|
3df5904269
|
Merge pull request #979 from Security-Onion-Solutions/feature/setup
Feature/setup
|
2020-07-14 11:17:03 -04:00 |
|
William Wernert
|
ad3c4c4950
|
[fix] master -> manager
|
2020-07-14 11:09:12 -04:00 |
|
Mike Reeves
|
57cd2cdbeb
|
Change opt/so perms
|
2020-07-14 10:37:49 -04:00 |
|
Mike Reeves
|
f2d9abf1a5
|
Merge pull request #996 from Security-Onion-Solutions/fix/curator
Add all actions to cron
|
2020-07-14 10:05:27 -04:00 |
|
Mike Reeves
|
e404a41d8a
|
Add all actions to cron
|
2020-07-14 10:04:15 -04:00 |
|
Mike Reeves
|
15be31af6d
|
Merge pull request #995 from Security-Onion-Solutions/fix/curator
Fix spelling error in actions
|
2020-07-14 09:43:41 -04:00 |
|
Jason Ertel
|
67f2edce28
|
Resolve merge conflict that reverted import URL back to Kibana
|
2020-07-14 09:40:16 -04:00 |
|