Josh Patterson
|
a192455fae
|
Merge remote-tracking branch 'origin/2.4/dev' into bravo
|
2026-01-19 17:17:58 -05:00 |
|
reyesj2
|
596bc178df
|
ensure docker cp command follows container symlinks
|
2026-01-15 15:18:18 -06:00 |
|
Josh Patterson
|
00fbc1c259
|
add back individual signing policies
|
2026-01-12 09:25:15 -05:00 |
|
Josh Patterson
|
3bc552ef38
|
Merge remote-tracking branch 'origin/2.4/dev' into bravo
|
2026-01-08 17:15:48 -05:00 |
|
Josh Patterson
|
1887d2c0e9
|
update heavynode pattern
|
2026-01-08 17:15:00 -05:00 |
|
reyesj2
|
cb1e59fa49
|
Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into reyesj2/elastic9-autosoup
|
2026-01-07 10:30:45 -06:00 |
|
Josh Patterson
|
f2370043a8
|
Merge remote-tracking branch 'origin/2.4/dev' into bravo
|
2026-01-06 09:12:00 -05:00 |
|
reyesj2
|
f2b7ffe0eb
|
align with ECS fieldnames
|
2026-01-05 14:48:10 -06:00 |
|
reyesj2
|
a53619f10f
|
update kratos index template
|
2026-01-05 12:22:01 -06:00 |
|
reyesj2
|
33c34cdeca
|
Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into reyesj2/elastic9-autosoup
|
2025-12-29 15:49:49 -06:00 |
|
reyesj2
|
7977a020ac
|
elasticsearch 9.0.8
|
2025-12-16 16:03:47 -06:00 |
|
Josh Patterson
|
9960db200c
|
Merge remote-tracking branch 'origin/2.4/dev' into bravo
|
2025-12-11 17:30:43 -05:00 |
|
Josh Patterson
|
b9ff1704b0
|
the great ssl refactor
|
2025-12-11 17:30:06 -05:00 |
|
DefensiveDepth
|
a945768251
|
Refactor backup
|
2025-12-11 11:15:30 -05:00 |
|
reyesj2
|
45a8c0acd1
|
merge 2.4/dev
|
2025-12-02 11:16:08 -06:00 |
|
reyesj2
|
cc8fb96047
|
valid config for number_of_replicas in allocate action includes 0
|
2025-11-24 11:12:09 -06:00 |
|
reyesj2
|
3339b50daf
|
drop forcemerge when max_num_segements doesn't exist or empty
|
2025-11-21 16:39:45 -06:00 |
|
reyesj2
|
415ea07a4f
|
clean up
|
2025-11-21 16:04:26 -06:00 |
|
reyesj2
|
b80ec95fa8
|
update regex, revert to default will allow setting value back to '' | None
|
2025-11-21 14:41:03 -06:00 |
|
reyesj2
|
90638f7a43
|
Merge branch 'reyesj2/advea' into reyesj2/advilm
|
2025-11-21 14:25:28 -06:00 |
|
reyesj2
|
c5db7c8752
|
suricata.capture_file keyword
|
2025-11-20 14:26:12 -06:00 |
|
reyesj2
|
6f42ff3442
|
suricata capture_file
|
2025-11-20 14:16:49 -06:00 |
|
reyesj2
|
433dab7376
|
format json
|
2025-11-20 14:16:10 -06:00 |
|
reyesj2
|
b52dd53e29
|
advanced ilm actions
|
2025-11-19 13:24:55 -06:00 |
|
reyesj2
|
de4424fab0
|
remove typos
|
2025-11-14 19:15:51 -06:00 |
|
reyesj2
|
bcec999be4
|
zeek.dns reduce errors
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
7c73b4713f
|
update analyzer pipeline
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
fcfd74ec1e
|
zeek.analyzer format json
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
68b0cd7549
|
rename zeek.dpd zeek.analyzer
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
715d801ce8
|
format json zeek.dns
|
2025-11-14 15:47:19 -06:00 |
|
Jorge Reyes
|
a5d8385f07
|
Merge pull request #15230 from Security-Onion-Solutions/reyesj2/pipeline-upd
suricata pipeline updates
|
2025-11-14 10:43:33 -06:00 |
|
reyesj2
|
211bf7e77b
|
ignore errors on tld script
|
2025-11-14 09:25:19 -06:00 |
|
reyesj2
|
1542b74133
|
move dns tld fields to its own pipeline
|
2025-11-14 09:24:58 -06:00 |
|
reyesj2
|
da9717bc79
|
don't attempt rename if field doesn't exist -- reducing pipeline stat errors
|
2025-11-14 08:15:40 -06:00 |
|
reyesj2
|
431e0b0780
|
format suricata.alert json
|
2025-11-13 19:29:50 -06:00 |
|
reyesj2
|
e782266caa
|
suricata 8 dns v3
|
2025-11-13 19:21:31 -06:00 |
|
reyesj2
|
7be70faab6
|
format json
|
2025-11-13 10:49:37 -06:00 |
|
Jorge Reyes
|
4a49f9d004
|
Merge branch '2.4/dev' into reyesj2/retention
|
2025-11-06 14:29:08 -06:00 |
|
reyesj2
|
1eb4b5379a
|
show 30d scheduled deletions or 7d scheduled deletions depending on what historical data is available
|
2025-11-06 14:25:25 -06:00 |
|
reyesj2
|
35c7fc06d7
|
fix bug showing duplicate backing indices in recommendations
|
2025-11-06 14:24:58 -06:00 |
|
reyesj2
|
b69d453a68
|
typo
|
2025-11-06 14:24:29 -06:00 |
|
reyesj2
|
1aa871ec94
|
small fixes
|
2025-11-05 17:55:57 -06:00 |
|
Jorge Reyes
|
9359fbbad6
|
Merge pull request #15176 from Security-Onion-Solutions/reyesj2/ilmpolicyhelp
|
2025-10-29 16:49:07 -05:00 |
|
reyesj2
|
2fb41c8d65
|
elasticsearch retention estimate
|
2025-10-29 14:24:43 -05:00 |
|
Jorge Reyes
|
d2aa60b961
|
log4j2 settings
|
2025-10-17 07:40:44 -05:00 |
|
reyesj2
|
e910de0a06
|
update log4j2 policy for ES json output
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2025-10-16 16:19:55 -05:00 |
|
reyesj2
|
3e22043ea6
|
es logging retention
|
2025-10-14 15:08:51 -05:00 |
|
reyesj2
|
2baf2478da
|
add additional elasticsearch log output in json format for elasticsearch log integration to parse
|
2025-10-14 12:47:03 -05:00 |
|
reyesj2
|
378d37d74e
|
add event.module to elasticsearch server logs
|
2025-10-14 12:44:51 -05:00 |
|
reyesj2
|
8675193d1f
|
elasticsearch upgrade 8.18.8
|
2025-10-06 12:56:31 -05:00 |
|