Wes
|
d8700137d2
|
Add updated so-elasticsearch-templates-load
|
2023-06-23 13:23:29 +00:00 |
|
Wes
|
2c42d4b19e
|
Add package check to so-elasticsearch-templates-load
|
2023-06-23 13:22:51 +00:00 |
|
weslambert
|
7e37cd0f05
|
Parse xff
|
2023-06-21 14:29:54 -04:00 |
|
Wes
|
3a34da354f
|
Use append instead of set
|
2023-06-15 16:35:43 +00:00 |
|
Wes
|
58a63e0765
|
Remove extra comma
|
2023-06-15 14:22:37 +00:00 |
|
Wes
|
b5bccc5e05
|
Use module in dataset name and add dataset tag
|
2023-06-15 13:06:57 +00:00 |
|
Wes
|
48331ce35b
|
Add system.system component templates
|
2023-06-14 13:29:11 +00:00 |
|
Wes
|
c2ac60b82e
|
Add system.system template and add event-mappings
|
2023-06-14 13:28:00 +00:00 |
|
Wes
|
8cde05807c
|
Remove elastic-agent dir
|
2023-06-13 21:33:04 +00:00 |
|
Wes
|
2ac0aba916
|
Add osquery files
|
2023-06-13 21:32:02 +00:00 |
|
Wes
|
af003cc2a1
|
Add osquery templates
|
2023-06-13 20:43:39 +00:00 |
|
Wes
|
bd7644a557
|
Add another template
|
2023-06-13 19:13:20 +00:00 |
|
Wes
|
5547a1b7ab
|
Add event mappings
|
2023-06-13 18:23:50 +00:00 |
|
Wes
|
1b90fd8581
|
Add custom component templates
|
2023-06-13 18:21:45 +00:00 |
|
Wes
|
e43b7607bb
|
Add more component templates
|
2023-06-13 17:04:03 +00:00 |
|
Wes
|
a265c06e31
|
Add other component templates
|
2023-06-13 15:47:25 +00:00 |
|
Wes
|
2aa954cb0a
|
Add component templates
|
2023-06-13 15:25:23 +00:00 |
|
Wes
|
73812b11a3
|
Allow ingest node pipelines that start with a period
|
2023-06-13 13:37:56 +00:00 |
|
Wes
|
38ab426470
|
Add final Fleet pipeline
|
2023-06-13 13:36:26 +00:00 |
|
Wes
|
d0a6881c2c
|
Add event mappings and remove meta information for now
|
2023-06-13 13:35:46 +00:00 |
|
Wes
|
57268ba934
|
Change priority of templates
|
2023-06-12 14:29:45 +00:00 |
|
Wes
|
1208915896
|
Remove Elastic Agent package templates
|
2023-06-12 14:24:59 +00:00 |
|
Wes
|
42f5ad9939
|
Add templates for system.auth and systen.syslog
|
2023-06-12 14:23:24 +00:00 |
|
weslambert
|
32f3ee0b01
|
Merge pull request #10564 from Security-Onion-Solutions/fix/elasticsearch_templates
Update templates for integrations
|
2023-06-12 09:05:31 -04:00 |
|
Doug Burks
|
b3f8ed7dcd
|
FIX: Suricata DHCP logs not ingesting #10565
|
2023-06-10 11:42:41 -04:00 |
|
Wes
|
ad5a424c03
|
Update templates for integrations
|
2023-06-09 18:32:50 +00:00 |
|
Doug Burks
|
e5f76a9c6e
|
change suricata parsers from dataset to event.dataset
|
2023-06-08 12:31:31 -04:00 |
|
Wes
|
495a9c0783
|
Add mapping for event.severity_label
|
2023-06-05 21:19:37 +00:00 |
|
weslambert
|
25006ed20b
|
Merge pull request #10455 from Security-Onion-Solutions/fix/curator_cluster_delete_delete
Update so-elasticsearch-cluster-space-used and so-curator-cluster-delete-delete
|
2023-05-30 14:28:22 -04:00 |
|
Wes
|
4469a93a75
|
Fix typo
|
2023-05-30 18:24:30 +00:00 |
|
Wes
|
b441fe662f
|
Change 1024 to 1000 for gigabytes
|
2023-05-30 17:28:59 +00:00 |
|
Wes
|
ce114a2601
|
Fix total space logic and rename TOTAL_AVAILABLE_SPACE to TOTAL_USED_SPACE
|
2023-05-26 13:19:45 +00:00 |
|
Wes
|
a308a39bbe
|
Use disk space taken up by indices if the script is not running on a manager
|
2023-05-24 16:48:45 +00:00 |
|
Mike Reeves
|
cace817c79
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 08:43:03 -04:00 |
|
weslambert
|
2c10ad7eec
|
Check if 'dns.query' is null
|
2023-05-19 15:50:33 -04:00 |
|
Mike Reeves
|
5315c51197
|
Allow additional docker parameters
|
2023-05-18 16:52:38 -04:00 |
|
Mike Reeves
|
8917f9b9d2
|
Allow additional docker parameters
|
2023-05-18 16:46:28 -04:00 |
|
Mike Reeves
|
c0dc05f26a
|
Allow additional docker parameters
|
2023-05-18 16:39:42 -04:00 |
|
Mike Reeves
|
7ab31e36af
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-18 15:19:15 -04:00 |
|
Mike Reeves
|
0fd9fb9294
|
Allow additional docker parameters
|
2023-05-18 15:19:09 -04:00 |
|
m0duspwnens
|
f4b8d385ee
|
remove conditional on cacertz and capemz
|
2023-05-18 08:36:24 -04:00 |
|
m0duspwnens
|
2419fa43b6
|
cwd for catrustscript
|
2023-05-16 12:08:44 -04:00 |
|
m0duspwnens
|
2813d67670
|
import GLOBALS
|
2023-05-15 16:47:33 -04:00 |
|
m0duspwnens
|
c49b134122
|
move so-catrust
|
2023-05-15 16:43:47 -04:00 |
|
m0duspwnens
|
6320528263
|
move so-catrust
|
2023-05-15 14:08:30 -04:00 |
|
m0duspwnens
|
9d6fb98e3b
|
move cacertz and capemz to ca state
|
2023-05-09 11:13:57 -04:00 |
|
m0duspwnens
|
328b714306
|
import ELASTICSEARCHMERGED
|
2023-05-09 09:51:53 -04:00 |
|
m0duspwnens
|
2a979197a0
|
enabled/disable elasticsearch in ui
|
2023-05-09 09:33:37 -04:00 |
|
m0duspwnens
|
ddb776c80e
|
add redis pillars to searchnode. move redis scripts with jinja to sbin_jinja
|
2023-05-04 17:26:18 -04:00 |
|
m0duspwnens
|
f34627f709
|
source from sbin_jinja and exlude pat
|
2023-05-04 15:13:42 -04:00 |
|