Jason Ertel
|
dae41d279a
|
Prevent emails addresses from having uppercase characters
|
2021-09-22 08:25:55 -04:00 |
|
Jason Ertel
|
a9049eccd4
|
Ensure identity ID parm is quoted now that it doesn't have embedded quotes in the value
|
2021-09-20 13:30:05 -04:00 |
|
Josh Patterson
|
47cd1ddc0a
|
Merge pull request #5580 from Security-Onion-Solutions/issue/1257
Issue/1257 - Pillarize ES
|
2021-09-20 09:31:03 -04:00 |
|
m0duspwnens
|
aed73511e4
|
file cleanup, comment cleanup
|
2021-09-20 09:24:03 -04:00 |
|
Jason Ertel
|
a3f62c81c3
|
Merge pull request #5577 from Security-Onion-Solutions/kilo
Continuation of auth enhancements
|
2021-09-20 06:30:36 -04:00 |
|
Jason Ertel
|
730503b69c
|
Ensure highstate migrates user roles
|
2021-09-18 23:17:49 -04:00 |
|
Jason Ertel
|
3508f3d8c1
|
Ensure ES user/role files are generated even if the primary admin user isn't yet created, since the system users are necessary for other installation functions
|
2021-09-18 19:20:43 -04:00 |
|
Jason Ertel
|
5704906b11
|
Create empty files for Docker to mount while installation continues
|
2021-09-18 15:49:05 -04:00 |
|
Jason Ertel
|
357c1db445
|
Recover from situation where roles file is corrupted
|
2021-09-18 11:08:35 -04:00 |
|
Jason Ertel
|
5377a1a85e
|
Recover from situation where roles file is corrupted
|
2021-09-18 11:06:54 -04:00 |
|
Jason Ertel
|
7f2d7eb038
|
Continue migration of user emails to IDs
|
2021-09-18 07:20:34 -04:00 |
|
Jason Ertel
|
30e781d076
|
Use user ID instead of email as role master
|
2021-09-17 17:54:38 -04:00 |
|
m0duspwnens
|
01323cc192
|
fix clustername redirect
|
2021-09-17 15:44:54 -04:00 |
|
m0duspwnens
|
109c83d8c3
|
move custom es cluster name pillar location
|
2021-09-17 15:29:41 -04:00 |
|
m0duspwnens
|
e864bc5404
|
move custom es cluster name pillar location
|
2021-09-17 15:28:35 -04:00 |
|
Josh Brower
|
22eb82e950
|
Merge pull request #5566 from Security-Onion-Solutions/feature/disable_services
Add support for disabling Zeek and Suricata
|
2021-09-17 14:18:03 -04:00 |
|
m0duspwnens
|
b877aa44bc
|
update dict
|
2021-09-17 14:10:45 -04:00 |
|
Josh Brower
|
4d307c53e8
|
Add support for disabling Zeek and Suricata
|
2021-09-17 13:01:50 -04:00 |
|
m0duspwnens
|
d0c87cd317
|
allow for pillar override of defaults
|
2021-09-17 12:11:12 -04:00 |
|
m0duspwnens
|
0d074dafd4
|
add missing defaults
|
2021-09-17 09:52:50 -04:00 |
|
m0duspwnens
|
5b77dc109f
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/1257
|
2021-09-16 16:54:23 -04:00 |
|
m0duspwnens
|
3ce48acadd
|
change cluster_settings to config
|
2021-09-16 16:44:31 -04:00 |
|
Jason Ertel
|
fbd9bab2f1
|
Split apart roles and users into separate maps
|
2021-09-16 16:08:55 -04:00 |
|
m0duspwnens
|
5526a2bc3a
|
reduce defaults.yaml
|
2021-09-16 15:32:08 -04:00 |
|
weslambert
|
18d81352c6
|
Merge pull request #5537 from Security-Onion-Solutions/delta
Add improved ignore functionality for YARA rules used by Strelka and add default ignored rules that break compilation
|
2021-09-16 10:38:49 -04:00 |
|
m0duspwnens
|
889d235c45
|
no box type more manager in true cluster
|
2021-09-16 09:15:24 -04:00 |
|
Jason Ertel
|
3fc26312e0
|
Remove x-user-id header from unauthenticated proxied requests
|
2021-09-16 08:52:31 -04:00 |
|
Jason Ertel
|
b81d38e392
|
Merge branch 'dev' into kilo
|
2021-09-16 07:44:35 -04:00 |
|
Jason Ertel
|
82da0041a4
|
Add limited roles with restricted visibility
|
2021-09-16 07:44:15 -04:00 |
|
m0duspwnens
|
782b01e76f
|
seed_hosts to list
|
2021-09-15 17:07:52 -04:00 |
|
m0duspwnens
|
3bf9685df8
|
fix seed_hosts append
|
2021-09-15 17:00:16 -04:00 |
|
m0duspwnens
|
4cf91f6c86
|
fix dict update
|
2021-09-15 15:51:00 -04:00 |
|
m0duspwnens
|
a43b37f234
|
fix dict update
|
2021-09-15 15:49:18 -04:00 |
|
m0duspwnens
|
e0dc62b6e9
|
fix dict update
|
2021-09-15 15:43:47 -04:00 |
|
m0duspwnens
|
c213834316
|
update the dict
|
2021-09-15 15:24:40 -04:00 |
|
Josh Brower
|
c06668c68e
|
Merge pull request #5527 from Security-Onion-Solutions/feature/so-import-evtx
Feature/so import evtx
|
2021-09-15 14:17:15 -04:00 |
|
Josh Brower
|
a75238bc3f
|
so-import-evtx - fix ingest formatting
|
2021-09-15 14:13:16 -04:00 |
|
Josh Brower
|
ac417867ed
|
so-import-evtx - final fixes
|
2021-09-15 14:06:08 -04:00 |
|
m0duspwnens
|
1614b70853
|
update cluster name if true cluster
|
2021-09-15 13:45:43 -04:00 |
|
Mike Reeves
|
0882158e03
|
Merge pull request #5525 from Security-Onion-Solutions/soup80
soup changes 2.3.80
|
2021-09-15 13:44:54 -04:00 |
|
m0duspwnens
|
1a03853a7c
|
fix extend
|
2021-09-15 13:38:29 -04:00 |
|
Mike Reeves
|
aff571faf2
|
soup changes 2.3.80
|
2021-09-15 13:32:52 -04:00 |
|
m0duspwnens
|
e0faa4c75b
|
Merge branch 'issue/1257' of https://github.com/Security-Onion-Solutions/securityonion into issue/1257
|
2021-09-15 13:09:35 -04:00 |
|
m0duspwnens
|
e3e2e1d851
|
logic for truecluster to map file
|
2021-09-15 13:09:04 -04:00 |
|
weslambert
|
2affaf07a2
|
Merge pull request #5521 from Security-Onion-Solutions/fix/strelka-yara
Fix/strelka yara
|
2021-09-15 11:33:44 -04:00 |
|
weslambert
|
39e5ded58d
|
Refactor ignore list and only ignore for signature-base for now
|
2021-09-15 11:32:29 -04:00 |
|
weslambert
|
4d41d3aee1
|
Ignore these rules by default because they are causing issues with YARA compilation with Strelka
|
2021-09-15 10:29:11 -04:00 |
|
weslambert
|
5c8067728e
|
Remove unnecessary logic
|
2021-09-15 10:22:17 -04:00 |
|
Josh Brower
|
1d905124d3
|
Merge pull request #5519 from Security-Onion-Solutions/fix/fleet-link
Fix Fleet Link Logic
|
2021-09-15 09:30:21 -04:00 |
|
Josh Brower
|
e0a289182f
|
Fix Fleet Link Logic
|
2021-09-15 09:28:23 -04:00 |
|