weslambert
35653d2e66
Changes for ES7
2020-11-24 11:51:19 -05:00
weslambert
eb2364b926
Changes for ES7
2020-11-24 11:49:08 -05:00
Josh Patterson
9bb485cdc9
Merge pull request #2074 from Security-Onion-Solutions/issue/2040
...
Issue/2040
2020-11-24 11:45:08 -05:00
m0duspwnens
995a377432
squigly comma if steno enabled https://github.com/Security-Onion-Solutions/securityonion/issues/2040
2020-11-24 11:31:41 -05:00
weslambert
e3a41c2a94
Changes for ES7 elasticsearch.yml
2020-11-24 11:20:09 -05:00
Mike Reeves
ddca9563e5
Merge branch 'mkrmerge' into escluster
2020-11-24 10:29:57 -05:00
OmerTirosh
e2ee0db727
Ignore failure for rename processor
...
Ignore failure for winlog.event_data.SubjectUserName rename processor.
For some event ids (for example 4688), this field already been added in winlogbeat JS processor.
Therefor, elastic throw [user.name] already exists error.
2020-11-24 17:21:47 +02:00
m0duspwnens
4dfd49ef39
add vars https://github.com/Security-Onion-Solutions/securityonion/issues/2040
2020-11-24 10:11:28 -05:00
m0duspwnens
65334d15ea
https://github.com/Security-Onion-Solutions/securityonion/issues/2040
2020-11-24 09:33:38 -05:00
Jason Ertel
1e32a01657
Create symlink before registration otherwise registration script can't save it's state (.log) file into the conf subdir; add more logging output to track down registration failures
2020-11-23 18:36:19 -05:00
Jason Ertel
bafefb980b
Update so-elastalert-test script for compatibility with SO 2.3
2020-11-23 10:45:56 -05:00
Mike Reeves
426769588a
Merge pull request #1739 from jtgreen-cse/patch-2
...
fix for Windows events via osquery
2020-11-21 13:27:05 -05:00
Josh Patterson
a183be489c
Merge pull request #2030 from Security-Onion-Solutions/master
...
Merge master to dev
2020-11-20 17:00:31 -05:00
Jason Ertel
78f5727f6f
Improve so-ip-update prompts
2020-11-20 15:16:07 -05:00
m0duspwnens
0d3754200f
fix issue with proper salt.minion state execution for ubuntu
2020-11-20 14:27:07 -05:00
Jason Ertel
bc40a2bfc5
Correct so-import-pcap wrapping; add so-pcap-import alias for so-import-pcap; prompt to reboot after changing IP address on manager; ensure all tools have exec bit set
2020-11-20 14:14:03 -05:00
Jason Ertel
f074179656
Correct so-import-pcap wrapping; add so-pcap-import alias for so-import-pcap; prompt to reboot after changing IP address on manager; ensure all tools have exec bit set
2020-11-20 14:14:03 -05:00
William Wernert
2e6be747d9
[fix] Fixes for quiet flag in so-ssh-harden
2020-11-20 11:18:40 -05:00
William Wernert
1a11c24f03
[fix] Add newline escapes to so-ssh-harden
2020-11-20 11:13:40 -05:00
William Wernert
9d837f7b45
[fix] Reload sshd if config changes are made
...
Fixes #1976
2020-11-20 10:09:14 -05:00
Mike Reeves
316a1c02f1
Update soup to display what its doing
2020-11-19 15:19:50 -05:00
m0duspwnens
cdc7a5cc7c
kill salt process with soup and dont restart salt-minion service when salt upgrade
2020-11-19 15:17:11 -05:00
m0duspwnens
2a3951ab36
change typo on minon to minion
2020-11-19 15:08:08 -05:00
Mike Reeves
3be1c9ae32
Clean up 2.3.1 dockers
2020-11-19 09:58:08 -05:00
Josh Brower
d3065005ca
playbook mysqluser
2020-11-18 20:48:02 -05:00
m0duspwnens
d68726f6ef
upgrade from salt 3002.1 to salt 3002.2
2020-11-18 18:25:02 -05:00
Josh Patterson
f81da406da
Merge pull request #1983 from Security-Onion-Solutions/soup-verify-salt
...
dont highstate, just restart salt-minion
2020-11-18 17:40:36 -05:00
m0duspwnens
afd466cd2b
dont highstate, just restart salt-minion
2020-11-18 17:27:25 -05:00
Josh Patterson
6d228a836f
Merge pull request #1982 from Security-Onion-Solutions/soup-verify-salt
...
add -X so bootstrap doesnt try to start salt-minion during soup
2020-11-18 16:45:05 -05:00
m0duspwnens
1805effdc0
add -X so bootstrap doesnt try to start salt-minion during soup
2020-11-18 16:32:53 -05:00
Jason Ertel
1170b04a87
Update changes for 2.3.10
2020-11-18 16:18:00 -05:00
m0duspwnens
6cc9d1c076
add back -s
2020-11-18 15:49:30 -05:00
Josh Brower
3d0003555a
Merge pull request #1980 from Security-Onion-Solutions/bugfix/soup-regen-osquery
...
SOUP - Regen Osquery Packages
2020-11-18 14:56:23 -05:00
Josh Brower
0830f63c4e
SOUP - Regen Osquery Packages
2020-11-18 14:55:14 -05:00
m0duspwnens
af6e14dc6f
highstate , merge with dev fix conflict
2020-11-18 14:47:40 -05:00
m0duspwnens
ceef07b74b
remove pkill
2020-11-18 14:00:01 -05:00
weslambert
6b4af30fc1
Change clean_removed to true cleanup tracking of Zeek logs removed from current
2020-11-18 13:47:32 -05:00
m0duspwnens
1e2b404836
remove -s
2020-11-18 13:29:42 -05:00
m0duspwnens
276c011a4f
queue state and change upgrade command https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-18 13:22:11 -05:00
Jason Ertel
57e9f69c97
Add new so-ip-update script (Work in progress)
2020-11-18 12:35:38 -05:00
m0duspwnens
d0e7b5b55a
only ensure salt-minion service is running if salt is on right verison https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-18 12:32:21 -05:00
m0duspwnens
ce70e0a61f
changes to upgradecommand https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-18 11:51:28 -05:00
m0duspwnens
bddc3d6df9
kill all salt-minion again since they hang and redirect highstate to a logfile
2020-11-18 10:40:23 -05:00
m0duspwnens
4bb1ad9799
dont restart or kill salt-minon in upgrade command https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-18 09:29:09 -05:00
William Wernert
bc0c395b7f
Merge pull request #1963 from Security-Onion-Solutions/feature/rem-so-setup-perm-entry
...
Feature/rem so-setup perm entry
2020-11-18 09:12:25 -05:00
m0duspwnens
67dc71ab49
Merge remote-tracking branch 'remotes/origin/dev' into soup-verify-salt
2020-11-18 08:36:23 -05:00
m0duspwnens
c95619d335
change upgradecommand order https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-18 08:35:56 -05:00
Jason Ertel
bfbc0f354c
Only default to logging out to tty if tty exists as a character device
2020-11-17 22:48:40 -05:00
m0duspwnens
5c6e9e0e3a
run a highstate and let that start the salt-minion back up https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-17 19:40:42 -05:00
m0duspwnens
7291d64e82
pkill salt-minion before restartiong salt-minion service https://github.com/Security-Onion-Solutions/securityonion/issues/1961
2020-11-17 18:38:01 -05:00