Jason Ertel
|
e22421ec99
|
Refactor users/roles management via salt due to Salt's clobbering of the inode which breaks Docker mounts
|
2021-06-04 20:01:30 -04:00 |
|
Jason Ertel
|
416b38fc71
|
Use cronjob to ensure user synchronization
|
2021-06-04 11:24:58 -04:00 |
|
Jason Ertel
|
316035910f
|
Remove inotify beacon due to it not functioning as documented; Add back so-user changes to sync upon so-user changes
|
2021-06-03 15:15:35 -04:00 |
|
Jason Ertel
|
58ae3479dc
|
Fix mispelled db filename; ensure ELASTICCURL is used for loading config objects
|
2021-06-03 10:11:10 -04:00 |
|
Jason Ertel
|
2af43d62eb
|
Wrap curl param in quotes for function call
|
2021-06-03 08:53:59 -04:00 |
|
Jason Ertel
|
5c527b2c48
|
Rename username param to user since logstash is 'unique'
|
2021-06-03 07:51:43 -04:00 |
|
Jason Ertel
|
e6165f0046
|
Update kibana config load for auth changes
|
2021-06-03 07:47:32 -04:00 |
|
Jason Ertel
|
70427bc676
|
Merge branch 'dev' into kilo
|
2021-06-03 07:41:35 -04:00 |
|
Jason Ertel
|
719d841353
|
Update saved objects
|
2021-06-02 20:15:03 -04:00 |
|
Jason Ertel
|
fa6af06204
|
Avoid running highstate during setup when flipping auth flag
|
2021-06-02 17:13:59 -04:00 |
|
Jason Ertel
|
901242f7e9
|
remove extra parenthesis
|
2021-06-02 16:23:45 -04:00 |
|
Jason Ertel
|
fc6b3726a4
|
Fix missing colon for mode
|
2021-06-02 15:23:16 -04:00 |
|
Jason Ertel
|
588da4d7dc
|
Resolve salt pillar/state/jinja race condition
|
2021-06-02 14:34:21 -04:00 |
|
Jason Ertel
|
20e896cacf
|
Update all configs to pass user/pass to ES
|
2021-06-02 12:17:15 -04:00 |
|
Jason Ertel
|
4ff85ab0c4
|
Merge branch 'dev' into kilo
|
2021-06-02 10:39:51 -04:00 |
|
Jason Ertel
|
c757d21360
|
Increase default SOC API and ES timeouts from 2m to 5m
|
2021-06-02 09:38:59 -04:00 |
|
Jason Ertel
|
3a134cc706
|
fix merge conflicts
|
2021-06-02 09:16:28 -04:00 |
|
Jason Ertel
|
7aede4d058
|
Persist chown/chmod settings on users/roles files
|
2021-06-02 09:01:16 -04:00 |
|
Josh Patterson
|
9d905368ca
|
Merge pull request #4371 from Security-Onion-Solutions/pipeline_userpass
Pipeline userpass
|
2021-06-01 17:01:51 -04:00 |
|
m0duspwnens
|
867613669d
|
changes for syncing users
|
2021-06-01 17:01:03 -04:00 |
|
Jason Ertel
|
2a2247e1da
|
Additional so-user sync adjustments
|
2021-06-01 14:45:01 -04:00 |
|
Jason Ertel
|
7a59bee315
|
Add so-elastic-auth script
|
2021-06-01 12:48:53 -04:00 |
|
m0duspwnens
|
ef00695b07
|
fix typo
|
2021-06-01 11:31:50 -04:00 |
|
m0duspwnens
|
bfaffbc87e
|
add reactor and beacon for sqlite db
|
2021-06-01 11:15:28 -04:00 |
|
m0duspwnens
|
7e48740ea7
|
fix merge conflict
|
2021-06-01 10:56:02 -04:00 |
|
m0duspwnens
|
d25a439bd4
|
more changes
|
2021-06-01 10:53:58 -04:00 |
|
Jason Ertel
|
ed8c85df2b
|
Only sync web users if teh sqlite db exists
|
2021-06-01 10:26:33 -04:00 |
|
Josh Patterson
|
c4ae8c3418
|
Merge pull request #4359 from Security-Onion-Solutions/pipeline_userpass
generate pillar file if auth enabled or not
|
2021-06-01 09:38:34 -04:00 |
|
m0duspwnens
|
f87dce8ec1
|
generate pillar file if auth enabled or not
|
2021-06-01 09:38:07 -04:00 |
|
Josh Patterson
|
5d2f1c8e11
|
Merge pull request #4357 from Security-Onion-Solutions/pipeline_userpass
fix logic
|
2021-06-01 08:36:48 -04:00 |
|
m0duspwnens
|
1aa2852ed6
|
fix logic
|
2021-06-01 08:35:43 -04:00 |
|
Jason Ertel
|
a42a406f53
|
Remove extra users file mounts; disable elastic anon access when auth enabled
|
2021-05-29 07:52:08 -04:00 |
|
Jason Ertel
|
47b56e78b3
|
Fix missing endif
|
2021-05-28 20:07:51 -04:00 |
|
Josh Patterson
|
52db7b32ef
|
Merge pull request #4335 from Security-Onion-Solutions/pipeline_userpass
fix logic on password created in pillar and fix how me manage
|
2021-05-28 18:29:59 -04:00 |
|
m0duspwnens
|
3aad5a30e9
|
fix logic on password created in pillar and fix how me manage
|
2021-05-28 18:28:53 -04:00 |
|
Jason Ertel
|
b8a10f2e86
|
Support multiple elastic system users
|
2021-05-28 15:59:51 -04:00 |
|
m0duspwnens
|
edf60f80f7
|
manager and common states now require elasticsearch.auth state
|
2021-05-28 15:26:26 -04:00 |
|
m0duspwnens
|
68abaa5e3c
|
update auth.map and curl.config to use new elasticsearch:auth pillar format
|
2021-05-28 14:03:21 -04:00 |
|
m0duspwnens
|
63b31de2b8
|
add additional users - manage file if user name isnt returned from grepping the file
|
2021-05-28 13:58:03 -04:00 |
|
m0duspwnens
|
18926009d3
|
remove unneeded curl.config template
|
2021-05-28 10:38:06 -04:00 |
|
doug
|
ada8255af0
|
bump version to 7.13.0
|
2021-05-28 08:59:40 -04:00 |
|
m0duspwnens
|
423793ecf9
|
remove vault pg from testing
|
2021-05-27 13:50:22 -04:00 |
|
m0duspwnens
|
0134ceef16
|
merge and resolve conflict in elasticsearch state
|
2021-05-27 11:33:44 -04:00 |
|
m0duspwnens
|
dc8520df42
|
user curl.config for curl and elasticscripts
|
2021-05-26 18:04:30 -04:00 |
|
doug
|
aeea5701e4
|
completely disable both alerts.actions.json and hunt.actions.json
|
2021-05-26 16:34:05 -04:00 |
|
m0duspwnens
|
7263e35a89
|
happy little comment
|
2021-05-26 14:52:59 -04:00 |
|
m0duspwnens
|
4d991d3773
|
propogate users and users_roles
|
2021-05-26 14:52:10 -04:00 |
|
doug
|
ee675546ac
|
add menu.actions.json and update soc.json
|
2021-05-26 14:09:00 -04:00 |
|
Jason Ertel
|
b43e6c5d6b
|
Salt will handle auto-sync
|
2021-05-26 13:51:24 -04:00 |
|
Jason Ertel
|
c531ef0773
|
Move user sync'd files to saltstack for grid propagation
|
2021-05-26 13:44:30 -04:00 |
|