Corey Ogburn
ad0b0a5e95
Refactor to String
...
To accomodate the config screen, the annotation now specifies it as a multiline string with a yaml syntax. The user can edit the yaml to add or remove queries. The UI will parse the YAML before use.
Also updated the IntegrityFailure queries to specify table columns more relevant to a sync failure than the default ones.
2024-10-24 11:18:47 -06:00
Corey Ogburn
c77b0afd8e
Move to Client/Detections
...
Added a basic annotation.
2024-10-24 11:18:47 -06:00
Corey Ogburn
04ebe4efea
Array to Dictionary
2024-10-24 11:18:46 -06:00
Corey Ogburn
cbb4d6846f
Detection Engine Status Queries
...
A few for testing
2024-10-24 11:18:45 -06:00
m0duspwnens
a0558ace16
replace: False to remove state warning
2024-10-24 10:33:16 -04:00
m0duspwnens
ca793966a8
set retry and interval to remove state warning
2024-10-24 10:32:42 -04:00
Jason Ertel
d9273ec369
exec bit
2024-10-24 09:40:47 -04:00
Jason Ertel
cacd5b0643
connect
2024-10-24 09:36:09 -04:00
Jason Ertel
7c405ff9d7
connect
2024-10-24 08:47:52 -04:00
Jason Ertel
5e6dd2e8b3
connect
2024-10-23 16:49:02 -04:00
Josh Patterson
578a18acbe
Merge pull request #13853 from Security-Onion-Solutions/agcr
...
install createrepo for airgap
2024-10-23 14:21:26 -04:00
m0duspwnens
8cc530dd4c
fix HELD for debian families
2024-10-23 09:36:17 -04:00
m0duspwnens
1df104967e
fix pkg name
2024-10-22 16:50:23 -04:00
m0duspwnens
7a0f6d5e93
fix pkg name
2024-10-22 16:42:01 -04:00
m0duspwnens
8d2ae23ae6
install createrepo on airgap and non airgap
2024-10-22 13:56:38 -04:00
m0duspwnens
0476585370
dynamic annotations
2024-10-22 09:03:02 -04:00
m0duspwnens
4d093735ec
prevent state from failing if versionlock plugin not installed
2024-10-18 14:41:23 -04:00
m0duspwnens
39230159ae
update description
2024-10-17 12:10:49 -04:00
Jason Ertel
4611ef3713
connect wip
2024-10-17 11:39:36 -04:00
Jason Ertel
1537b69457
connect wip
2024-10-17 11:25:40 -04:00
Jason Ertel
25fe83cd40
connect wip
2024-10-17 11:22:10 -04:00
Jason Ertel
435b9b14e3
connect wip
2024-10-17 10:49:39 -04:00
m0duspwnens
76ff0c56cd
create versionlock pillar dir/files during soup to 120
2024-10-17 10:06:40 -04:00
m0duspwnens
17870bcab8
Merge remote-tracking branch 'origin/2.4/dev' into issue/204
2024-10-17 09:59:36 -04:00
m0duspwnens
5fb660bc9a
remove kernel bool option, just use list
2024-10-17 09:29:03 -04:00
Jason Ertel
f713dbacf8
connect
2024-10-16 17:53:57 -04:00
m0duspwnens
73ce526467
allow users to lock pkgs from upgrade
2024-10-16 17:06:03 -04:00
reyesj2
322199358d
add support for trendmicro integration
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2024-10-16 16:45:46 -04:00
defensivedepth
dcdfaf66f4
Add process and file creation mappings
2024-10-16 15:20:52 -04:00
Jason Ertel
d8546bf747
connect upgrade
2024-10-16 14:59:15 -04:00
Jason Ertel
1e5bf3aa98
connect upgrade
2024-10-16 14:21:11 -04:00
Jason Ertel
647f057714
Merge branch '2.4/dev' into jertel/wip
2024-10-16 13:44:20 -04:00
Jason Ertel
523ff66389
connect work
2024-10-16 13:44:01 -04:00
Jason Ertel
15c32f9103
connect routes
2024-10-16 12:33:14 -04:00
Jason Ertel
12168531a1
avoid double SSO clicks on initial OIDC login
2024-10-16 12:33:03 -04:00
coreyogburn
a3933bdc79
Merge pull request #13826 from Security-Onion-Solutions/cogburn/ai-switch-flip
...
Changes to allow reviews to start showing
2024-10-15 16:03:18 -06:00
m0duspwnens
ce6c7c3b91
Merge remote-tracking branch 'origin/2.4/dev' into issue/13808
2024-10-15 13:14:18 -04:00
m0duspwnens
c2e46932ee
fix array def
2024-10-15 12:01:53 -04:00
m0duspwnens
c46fb7e74c
check if service is running before trying to start it
2024-10-15 11:46:09 -04:00
m0duspwnens
ac6637c6ab
set vars global
2024-10-15 09:56:50 -04:00
m0duspwnens
cc19b60146
restore services/top at start of soup
2024-10-15 09:32:14 -04:00
m0duspwnens
dcc1738978
dynamic annotations
2024-10-11 10:46:07 -04:00
Corey Ogburn
d2bd9c0e26
Changes to allow reviews to start showing
2024-10-10 09:48:59 -06:00
Mike Reeves
e2da31c2b7
Update soup
2024-10-09 14:15:43 -04:00
weslambert
c58ed45cf0
Use ID instead of name
2024-10-08 10:55:16 -04:00
weslambert
69857b6b5c
Use ID instead of name
2024-10-08 10:54:54 -04:00
m0duspwnens
0b0ff62bc5
update comments
2024-10-08 09:40:44 -04:00
m0duspwnens
20127e6b1d
hard-reset to the remote revision
2024-10-01 15:09:53 -04:00
m0duspwnens
24817a3919
user socore
2024-10-01 09:21:56 -04:00
Jason Ertel
f448cc9c7d
Merge pull request #13757 from Security-Onion-Solutions/jertel/wip
...
adjustments for support of PKCE OIDC
2024-10-01 08:58:26 -04:00