Jason Ertel
|
719d841353
|
Update saved objects
|
2021-06-02 20:15:03 -04:00 |
|
Jason Ertel
|
fa6af06204
|
Avoid running highstate during setup when flipping auth flag
|
2021-06-02 17:13:59 -04:00 |
|
weslambert
|
cba719b3a0
|
Remove extra comma
|
2021-06-02 16:42:09 -04:00 |
|
weslambert
|
4241bb08b8
|
Add suricata/zeek until we migrate templates
|
2021-06-02 16:37:43 -04:00 |
|
Jason Ertel
|
901242f7e9
|
remove extra parenthesis
|
2021-06-02 16:23:45 -04:00 |
|
weslambert
|
4c74e7f308
|
Add event.kind and set name to module[dot]dataset
|
2021-06-02 15:35:26 -04:00 |
|
weslambert
|
db48c15f1d
|
Create event.kind field and rename dataset to be module[dot]dataset
|
2021-06-02 15:33:18 -04:00 |
|
weslambert
|
a1b34e7a88
|
Fix Suricata index name
|
2021-06-02 15:30:14 -04:00 |
|
Jason Ertel
|
fc6b3726a4
|
Fix missing colon for mode
|
2021-06-02 15:23:16 -04:00 |
|
Mike Reeves
|
9c9bcac61b
|
Update DNS queries
|
2021-06-02 15:01:14 -04:00 |
|
Jason Ertel
|
588da4d7dc
|
Resolve salt pillar/state/jinja race condition
|
2021-06-02 14:34:21 -04:00 |
|
Mike Reeves
|
e42db3cd2d
|
Fix some hunt queries
|
2021-06-02 14:05:02 -04:00 |
|
Mike Reeves
|
e8cc88174f
|
Fix some hunt queries
|
2021-06-02 13:55:05 -04:00 |
|
Mike Reeves
|
7b7111e12c
|
Fix some hunt queries
|
2021-06-02 13:53:39 -04:00 |
|
William Wernert
|
b3f2c60065
|
Whiptail title fixes
- Use a variable for the title
- Fix cases where the whiptail title wasn't changed previously
|
2021-06-02 12:38:32 -04:00 |
|
Jason Ertel
|
20e896cacf
|
Update all configs to pass user/pass to ES
|
2021-06-02 12:17:15 -04:00 |
|
William Wernert
|
afbf7de9e3
|
Remove empty lines in iso location prompt
|
2021-06-02 11:05:43 -04:00 |
|
Jason Ertel
|
4ff85ab0c4
|
Merge branch 'dev' into kilo
|
2021-06-02 10:39:51 -04:00 |
|
Jason Ertel
|
dd7388e577
|
Merge pull request #4382 from Security-Onion-Solutions/jertel/timeouts
Increase SOC API timeouts and ES timeout from 2m to 5m
|
2021-06-02 10:28:36 -04:00 |
|
Mike Reeves
|
77f13961ad
|
Merge remote-tracking branch 'remotes/origin/dev' into pipeline
|
2021-06-02 10:12:17 -04:00 |
|
Mike Reeves
|
e00fe0a732
|
Enable for all modes
|
2021-06-02 10:02:11 -04:00 |
|
Jason Ertel
|
c757d21360
|
Increase default SOC API and ES timeouts from 2m to 5m
|
2021-06-02 09:38:59 -04:00 |
|
Jason Ertel
|
3a134cc706
|
fix merge conflicts
|
2021-06-02 09:16:28 -04:00 |
|
Jason Ertel
|
7aede4d058
|
Persist chown/chmod settings on users/roles files
|
2021-06-02 09:01:16 -04:00 |
|
Mike Reeves
|
5983eae3a8
|
fix filebeat module syntax
|
2021-06-01 17:47:13 -04:00 |
|
Josh Patterson
|
9d6dca9c64
|
Merge pull request #4372 from Security-Onion-Solutions/pipeline_userpass
fix typo
|
2021-06-01 17:46:41 -04:00 |
|
m0duspwnens
|
7b68c1bc9b
|
fix typo
|
2021-06-01 17:45:52 -04:00 |
|
Josh Patterson
|
9d905368ca
|
Merge pull request #4371 from Security-Onion-Solutions/pipeline_userpass
Pipeline userpass
|
2021-06-01 17:01:51 -04:00 |
|
m0duspwnens
|
867613669d
|
changes for syncing users
|
2021-06-01 17:01:03 -04:00 |
|
Mike Reeves
|
fd1de624c8
|
Disable TTY for filebeat script
|
2021-06-01 14:50:21 -04:00 |
|
Jason Ertel
|
2a2247e1da
|
Additional so-user sync adjustments
|
2021-06-01 14:45:01 -04:00 |
|
Jason Ertel
|
7a59bee315
|
Add so-elastic-auth script
|
2021-06-01 12:48:53 -04:00 |
|
William Wernert
|
91c8a7c65b
|
Use correct syntax for tar to drop directory structure
|
2021-06-01 12:16:56 -04:00 |
|
Mike Reeves
|
73a0b31380
|
elastic pipeline enable
|
2021-06-01 12:12:20 -04:00 |
|
m0duspwnens
|
ef00695b07
|
fix typo
|
2021-06-01 11:31:50 -04:00 |
|
m0duspwnens
|
bfaffbc87e
|
add reactor and beacon for sqlite db
|
2021-06-01 11:15:28 -04:00 |
|
William Wernert
|
e800d62df4
|
Merge branch 'dev' into fix/update-iso-soup-wording
|
2021-06-01 11:12:17 -04:00 |
|
Josh Patterson
|
6fe765434e
|
Merge pull request #4362 from Security-Onion-Solutions/pipeline_userpass
Pipeline userpass
|
2021-06-01 10:56:29 -04:00 |
|
m0duspwnens
|
7e48740ea7
|
fix merge conflict
|
2021-06-01 10:56:02 -04:00 |
|
m0duspwnens
|
d25a439bd4
|
more changes
|
2021-06-01 10:53:58 -04:00 |
|
Jason Ertel
|
ed8c85df2b
|
Only sync web users if teh sqlite db exists
|
2021-06-01 10:26:33 -04:00 |
|
Josh Patterson
|
c4ae8c3418
|
Merge pull request #4359 from Security-Onion-Solutions/pipeline_userpass
generate pillar file if auth enabled or not
|
2021-06-01 09:38:34 -04:00 |
|
m0duspwnens
|
f87dce8ec1
|
generate pillar file if auth enabled or not
|
2021-06-01 09:38:07 -04:00 |
|
Josh Patterson
|
5d2f1c8e11
|
Merge pull request #4357 from Security-Onion-Solutions/pipeline_userpass
fix logic
|
2021-06-01 08:36:48 -04:00 |
|
m0duspwnens
|
1aa2852ed6
|
fix logic
|
2021-06-01 08:35:43 -04:00 |
|
Jason Ertel
|
a42a406f53
|
Remove extra users file mounts; disable elastic anon access when auth enabled
|
2021-05-29 07:52:08 -04:00 |
|
Jason Ertel
|
47b56e78b3
|
Fix missing endif
|
2021-05-28 20:07:51 -04:00 |
|
Josh Patterson
|
52db7b32ef
|
Merge pull request #4335 from Security-Onion-Solutions/pipeline_userpass
fix logic on password created in pillar and fix how me manage
|
2021-05-28 18:29:59 -04:00 |
|
m0duspwnens
|
3aad5a30e9
|
fix logic on password created in pillar and fix how me manage
|
2021-05-28 18:28:53 -04:00 |
|
Jason Ertel
|
b8a10f2e86
|
Support multiple elastic system users
|
2021-05-28 15:59:51 -04:00 |
|