Commit Graph

9128 Commits

Author SHA1 Message Date
m0duspwnens 5f43380aa0 add firewall rules for syslog 2020-10-21 11:20:34 -04:00
Josh Brower 844ffe8fdf nest case_template 2020-10-21 09:58:31 -04:00
Josh Brower 1e14d66f54 Add case_template field to Playbook alerts 2020-10-21 08:59:26 -04:00
weslambert e2d95e0deb Merge pull request #1576 from Security-Onion-Solutions/fix/comon_nids_rule_ruleset
Change rule_ruleset to rule.ruleset
2020-10-20 22:15:00 -04:00
weslambert 4765ef5f5c Change rule_ruleset to rule.ruleset 2020-10-20 22:14:23 -04:00
William Wernert d63358c8f0 [fix] Correct pillar reference + nginx errors 2020-10-20 14:30:06 -04:00
Jason Ertel d37ddf584a Correct quick action defaults 2020-10-20 14:12:23 -04:00
jtgreen-cse eaa41266a2 fix for rendering error >1 search node
Fails rendering if you have more than one search node.
2020-10-20 13:24:53 -04:00
Mike Reeves 4a9fcfb8cf Fix missing quote 2020-10-20 13:17:40 -04:00
Mike Reeves a119d8f27d Fix config for airgap installs 2020-10-20 11:28:49 -04:00
Mike Reeves 87adbb5f81 printf issues 2020-10-19 17:20:33 -04:00
Mike Reeves 722f2b3913 Fix pillar syntax 2020-10-19 17:08:06 -04:00
Mike Reeves 3cb419174a Fix pillar syntax 2020-10-19 17:04:06 -04:00
Mike Reeves 55b6f5ce99 Fix pillar syntax 2020-10-19 17:02:26 -04:00
Mike Reeves 4e1bff2231 Fix pillar syntax 2020-10-19 16:56:13 -04:00
Mike Reeves 7e0063d474 Fix pillar syntax 2020-10-19 16:55:11 -04:00
Mike Reeves 23bc5e303e Add clustering to ES function 2020-10-19 16:52:43 -04:00
Mike Reeves 6f703fad25 Change whiptail logic 2020-10-19 16:44:43 -04:00
Mike Reeves c538e5f85b Change whiptail logic 2020-10-19 16:40:56 -04:00
Mike Reeves c22e8c08a6 Change whiptail logic 2020-10-19 16:40:22 -04:00
Mike Reeves f893cf203f Change whiptail logic 2020-10-19 16:38:17 -04:00
Mike Reeves bbb825a207 Add cluster whiptail questions 2020-10-19 16:33:40 -04:00
Josh Patterson ba1dfcd774 Merge pull request #1554 from Security-Onion-Solutions/issue/1551
Issue/1551
2020-10-19 16:10:50 -04:00
m0duspwnens 10e4248cfc and node that gets filebeat state now can listen for syslog - https://github.com/Security-Onion-Solutions/securityonion/issues/1551 2020-10-19 16:10:20 -04:00
Mike Reeves bab6b151ff Add cluster whiptail questions 2020-10-19 16:07:22 -04:00
William Wernert 42e285cfbe Merge branch 'dev' into feature/nginx-update
# Conflicts:
#	salt/nginx/etc/nginx.conf
#	salt/nginx/etc/nginx.conf.so-eval
#	salt/nginx/etc/nginx.conf.so-manager
#	salt/nginx/etc/nginx.conf.so-standalone
2020-10-19 13:25:46 -04:00
Mike Reeves 97a2d91d15 Re-arrange whiptail screens 2020-10-19 12:14:30 -04:00
m0duspwnens 79854f111e add 514 tcp listener to filebeat docker and add syslog listener to fb config for manager and manager search - https://github.com/Security-Onion-Solutions/securityonion/issues/1551 2020-10-19 10:27:40 -04:00
Josh Patterson a05329e7d8 Merge pull request #1532 from Masaya-A/patch-1
Grafana /nsm fix for eval/standalone
2020-10-16 16:48:12 -04:00
Masaya-A 47652ac080 Update eval.json 2020-10-17 04:45:12 +09:00
Masaya-A 964919109d Update standalone.json 2020-10-17 04:35:39 +09:00
Jason Ertel a968e5c23f Increment version to 2.3.1 2020-10-16 10:57:31 -04:00
Mike Reeves ba7b34a8ce Merge pull request #1529 from Security-Onion-Solutions/dev
2.3.0 GA!
2.3.0
2020-10-16 10:53:53 -04:00
Mike Reeves e2f16d51a6 Update VERIFY_ISO.md 2020-10-15 20:54:11 -04:00
Mike Reeves 42a6693101 Sig File for ISO 2020-10-15 20:36:08 -04:00
Jason Ertel 2326701cc0 Moved known issues underneath new changes 2020-10-15 19:29:33 -04:00
Jason Ertel 6ee37977c3 Fixed quotes and href targets 2020-10-15 19:25:26 -04:00
Mike Reeves 1ae35a39c3 Update changes.json 2020-10-15 19:11:55 -04:00
Mike Reeves 943aa82ce4 Update changes.json 2020-10-15 19:09:46 -04:00
Mike Reeves 131e105106 Update changes.json 2020-10-15 19:07:37 -04:00
Mike Reeves cc56dc5a7f Update changes.json 2020-10-15 19:05:47 -04:00
weslambert 657e251f51 Merge pull request #1528 from Security-Onion-Solutions/fix/kibana_ack
Update Kibana mappings for event ack/eslacation
2020-10-15 14:48:00 -04:00
Wes Lambert d863f26f9d Update Kibana mappings for event ack/eslacation 2020-10-15 18:46:37 +00:00
Mike Reeves a7e0df84bb Update README.md 2020-10-15 14:46:13 -04:00
William Wernert 1fdf431c12 [fix] so-user spelling+syntax fixes
* Consistent ending punctuation
* Consistent capitalization
* Correct comparison operators
2020-10-15 13:44:23 -04:00
Mike Reeves 35b10b1f91 Sensors should clean up their dockers as well 2020-10-15 10:31:51 -04:00
weslambert 36b9450a39 Merge pull request #1526 from Security-Onion-Solutions/fix/kibana_things
Intel mapping enforcement and winlog.verion
2020-10-15 08:43:34 -04:00
Wes Lambert af9daa4d71 Intel mapping enforcement and winlog.verion 2020-10-15 12:42:33 +00:00
weslambert c81ee9621d Merge pull request #1525 from Security-Onion-Solutions/fix/kibana_discover_default
Fix default discover query
2020-10-14 17:44:55 -04:00
Wes Lambert e7401b3e0c Fix default discover query 2020-10-14 21:43:19 +00:00