Commit Graph

424 Commits

Author SHA1 Message Date
Corey Ogburn 5d3fd3d389 AdditionalCA and InsecureSkipVerify
New fields have been added to manager and then duplicated over to SOC's config in the same vein as how proxy was updated earlier this week.

AdditionalCA holds the PEM formatted public keys that should be trusted when making requests. It has been implemented for both Sigma's zip downloads and Sigma and Suricata's repository clones and pulls.

InsecureSkipVerify has been added to help our users troubleshoot their configuration. Setting it to true will not verify the cert on outgoing requests. Self signed, missing, or invalid certs will not throw an error.
2024-06-07 12:47:09 -06:00
Jason Ertel 5600fed9c4 add ability to retrieve yaml values via so-yaml.py; improve so-minion id matching 2024-06-06 11:56:07 -04:00
m0duspwnens debf093c54 Merge remote-tracking branch 'origin/2.4/dev' into salt3006.8 2024-05-30 15:58:10 -04:00
m0duspwnens 7702f05756 upgrade salt 3006.8. soup for 2.4.80 2024-05-30 15:00:32 -04:00
DefensiveDepth 0d034e7adc fix rsync 2024-05-29 10:55:56 -04:00
DefensiveDepth ee4ca0d7a2 Check to see if local exists 2024-05-28 10:24:09 -04:00
DefensiveDepth f68ac23f0e Fix fi
Signed-off-by: DefensiveDepth <Josh@defensivedepth.com>
2024-05-28 10:03:31 -04:00
DefensiveDepth 2a2b86ebe6 Dont overwrite 2024-05-28 09:43:45 -04:00
DefensiveDepth 74dfc25376 backup local rules 2024-05-28 09:29:10 -04:00
DefensiveDepth 81ee60e658 Backup .yml files too 2024-05-28 06:42:18 -04:00
DefensiveDepth 58b565558d Dont bail - just wait for enter 2024-05-24 16:21:59 -04:00
Mike Reeves ab9ec2ec6b Update soup 2024-05-15 18:04:01 -04:00
m0duspwnens 8076ea0e0a add another space 2024-05-15 16:34:05 -04:00
m0duspwnens 3a56058f7f update description 2024-05-15 15:31:31 -04:00
m0duspwnens 62a8024c6c Merge remote-tracking branch 'origin/2.4/dev' into issue/13012 2024-05-15 13:48:46 -04:00
m0duspwnens ea253726a0 fix soup 2024-05-15 13:48:32 -04:00
Mike Reeves e3a0847867 Update soup 2024-05-15 11:31:41 -04:00
m0duspwnens 51862e5803 remove idh.services from idh node pillar files 2024-05-14 13:08:51 -04:00
weslambert 6dec9b4cf7 Merge pull request #12986 from Security-Onion-Solutions/fix/old_strelka
Remove old Strelka configuration for YARA
2024-05-14 09:27:19 -04:00
weslambert 13062099b3 Remove YARA script update and reference to exclusions 2024-05-13 18:04:16 -04:00
Josh Patterson 437d0028db Merge pull request #13003 from Security-Onion-Solutions/localdirs
create local directories during soup if needed
2024-05-13 16:33:04 -04:00
m0duspwnens 649f52dac7 create_local_directories in soup too 2024-05-13 10:37:56 -04:00
Mike Reeves 9d6f6c7893 Update soup 2024-05-13 10:09:35 -04:00
Mike Reeves 6c71c45ef6 Update soup 2024-05-13 09:55:57 -04:00
Mike Reeves 641899ad56 Backup Suricata for migration and remove advanced from reverselookups 2024-05-13 09:50:14 -04:00
Jason Ertel 154dc605ef Merge pull request #12994 from Security-Onion-Solutions/jertel/testcy
support upgrade tests
2024-05-10 16:57:19 -04:00
Jason Ertel 2a0e33401d support upgrade tests 2024-05-10 16:54:50 -04:00
Wes ea4cf42913 Remove old YARA update script 2024-05-09 17:26:54 +00:00
Wes 8a34f5621c Remove old YARA download script 2024-05-09 17:26:45 +00:00
Josh Patterson 796eefc2f0 Merge pull request #12965 from Security-Onion-Solutions/orchit
searchnode installation improvements
2024-05-08 10:24:33 -04:00
DefensiveDepth 6d2ecce9b7 remove old yara airgap code 2024-05-08 08:43:37 -04:00
m0duspwnens dcc1f656ee predownload logstash and elastic for new searchnode and heavynode 2024-05-07 10:13:51 -04:00
m0duspwnens bdf1b45a07 redirect and throw in bg 2024-05-03 14:54:44 -04:00
m0duspwnens 3d4fd59a15 orchit 2024-05-03 13:48:51 -04:00
m0duspwnens bbc374b56e add logic in orch 2024-05-03 09:56:52 -04:00
m0duspwnens e9b1263249 orchestate searchnode deployment 2024-05-02 16:32:43 -04:00
Josh Brower 1d7e47f589 Merge pull request #12682 from Security-Onion-Solutions/2.4/soup-playbook
2.4/soup playbook
2024-04-04 11:28:09 -04:00
Mike Reeves 54fce4bf8f 2.3 updates 2024-04-04 09:21:16 -04:00
DefensiveDepth c2f7f7e3a5 Remove dup line 2024-04-04 08:52:30 -04:00
DefensiveDepth 07cb0c7d46 Merge remote-tracking branch 'origin/2.4/dev' into 2.4/soup-playbook 2024-04-04 08:51:09 -04:00
Mike Reeves 14c824143b Attempt to fix 2.3 when main repo changes 2024-04-04 08:48:44 -04:00
Mike Reeves 12da7db22c Attempt to fix 2.3 when main repo changes 2024-04-03 15:38:23 -04:00
Mike Reeves 9c59f42c16 Attempt to fix 2.3 when main repo changes 2024-04-03 15:23:09 -04:00
Mike Reeves 9db9af27ae Attempt to fix 2.3 when main repo changes 2024-04-03 15:14:50 -04:00
Jason Ertel 3e05c04aa1 Merge pull request #12731 from Security-Onion-Solutions/jertel/ana
SOC Telemetry
2024-04-03 14:51:41 -04:00
Jason Ertel 8f8896c505 fix link 2024-04-03 14:45:39 -04:00
Jason Ertel 941a841da0 fix link 2024-04-03 14:41:57 -04:00
Jason Ertel 2b8a051525 fix link 2024-04-03 14:30:09 -04:00
Jason Ertel c4767bfdc8 suppress soup update output for cleaner console 2024-04-03 10:28:43 -04:00
Jason Ertel 5f4a0fdfad suppress soup update output for cleaner console 2024-04-03 10:26:48 -04:00