Wes Lambert
|
b2db32a2c7
|
Add function/test for non-existent VT api_key
|
2022-04-21 17:33:24 +00:00 |
|
Wes Lambert
|
9287d6adf7
|
Reduce size of test output for test
|
2022-04-21 16:56:22 +00:00 |
|
Wes Lambert
|
c8e189f35a
|
Add source-packages for JA3er
|
2022-04-21 16:46:45 +00:00 |
|
Wes Lambert
|
5afcc8de4f
|
Add JA3er analyzer and associated test
|
2022-04-21 16:42:46 +00:00 |
|
weslambert
|
d7eed52fae
|
Change -f to -r
|
2022-04-21 09:46:44 -04:00 |
|
Doug Burks
|
2910b56ea1
|
Merge pull request #7835 from Security-Onion-Solutions/elastic-7.17.3
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 09:02:51 -04:00 |
|
Doug Burks
|
e608285341
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:57:08 -04:00 |
|
Doug Burks
|
04856540dc
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:54:09 -04:00 |
|
Doug Burks
|
feb7eeeb8e
|
UPGRADE: Elastic 7.17.3 #7807
|
2022-04-21 08:47:40 -04:00 |
|
Doug Burks
|
44f4b1da7f
|
Merge pull request #7832 from Security-Onion-Solutions/fix/prevent-multiple-instances
FIX: Prevent multiple instances of so-sensor-clean and so-playbook-sync #6622
|
2022-04-20 17:00:09 -04:00 |
|
Doug Burks
|
1edb443c5d
|
so-playbook-sync pgrep should be more strict to avoid multiple matches on Ubuntu
|
2022-04-20 16:48:26 -04:00 |
|
Doug Burks
|
8fc03afdc0
|
so-sensor-clean pgrep should be more strict to avoid matching multiples on Ubuntu
|
2022-04-20 16:47:18 -04:00 |
|
Mike Reeves
|
fe09b5b0d1
|
Merge pull request #7831 from Security-Onion-Solutions/awlocal
Remove setup from auto starting if you choose to not enter the grid
|
2022-04-20 14:42:58 -04:00 |
|
Mike Reeves
|
c3952e94c8
|
Remove setup from auto starting if you choose to not enter the grid
|
2022-04-20 14:36:38 -04:00 |
|
Doug Burks
|
3aac644da5
|
Merge pull request #7830 from Security-Onion-Solutions/dougburks-patch-1
FIX: Improve Zeek file extraction #7829
|
2022-04-20 14:13:13 -04:00 |
|
Doug Burks
|
15ef0968d9
|
FIX: Improve Zeek file extraction #7829
|
2022-04-20 14:01:46 -04:00 |
|
Jason Ertel
|
aeb70dad8f
|
Doc updates
|
2022-04-19 14:31:21 -04:00 |
|
Jason Ertel
|
4129cef9fb
|
Add new spamhaus analyzer
|
2022-04-19 12:12:52 -04:00 |
|
Josh Patterson
|
40d9335573
|
Merge pull request #7822 from Security-Onion-Solutions/workstation_state
add securityonion-strelka-oneshot and securityonion-strelka-fileshot to workstation
|
2022-04-19 09:21:35 -04:00 |
|
m0duspwnens
|
807f6adf1e
|
add securityonion-strelka-oneshot and securityonion-strelka-fileshot to workstation
|
2022-04-19 09:19:09 -04:00 |
|
Doug Burks
|
6339ee3bf3
|
Merge pull request #7818 from Security-Onion-Solutions/dougburks-patch-1
Slight change to IDH verbiage in so-whiptail
|
2022-04-18 16:35:22 -04:00 |
|
Doug Burks
|
5d62ece03b
|
Slight change to IDH verbiage in so-whiptail
|
2022-04-18 16:33:54 -04:00 |
|
Doug Burks
|
6905ca276a
|
Merge pull request #7816 from Security-Onion-Solutions/dougburks-patch-1
remove old comments from so-whiptail
|
2022-04-18 11:30:43 -04:00 |
|
Doug Burks
|
3682754399
|
remove old comments from so-whiptail
|
2022-04-18 11:29:46 -04:00 |
|
Jason Ertel
|
0cb73d8f6a
|
Merge branch 'dev' into kilo
|
2022-04-18 11:04:32 -04:00 |
|
Mike Reeves
|
186258687e
|
Merge pull request #7815 from Security-Onion-Solutions/awlocal
Fix Analyst Install Loop
|
2022-04-18 11:04:10 -04:00 |
|
Mike Reeves
|
012ff3e1bc
|
Fix Analyst Install Loop
|
2022-04-18 11:02:19 -04:00 |
|
Josh Brower
|
891a197a6a
|
Merge pull request #7814 from Security-Onion-Solutions/defensivedepth-patch-2
Fix ES/LS Log Pruning
|
2022-04-18 10:45:27 -04:00 |
|
Josh Brower
|
b35b505f0a
|
Fix pattern matching
|
2022-04-18 10:39:04 -04:00 |
|
Josh Brower
|
2b39570b08
|
Fix matching logic
|
2022-04-18 10:37:38 -04:00 |
|
Jason Ertel
|
159122b52c
|
Merge branch 'dev' into kilo
|
2022-04-18 10:11:37 -04:00 |
|
Doug Burks
|
3fb7399000
|
Merge pull request #7813 from Security-Onion-Solutions/dougburks-patch-1
Remove distributed verbiage from other node option in so-whiptail
|
2022-04-18 08:24:52 -04:00 |
|
Doug Burks
|
400879c079
|
Remove distributed verbiage from other node option in so-whiptail
|
2022-04-18 07:53:57 -04:00 |
|
Doug Burks
|
62f3f13bbc
|
Merge pull request #7803 from Security-Onion-Solutions/dougburks-patch-1
move thehive removal from up_to_2.3.120 to post_to_2.3.120
|
2022-04-15 15:48:12 -04:00 |
|
Doug Burks
|
0eda9a3bd7
|
move thehive removal from up_to_2.3.120 to post_to_2.3.120
|
2022-04-15 15:45:01 -04:00 |
|
Doug Burks
|
ee00678362
|
Merge pull request #7802 from Security-Onion-Solutions/dougburks-patch-1
Replace old saltstack repo in so-preflight
|
2022-04-15 13:17:14 -04:00 |
|
Doug Burks
|
ce192c2526
|
Update so-preflight
|
2022-04-15 13:11:15 -04:00 |
|
Josh Brower
|
d60d31f723
|
Merge pull request #7801 from Security-Onion-Solutions/defensivedepth-patch-1
Remove thehive entries from so-status
|
2022-04-15 12:25:21 -04:00 |
|
Josh Brower
|
bd19da1878
|
Remove thehive entries from so-status
|
2022-04-15 12:21:56 -04:00 |
|
Doug Burks
|
f461d01961
|
Merge pull request #7800 from Security-Onion-Solutions/dougburks-patch-1
Improve grammar in so-whiptail
|
2022-04-15 10:52:29 -04:00 |
|
Doug Burks
|
a69d361d1b
|
Improve grammar in so-whiptail
|
2022-04-15 10:45:34 -04:00 |
|
Josh Brower
|
19cba9dca9
|
Merge pull request #7798 from Security-Onion-Solutions/awlocal
Make analyst iso install init management interface
|
2022-04-15 07:26:53 -04:00 |
|
Mike Reeves
|
5081a81a6c
|
Make analyst iso install init management interface
|
2022-04-14 20:00:58 -04:00 |
|
Josh Patterson
|
ba61057433
|
Merge pull request #7796 from Security-Onion-Solutions/fix_analyst_setup
Fix analyst setup
|
2022-04-14 16:12:53 -04:00 |
|
m0duspwnens
|
b8a80f76cf
|
change words
|
2022-04-14 16:09:39 -04:00 |
|
Josh Patterson
|
be2573bb7d
|
Merge pull request #7794 from Security-Onion-Solutions/soup_salt_influx
remove influxdb module patched state files when salt is upgraded
|
2022-04-14 16:08:10 -04:00 |
|
m0duspwnens
|
36aef87a3c
|
remove cd before running so-setup analyst
|
2022-04-14 16:03:43 -04:00 |
|
m0duspwnens
|
02c19da3c4
|
remove influxdb module patched state files when salt is upgraded
|
2022-04-14 15:00:14 -04:00 |
|
Josh Patterson
|
2d094a3bfc
|
Merge pull request #7784 from Security-Onion-Solutions/workstation_script
modify so-analyst-install to work with new states and install on managers
|
2022-04-13 14:37:24 -04:00 |
|
m0duspwnens
|
371fda09db
|
fix copy paste fail
|
2022-04-13 14:28:05 -04:00 |
|