Commit Graph

  • a11e78176f Merge pull request #13587 from Security-Onion-Solutions/fix/hotfix_date weslambert 2024-08-30 16:21:03 -04:00
  • db4c373c45 Merge pull request #13586 from Security-Onion-Solutions/fix/so-system-mappings weslambert 2024-08-30 16:20:28 -04:00
  • 5be17330d1 Update HOTFIX #13587 weslambert 2024-08-30 16:14:42 -04:00
  • a7de6993f9 Add so-system-mappings #13586 weslambert 2024-08-30 16:11:41 -04:00
  • d7446c2a3f Merge pull request #13574 from Security-Onion-Solutions/sureload Mike Reeves 2024-08-30 12:50:41 -04:00
  • f319f0803a Merge pull request #13583 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2024-08-30 11:31:52 -04:00
  • 9eb76a95ca Update 2-4.yml #13583 Doug Burks 2024-08-30 11:25:51 -04:00
  • afcb30be03 Threhsolds require a restart #13574 Mike Reeves 2024-08-30 09:43:35 -04:00
  • b9f817201c Add thresholds to the reload list Mike Reeves 2024-08-30 09:15:25 -04:00
  • f17e3e91ec Merge pull request #13577 from Security-Onion-Solutions/TOoSmOotH-patch-1 Mike Reeves 2024-08-29 16:32:58 -04:00
  • 121a64ba57 Update VERSION #13577 Mike Reeves 2024-08-29 16:31:43 -04:00
  • a9f2dfc4b8 Merge pull request #13576 from Security-Onion-Solutions/2.4/dev 2.4.100-20240829 Mike Reeves 2024-08-29 16:18:20 -04:00
  • b7e047d149 Merge pull request #13575 from Security-Onion-Solutions/2.4.100 #13576 Mike Reeves 2024-08-29 15:46:15 -04:00
  • f69137b38d 2.4.100 #13575 Mike Reeves 2024-08-29 15:43:42 -04:00
  • aaa48f6a1a support for fleet, heavynode, receiver, idh m0duspwnens 2024-08-29 13:41:58 -04:00
  • edce5186b9 Add support to relaod rules instead of restart Mike Reeves 2024-08-29 12:55:06 -04:00
  • 306bd8faaa Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into 2.4/dev Mike Reeves 2024-08-29 12:39:41 -04:00
  • 0766a5da91 change to LSHEAP. LSHOSTNAME from id grain m0duspwnens 2024-08-28 16:59:24 -04:00
  • 9746f6e5e2 Merge pull request #13570 from Security-Onion-Solutions/2.4/ignore-logstash-err Josh Brower 2024-08-28 16:51:35 -04:00
  • 89a1e2500e Exclude logstash startup errors #13570 DefensiveDepth 2024-08-28 16:50:11 -04:00
  • 267d1a27ac use cron instead of schedule for vm init. ensure vm shutdown m0duspwnens 2024-08-28 15:52:14 -04:00
  • f5e6e49075 set initial schedule for vm to deal with possible manager firewall state.apply delay m0duspwnens 2024-08-28 14:12:23 -04:00
  • d44ce0a070 add so-salt-cloud as salt-cloud wrapper m0duspwnens 2024-08-28 12:41:38 -04:00
  • 9ddccba780 LSHEAP and pipeline workers for virt m0duspwnens 2024-08-28 10:09:42 -04:00
  • 394ce29ea3 Merge pull request #13565 from Security-Onion-Solutions/jertel/an2 Jason Ertel 2024-08-28 09:39:44 -04:00
  • f19a35ff06 move custom alerters to subgroup; avoid false positives on log check #13565 Jason Ertel 2024-08-28 09:32:25 -04:00
  • 8943e88ca8 Merge pull request #13562 from Security-Onion-Solutions/fix/evtx_pipelines weslambert 2024-08-27 13:12:10 -04:00
  • 18774aa0a7 Merge pull request #13561 from Security-Onion-Solutions/jertel/an2 Jason Ertel 2024-08-27 13:09:20 -04:00
  • af80a78406 Update pipeline version #13562 weslambert 2024-08-27 13:08:35 -04:00
  • 6043da4424 annotation updates #13561 Jason Ertel 2024-08-27 13:04:43 -04:00
  • 301894f6e8 script to fix libvirt in salt 3006.2+ m0duspwnens 2024-08-27 09:42:11 -04:00
  • a425a7fda2 update docker modules for 3006.9 m0duspwnens 2024-08-27 09:37:23 -04:00
  • 21c3835322 salt3006.9, redo reactors, use virt.shutdown m0duspwnens 2024-08-27 09:25:40 -04:00
  • 75086bac7f Merge pull request #13556 from Security-Onion-Solutions/2.4/fixpolicyload Josh Brower 2024-08-26 16:49:54 -04:00
  • 726df310ee Add context #13556 DefensiveDepth 2024-08-26 16:15:56 -04:00
  • b952728b2c Fix policy load DefensiveDepth 2024-08-26 15:57:21 -04:00
  • 1cac2ff1d4 Merge pull request #13554 from Security-Onion-Solutions/fix/ilm_soc_logs weslambert 2024-08-26 12:54:03 -04:00
  • a93c77a1cc Merge pull request #13548 from Security-Onion-Solutions/fix/global_custom weslambert 2024-08-26 10:42:12 -04:00
  • dd09f5b153 Add so-soc-logs #13554 weslambert 2024-08-26 10:32:27 -04:00
  • 4c10282f40 add es version to annotation Josh Patterson 2024-08-26 09:37:19 -04:00
  • 29f996de66 Merge pull request #13547 from Security-Onion-Solutions/2.4/soupchanges Josh Brower 2024-08-23 13:56:05 -04:00
  • c575e02fbb Use correct name #13547 DefensiveDepth 2024-08-23 13:52:20 -04:00
  • e96a0108c3 Add global@custom #13548 weslambert 2024-08-23 13:05:34 -04:00
  • e86fce692c Merge remote-tracking branch 'origin/2.4/dev' into 2.4/soupchanges DefensiveDepth 2024-08-23 11:44:39 -04:00
  • 8d35c7c139 Merge branch '2.4/soupchanges' of https://github.com/Security-Onion-Solutions/securityonion into 2.4/soupchanges DefensiveDepth 2024-08-23 11:37:16 -04:00
  • 0a5725a62e Refactor for Elastic Upgrade DefensiveDepth 2024-08-23 11:36:47 -04:00
  • 1c6f5126db Merge pull request #13546 from Security-Onion-Solutions/reyesj2/kfano Jorge Reyes 2024-08-23 09:50:08 -04:00
  • 1ec5e3bf2a add kafka.id to common ingest pipeline #13546 reyesj2 2024-08-23 09:47:21 -04:00
  • d29727c869 Merge pull request #13540 from Security-Onion-Solutions/jertel/an2 Jason Ertel 2024-08-22 18:17:23 -04:00
  • eabb894580 exclude all logstash errors related to license manager init log line #13540 Jason Ertel 2024-08-22 17:52:37 -04:00
  • 96339f0de6 Merge pull request #13537 from Security-Onion-Solutions/fix/elastic_template_check weslambert 2024-08-22 10:46:49 -04:00
  • d7e3e134a5 Check Elasticsearch for template #13537 weslambert 2024-08-22 10:33:13 -04:00
  • dfb0ff7a98 Merge pull request #13535 from Security-Onion-Solutions/jertel/an2 Jason Ertel 2024-08-22 09:19:43 -04:00
  • 48f1e24bf5 notification updates #13535 Jason Ertel 2024-08-22 09:04:43 -04:00
  • cf47508185 notification updates Jason Ertel 2024-08-22 09:02:32 -04:00
  • 2a024039bf Merge pull request #13528 from Security-Onion-Solutions/fix/detections_alerts_ilm weslambert 2024-08-21 14:50:10 -04:00
  • 212cc478de Change back to so #13528 weslambert 2024-08-21 14:39:24 -04:00
  • 88ea60df2a Fix name weslambert 2024-08-21 14:38:57 -04:00
  • c1b7232a88 Fix for detections-alerts weslambert 2024-08-21 14:38:29 -04:00
  • 04577a48be Merge pull request #13530 from Security-Onion-Solutions/raidtools Mike Reeves 2024-08-21 14:33:40 -04:00
  • 18ef37a2d0 Merge pull request #13531 from Security-Onion-Solutions/fix/elastic_templates_fleet_package_check weslambert 2024-08-21 14:28:12 -04:00
  • 4108e67178 Check for endpoint package #13531 weslambert 2024-08-21 14:22:28 -04:00
  • ff479de7bd Add support for new appliance raid controllers #13530 Mike Reeves 2024-08-21 14:10:24 -04:00
  • 4afac201b9 Change ILM policy name weslambert 2024-08-21 13:25:26 -04:00
  • c30537fe6a Ensure endpoint is installed weslambert 2024-08-21 13:00:04 -04:00
  • 7fbf448b22 fail if no defaults file m0duspwnens 2024-08-21 11:36:06 -04:00
  • cd9c9a25d3 reference elastic versions from defaults m0duspwnens 2024-08-21 11:25:56 -04:00
  • da1671fdf1 add get_elastic_agent_vars function m0duspwnens 2024-08-21 11:25:33 -04:00
  • 1ed73b6f8e Merge pull request #13526 from Security-Onion-Solutions/feature/tenable_io weslambert 2024-08-21 09:03:33 -04:00
  • 3d61897522 ref es version from defaults for kibana m0duspwnens 2024-08-21 08:51:35 -04:00
  • f01825166d Update Fleet Server policy DefensiveDepth 2024-08-21 08:31:37 -04:00
  • d110503639 example pilalr m0duspwnens 2024-08-20 15:27:19 -04:00
  • 64bf7eb363 hyper m0duspwnens 2024-08-20 15:26:05 -04:00
  • 07f8bda27e Update agent DefensiveDepth 2024-08-20 15:23:31 -04:00
  • e3ecc9d4be Directly manage the Fleet Server integration config DefensiveDepth 2024-08-20 15:06:16 -04:00
  • ca209ed54c Disable auto-upgrade DefensiveDepth 2024-08-20 09:14:08 -04:00
  • 205560cc95 updates m0duspwnens 2024-08-20 08:31:46 -04:00
  • df6ff027b5 Remove unneeded elastic upgrade config DefensiveDepth 2024-08-19 16:05:27 -04:00
  • e772497e12 Merge pull request #13511 from Security-Onion-Solutions/fix/logcheck_unprovisioned weslambert 2024-08-16 14:48:56 -04:00
  • 205bbd9c61 Use more specific match #13511 weslambert 2024-08-16 14:31:11 -04:00
  • 224bc6b429 Ignore old SOC logs before licenseStatus weslambert 2024-08-16 14:15:10 -04:00
  • 7698243caf fix reactors m0duspwnens 2024-08-16 13:37:44 -04:00
  • 67f0934930 set new bridge m0duspwnens 2024-08-16 12:21:41 -04:00
  • 30e998edf7 bridge and pools m0duspwnens 2024-08-16 11:58:49 -04:00
  • dc197f6a5c Add tenable settings #13526 weslambert 2024-08-15 23:06:53 -04:00
  • f182833a8d Add tenable_io weslambert 2024-08-15 23:03:32 -04:00
  • 61ab1f1ef2 Add tenable_io templates weslambert 2024-08-15 23:03:07 -04:00
  • e664f2df28 Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into 2.4/dev Mike Reeves 2024-08-15 15:35:20 -04:00
  • dea582f24a Merge pull request #13487 from Security-Onion-Solutions/2.4/logcheck Josh Brower 2024-08-15 11:57:59 -04:00
  • b860bf753a Add influxdb known error #13487 DefensiveDepth 2024-08-15 11:50:34 -04:00
  • b5690f6879 Merge pull request #13483 from Security-Onion-Solutions/TOoSmOotH-patch-2 Mike Reeves 2024-08-15 09:36:30 -04:00
  • a39ad55578 Update registry version #13483 Mike Reeves 2024-08-15 09:34:20 -04:00
  • 4c276d1211 Merge pull request #13482 from Security-Onion-Solutions/fix/cluster_space_total_field weslambert 2024-08-15 08:29:39 -04:00
  • 5f74b1b730 Update column number because of changes to API #13482 weslambert 2024-08-15 08:26:56 -04:00
  • b9040eb0de Merge pull request #13481 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2024-08-15 08:20:09 -04:00
  • ab63d5dbdb Update so-elasticsearch-cluster-space-used for changes in _cat/allocation API #13481 Doug Burks 2024-08-15 08:01:22 -04:00
  • f233f13637 Merge pull request #13478 from Security-Onion-Solutions/fixsurivars Josh Patterson 2024-08-13 15:52:11 -04:00
  • c8a8236401 handle suricata network and port vars as string or list #13478 m0duspwnens 2024-08-13 15:44:08 -04:00
  • 2a35e45920 hyper m0duspwnens 2024-08-13 13:17:09 -04:00
  • aa5de9f7bd cloud profiles and providers. libvirt net setup m0duspwnens 2024-08-13 10:17:45 -04:00