Commit Graph

  • 7da0ccf5a6 add more endpoint.events.x entries to merged.map.jinja Doug Burks 2024-02-23 15:35:53 -05:00
  • 65cdc1dc86 Merge pull request #12423 from Security-Onion-Solutions/jppfiec Doug Burks 2024-02-23 15:22:16 -05:00
  • 573d565976 convert _x_ to . for soc ui to config #12423 m0duspwnens 2024-02-23 15:03:44 -05:00
  • b8baca417b add endpoint_x_events_x_process to defaults.yaml Doug Burks 2024-02-23 14:03:04 -05:00
  • d04aa06455 Fix source.ip #12430 Josh Brower 2024-02-22 14:01:02 -05:00
  • 1824d7b36d Merge pull request #12416 from Security-Onion-Solutions/TOoSmOotH-patch-2 Mike Reeves 2024-02-22 12:52:36 -05:00
  • e7914fc5a1 Update stenoloss.sh #12416 Mike Reeves 2024-02-22 12:49:06 -05:00
  • 759b2ff59e Manage the repos #12405 Mike Reeves 2024-02-22 10:03:51 -05:00
  • c886e72793 Imphash mappings Josh Brower 2024-02-22 08:59:33 -05:00
  • 0a9022ba6a Add hash mappings Josh Brower 2024-02-21 17:07:08 -05:00
  • d2f7946377 Merge pull request #12411 from Security-Onion-Solutions/issue/12382 Josh Patterson 2024-02-21 16:28:04 -05:00
  • eb3432fb8b Merge pull request #12412 from Security-Onion-Solutions/kilo coreyogburn 2024-02-21 14:08:11 -07:00
  • 927ea0c9ec Update VERSION #12412 Josh Brower 2024-02-21 15:56:12 -05:00
  • 162785575c nest under policy #12411 m0duspwnens 2024-02-21 15:28:24 -05:00
  • 152e7937db Merge pull request #12408 from Security-Onion-Solutions/jertel/24template Jason Ertel 2024-02-21 13:24:34 -05:00
  • 25570e6ec2 add missing template #12408 Jason Ertel 2024-02-21 13:18:39 -05:00
  • 43f7dce297 Merge pull request #12407 from Security-Onion-Solutions/jertel/mergem Jason Ertel 2024-02-21 13:18:08 -05:00
  • 4e4a4686f1 Merge branch 'master' into jertel/mergem #12407 Jason Ertel 2024-02-21 13:14:29 -05:00
  • 1952f0f232 Merge remote-tracking branch 'origin/2.4/dev' into kilo Josh Brower 2024-02-21 13:11:49 -05:00
  • b5f44e48ab Merge pull request #12403 from Security-Onion-Solutions/jertel/disctemplate Jason Ertel 2024-02-21 12:42:04 -05:00
  • 9ca0f586ae Manage the repos Mike Reeves 2024-02-21 11:45:02 -05:00
  • a44448519b add message at top for clickable link #12403 Jason Ertel 2024-02-21 10:53:43 -05:00
  • 6245ee9a5b Merge branch 'master' into jertel/disctemplate Jason Ertel 2024-02-21 10:43:28 -05:00
  • 49ca970076 add message at top for clickable link Jason Ertel 2024-02-21 10:41:28 -05:00
  • f49fb7cbae Merge pull request #12401 from Security-Onion-Solutions/jertel/disctemplate Jason Ertel 2024-02-21 10:39:03 -05:00
  • 7692c9be53 template improvements #12401 Jason Ertel 2024-02-21 10:36:07 -05:00
  • 25ef12cdc5 Merge pull request #12395 from Security-Onion-Solutions/jertel/mergemaster Jason Ertel 2024-02-21 07:18:22 -05:00
  • 29778438f0 Merge pull request #12396 from Security-Onion-Solutions/jertel/glm Jason Ertel 2024-02-21 07:18:05 -05:00
  • 6c6a362fcc add lock threads #12396 Jason Ertel 2024-02-20 19:14:18 -05:00
  • 2967adca90 Merge branch 'master' into jertel/mergemaster #12395 Jason Ertel 2024-02-20 16:56:14 -05:00
  • d198458366 Merge pull request #12392 from Security-Onion-Solutions/jertel/glm_master Jason Ertel 2024-02-20 16:55:16 -05:00
  • 9e98b409a5 thread locking #12392 Jason Ertel 2024-02-20 16:00:41 -05:00
  • 89010dacab Merge pull request #12348 from Security-Onion-Solutions/TOoSmOotH-patch-4 Mike Reeves 2024-02-20 12:10:09 -05:00
  • 78d41c5342 Merge pull request #12386 from Security-Onion-Solutions/jertel/corricon Jason Ertel 2024-02-20 10:39:38 -05:00
  • 4b314c8715 replace correlate icon to avoid confusion with searcheng.in #12386 Jason Ertel 2024-02-20 10:30:09 -05:00
  • ed0773604c Merge pull request #12385 from Security-Onion-Solutions/TOoSmOotH-patch-1 Mike Reeves 2024-02-20 10:14:45 -05:00
  • 07fcfab7ec Update VERSION #12385 Mike Reeves 2024-02-20 10:14:11 -05:00
  • 84c5fa6a58 Merge pull request #12353 from Security-Onion-Solutions/2.4/dev 2.4.50-20240220 #12617 Mike Reeves 2024-02-20 10:04:01 -05:00
  • 5c96e30087 Merge pull request #12383 from Security-Onion-Solutions/2.4.50 #12353 Mike Reeves 2024-02-20 09:50:09 -05:00
  • 18b4fcca75 2.4.50 #12383 Mike Reeves 2024-02-20 09:47:05 -05:00
  • ffb3cc87b7 Default ruleset; Descriptions Josh Brower 2024-02-16 11:55:10 -05:00
  • e4dcb4a8dd Merge remote-tracking branch 'origin/cogburn/detection_playbooks' into kilo Josh Brower 2024-02-15 17:50:37 -05:00
  • c64f37ab67 sigmaRulePackages is now a string array Corey Ogburn 2024-02-15 10:34:07 -07:00
  • 686304f24a Merge remote-tracking branch 'origin/2.4/dev' into kilo Josh Brower 2024-02-15 09:47:51 -05:00
  • 0765320839 Merge pull request #12360 from Security-Onion-Solutions/2450soup #12357 Josh Patterson 2024-02-14 14:37:28 -05:00
  • a2b17d2348 move jinja to top #12360 m0duspwnens 2024-02-14 14:27:41 -05:00
  • c1f467a068 handle airgap m0duspwnens 2024-02-14 14:22:18 -05:00
  • 7d5932ee5e Merge remote-tracking branch 'origin/2.4/dev' into 2450soup m0duspwnens 2024-02-14 13:29:39 -05:00
  • 79e98e508f pass in UPDATE_DIR as a pillar m0duspwnens 2024-02-14 13:28:12 -05:00
  • cf6266a92b Merge pull request #12354 from Security-Onion-Solutions/2450soup Josh Patterson 2024-02-13 16:23:57 -05:00
  • 2e9fa2438b add back comment #12354 m0duspwnens 2024-02-13 16:19:50 -05:00
  • a5db9f87dd Merge branch 'kilo' into cogburn/detection_playbooks Corey Ogburn 2024-02-13 14:08:44 -07:00
  • f321e734eb Added so-detection mapping in elasticsearch Corey Ogburn 2024-01-31 10:39:47 -07:00
  • 8800b7e878 WIP: Detections Changes Corey Ogburn 2024-01-30 15:43:51 -07:00
  • 031ee078c5 socsigmarepo Corey Ogburn 2023-10-19 15:49:56 -06:00
  • 00f2374582 fix path for so-firewall m0duspwnens 2024-02-13 15:43:02 -05:00
  • 468eedfaeb add soup script update retru m0duspwnens 2024-02-13 15:30:24 -05:00
  • 88786e8342 use file.copy to preserve perms m0duspwnens 2024-02-13 15:05:09 -05:00
  • c933627a71 Merge branch 'kilo' of github.com:security-onion-solutions/securityonion into kilo Corey Ogburn 2024-02-13 12:53:29 -07:00
  • 0d297274c8 DetectionComment Mapping Defined Corey Ogburn 2024-02-13 12:53:18 -07:00
  • 141fd49f02 use rsync m0duspwnens 2024-02-13 14:27:22 -05:00
  • 7112337c85 fix copy m0duspwnens 2024-02-13 13:52:14 -05:00
  • 0c6c6ba2d5 Various UI tweaks Josh Brower 2024-02-13 13:38:43 -05:00
  • d6ac7a3286 fix the jinja m0duspwnens 2024-02-13 13:31:34 -05:00
  • 9175a73456 dont need $ for vars m0duspwnens 2024-02-13 13:08:09 -05:00
  • 14209ad99d Merge pull request #12355 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2024-02-13 12:59:34 -05:00
  • 1bde002f20 update case m0duspwnens 2024-02-13 12:51:53 -05:00
  • 0741ae370a Update defaults.yaml #12355 Doug Burks 2024-02-13 12:51:26 -05:00
  • d7f853b5b2 comment out script copy in soup m0duspwnens 2024-02-13 12:50:22 -05:00
  • 5c9b1ab38b copy with cp m0duspwnens 2024-02-13 12:48:31 -05:00
  • b713771494 add back common soup_scripts state m0duspwnens 2024-02-13 12:30:36 -05:00
  • 8060751a66 Add table columns to process dashboard in defaults.yaml Doug Burks 2024-02-13 12:24:33 -05:00
  • c1258f9a92 Merge remote-tracking branch 'origin/2.4/dev' into 2450soup m0duspwnens 2024-02-13 11:09:24 -05:00
  • 92634724c4 move rm m0duspwnens 2024-02-13 11:09:08 -05:00
  • 3efaba1104 modify soup to update soup scripts without using salt m0duspwnens 2024-02-13 11:04:26 -05:00
  • d072d431b3 Merge pull request #12350 from Security-Onion-Solutions/feature/process-ancestry-action Doug Burks 2024-02-13 08:51:38 -05:00
  • ea80469c2d Detection Default queries Josh Brower 2024-02-12 19:39:55 -05:00
  • 0ad39a7e32 FEATURE: Add new SOC action to show process ancestry #12345 #12350 Doug Burks 2024-02-12 19:18:29 -05:00
  • 20d2f3b97e Update Sublime action in defaults.yaml to use i18n Doug Burks 2024-02-12 19:13:32 -05:00
  • 64726a2785 Merge pull request #12349 from Security-Onion-Solutions/2.4/conflictingfix Josh Brower 2024-02-12 19:07:07 -05:00
  • ccb14485a3 Fix conflicting id #12349 Josh Brower 2024-02-12 19:06:19 -05:00
  • 5102269440 Update defaults Josh Brower 2024-02-12 16:44:54 -05:00
  • 5a4e11b2f8 Update soup #12348 Mike Reeves 2024-02-12 16:09:47 -05:00
  • e713b4c660 Merge pull request #12346 from Security-Onion-Solutions/reyesj2-patch-1 Mike Reeves 2024-02-12 16:07:31 -05:00
  • 2db5f4dd41 Merge pull request #12308 from petiepooo/feat-es-ownfs Mike Reeves 2024-02-12 16:03:36 -05:00
  • f91cb5b81f Merge pull request #12290 from petiepooo/fix-remove-intca-symlink Mike Reeves 2024-02-12 12:33:13 -05:00
  • 4b697b2406 Remove unused file #12346 Jorge Reyes 2024-02-12 09:28:48 -05:00
  • c04f5a3f0f Merge pull request #12268 from Security-Onion-Solutions/feature/fleet-artifacts Josh Brower 2024-02-12 08:58:14 -05:00
  • b1de6abc17 Merge pull request #12343 from Security-Onion-Solutions/fix/anothercheck Josh Brower 2024-02-12 08:58:05 -05:00
  • cc0f25a4f7 Wait for ES to be ready #12343 Josh Brower 2024-02-11 13:30:20 -05:00
  • eafb5cf15e Change to file_root #12268 Josh Brower 2024-02-11 13:18:20 -05:00
  • 2b2aa30ac1 Merge pull request #12332 from Security-Onion-Solutions/reyesj2/sod-putty Jorge Reyes 2024-02-10 20:41:03 -05:00
  • 66ac36a944 Update soup Josh Brower 2024-02-10 11:07:26 -05:00
  • feabb7c51f Merge remote-tracking branch 'origin/2.4/dev' into feature/fleet-artifacts Josh Brower 2024-02-10 10:57:46 -05:00
  • 64f6d0fba9 Updated Detection's ES Mappings Corey Ogburn 2024-02-09 14:20:07 -07:00
  • 94b6e781bb Merge pull request #12337 from Security-Onion-Solutions/salt3006.6v2 Josh Patterson 2024-02-09 15:45:39 -05:00
  • 304ae49251 fix source #12337 m0duspwnens 2024-02-09 12:41:23 -05:00
  • ba8f729976 Merge pull request #12335 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2024-02-09 11:18:59 -05:00
  • 5b67795c23 Update soup for 2.3.290 #12335 Doug Burks 2024-02-09 11:12:43 -05:00
  • 213ac822a8 create dir and chown m0duspwnens 2024-02-09 10:54:07 -05:00