Commit Graph

  • 0ccdfcb07c Exclude only offset_meta_key weslambert 2024-01-23 13:11:43 -05:00
  • 63ba97306c Exclude Strelka defaults weslambert 2024-01-23 13:05:58 -05:00
  • 72319e33db Avoid leak test triggering weslambert 2024-01-23 12:38:09 -05:00
  • 34bb37e415 Merge pull request #12227 from Security-Onion-Solutions/feature/rita_logs weslambert 2024-01-23 12:32:32 -05:00
  • 3bcb0bc132 Update defaults Wes 2024-01-23 17:18:54 +00:00
  • 483bf60ae3 Merge pull request #12233 from Security-Onion-Solutions/jertel/23guidelines Jason Ertel 2024-01-23 10:07:35 -05:00
  • 1a9350f60b Update 2-4.yml #12233 Doug Burks 2024-01-23 09:51:45 -05:00
  • f4afda0975 Merge pull request #12232 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2024-01-23 09:57:40 -05:00
  • 137372337c Update 2-4.yml #12232 Doug Burks 2024-01-23 09:51:45 -05:00
  • d25a2d4c30 Merge pull request #12230 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-23 08:31:48 -05:00
  • 350b0df3bf Handle non-zero #12230 reyesj2 2024-01-22 22:48:15 -05:00
  • 2168698595 Update VERSION weslambert 2024-01-22 20:27:19 -05:00
  • 5542db0aac Leave package version null #12227 Wes 2024-01-22 21:07:46 +00:00
  • b08db3e05a Add RITA policy Wes 2024-01-22 20:16:43 +00:00
  • 80a3942245 Rename RITA pipelines Wes 2024-01-22 20:15:48 +00:00
  • de6151fbe2 Merge pull request #12221 from Security-Onion-Solutions/feature/additional_integrations_4 weslambert 2024-01-19 17:32:37 -05:00
  • 7118cc8dee Add additional integration SOC configuration #12221 Wes 2024-01-19 22:04:07 +00:00
  • 05aa8b013a Add additional integration to templates Wes 2024-01-19 22:02:39 +00:00
  • d0457cb61e Add additional integrations to defaults Wes 2024-01-19 22:00:38 +00:00
  • c2b44985c7 Merge pull request #12220 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-19 16:06:10 -05:00
  • 8f8c250ed3 Disable stigs setting/verifing umask is set to 077. Known issue with running SOUP #12220 reyesj2 2024-01-19 16:04:21 -05:00
  • 6db32885eb Merge pull request #12216 from Security-Onion-Solutions/TOoSmOotH-patch-2 Mike Reeves 2024-01-19 13:56:48 -05:00
  • efe8cfda95 Update suricata.common #12216 Mike Reeves 2024-01-19 13:39:28 -05:00
  • 08486e279c Update suricata.common Mike Reeves 2024-01-19 13:36:43 -05:00
  • 40d0411441 Merge pull request #12214 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-19 10:55:13 -05:00
  • 2b6927da82 Add stig pillar dir during soup #12214 reyesj2 2024-01-19 09:55:23 -05:00
  • 0786806f8f Merge pull request #12213 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-19 08:59:34 -05:00
  • ca4f2f1dd6 Add creation of additional pillars to soup for stig state #12213 reyesj2 2024-01-19 08:31:20 -05:00
  • 97e2721754 Merge pull request #12208 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-18 16:53:14 -05:00
  • 07602076f1 Update telegraf script #12208 reyesj2 2024-01-18 16:48:16 -05:00
  • caf4036dbf Update features check reyesj2 2024-01-18 16:06:53 -05:00
  • 4a898619a6 Merge pull request #12206 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-18 12:49:28 -05:00
  • 65d46ea27d Merge remote-tracking branch 'remotes/origin/2.4/dev' into reyesj2-patch-sl #12206 reyesj2 2024-01-18 12:24:35 -05:00
  • 67445de4ee Remove need for stig script reyesj2 2024-01-18 12:24:01 -05:00
  • 6a8bf0b953 Merge pull request #12202 from Security-Onion-Solutions/reyesj2-patch-sl Jorge Reyes 2024-01-18 09:25:21 -05:00
  • 33d74098bd Merge pull request #12201 from Security-Onion-Solutions/fix/suricata_ike weslambert 2024-01-17 16:50:19 -05:00
  • 3173f9a26f Merge remote-tracking branch 'remotes/origin/2.4/dev' into reyesj2-patch-sl #12202 reyesj2 2024-01-17 16:28:13 -05:00
  • df921892a3 Remove post scan from remediate log. reyesj2 2024-01-17 16:23:20 -05:00
  • 739feb25a4 Add telegraf script to import featuresdetected reyesj2 2024-01-17 15:55:00 -05:00
  • 4e6924610d Add additional status checks to so-common-status-check for telegraf reyesj2 2024-01-17 15:37:52 -05:00
  • 880f2a3e1b Merge pull request #12197 from Security-Onion-Solutions/TOoSmOotH-patch-1 Mike Reeves 2024-01-17 14:19:30 -05:00
  • 958c827fd5 Update VERSION #12197 Mike Reeves 2024-01-17 14:18:37 -05:00
  • aa294a7f41 Merge pull request #12195 from Security-Onion-Solutions/2.4/dev 2.4.40-20240116 Mike Reeves 2024-01-17 14:04:27 -05:00
  • 50ab63162a users sysusers m0duspwnens 2024-01-17 12:51:15 -05:00
  • 049d0b53c2 Merge pull request #12194 from Security-Onion-Solutions/2.4.40 #12195 Mike Reeves 2024-01-17 12:02:14 -05:00
  • dff6d299a1 2.4.40 #12194 Mike Reeves 2024-01-17 11:59:27 -05:00
  • e70ce50912 Change description #12201 Wes 2024-01-17 14:06:16 +00:00
  • f6590ac0bf Remove Suricata IKEv2 pipeline Wes 2024-01-16 18:10:00 +00:00
  • ea64ce92d3 Add Suricata IKE pipeline Wes 2024-01-16 18:09:46 +00:00
  • 8a92b023b2 Add interface name Wes 2024-01-16 18:09:16 +00:00
  • 6cf0b365e6 Modify yum.conf.jinja to include localpkg_gpgcheck rather than modifying it with so-stig reyesj2 2024-01-15 21:30:31 -05:00
  • 4bffd8e27c Merge remote-tracking branch 'remotes/origin/2.4/dev' into reyesj2-patch-sl reyesj2 2024-01-15 21:19:37 -05:00
  • 38965ccab5 Merge pull request #12192 from Security-Onion-Solutions/needsrestarted Jason Ertel 2024-01-16 18:49:22 -05:00
  • eeb249e00d look for needs_restarted file #12192 m0duspwnens 2024-01-16 17:22:09 -05:00
  • dff06cb085 changes for telegraf os.sh m0duspwnens 2024-01-16 17:03:36 -05:00
  • 8c1d1c95db check needs_restarting rework m0duspwnens 2024-01-16 17:02:27 -05:00
  • a73d78300a Add initial stig state reyesj2 2024-01-15 21:17:17 -05:00
  • 790f5171a6 Merge pull request #12176 from Security-Onion-Solutions/fix/otx_pulses_template weslambert 2024-01-12 16:55:58 -05:00
  • 252c51dafb Change order of names #12176 weslambert 2024-01-12 16:45:18 -05:00
  • a07e6e1058 OTX pulses weslambert 2024-01-12 16:43:33 -05:00
  • 3f9678056d OTX pulses template weslambert 2024-01-12 16:42:32 -05:00
  • c895b6a274 Merge pull request #12173 from Security-Onion-Solutions/fix/endpoint_metrics_templates weslambert 2024-01-12 11:26:09 -05:00
  • 418f41c7e4 Add SOC configuration for metrics #12173 Wes 2024-01-12 15:03:18 +00:00
  • 05679e79fc Merge pull request #12171 from Security-Onion-Solutions/2.4/dev weslambert 2024-01-12 08:50:15 -05:00
  • af3aa53612 Merge pull request #12170 from Security-Onion-Solutions/fix/nav #12171 Josh Brower 2024-01-12 08:48:29 -05:00
  • 5eae349938 Add endpoint metrics templates Wes 2024-01-12 13:47:35 +00:00
  • 2f8ce33cf7 formatting #12170 Josh Brower 2024-01-12 08:47:09 -05:00
  • 61b2a76a09 Remove old nav layers-rev2 Josh Brower 2024-01-12 08:46:23 -05:00
  • b89b7cab59 Remove old nav layers Josh Brower 2024-01-12 08:37:32 -05:00
  • 71c5e34e03 Merge pull request #12164 from Security-Onion-Solutions/fix/optional_integration_pillar_merge weslambert 2024-01-11 16:14:46 -05:00
  • 880300d644 Move ELASTICFLEETMERGED import under allowed states #12164 weslambert 2024-01-11 14:58:21 -05:00
  • f5b59cacec Move ELASTICFLEETMERGED import weslambert 2024-01-11 14:56:01 -05:00
  • ea5097f1b4 Add back curly brace weslambert 2024-01-11 14:51:01 -05:00
  • cc66daba1a Make sure optional integration pillar values are merged with defaults weslambert 2024-01-11 14:49:39 -05:00
  • ea54aafa86 Merge pull request #12161 from Security-Onion-Solutions/fix/kibana-restart Josh Brower 2024-01-11 12:32:19 -05:00
  • 03f140161c Check Kibana API not Web #12161 Josh Brower 2024-01-11 12:30:23 -05:00
  • 7bdc306ad4 Merge pull request #12160 from Security-Onion-Solutions/feature/additional_integrations_3 weslambert 2024-01-11 12:26:14 -05:00
  • 5e1e685ce0 Exclude Cisco failed_attempts pipeline #12160 weslambert 2024-01-11 10:52:30 -05:00
  • c89d674a92 Add settings for integrations Wes 2024-01-11 14:18:06 +00:00
  • 9b1ddcacb4 Add additional templates for integrations Wes 2024-01-11 14:00:09 +00:00
  • 5703023008 Add additional packages Wes 2024-01-11 13:59:38 +00:00
  • 59fe9a0587 Merge pull request #12156 from Security-Onion-Solutions/fix/navigator Josh Brower 2024-01-11 08:48:34 -05:00
  • b8e555e913 Upgrade Navigator and fix Playbook layer #12156 Josh Brower 2024-01-10 21:16:59 -05:00
  • 16b15c786b Merge pull request #12155 from Security-Onion-Solutions/TOoSmOotH-patch-3 Mike Reeves 2024-01-10 14:44:51 -05:00
  • 3e13ea5c7a Update soup #12155 Mike Reeves 2024-01-10 14:36:49 -05:00
  • 9159eab9fd Merge pull request #12151 from Security-Onion-Solutions/fix/so-playbook-reset Josh Brower 2024-01-10 14:23:53 -05:00
  • 0519812866 Merge pull request #12154 from Security-Onion-Solutions/TOoSmOotH-patch-2 Mike Reeves 2024-01-10 14:21:49 -05:00
  • fc2f02c0a0 Update so-functions #12154 Mike Reeves 2024-01-10 14:19:47 -05:00
  • 1e3a00a833 Update so-functions Mike Reeves 2024-01-10 14:16:55 -05:00
  • f21f0a9a96 Replace sed for so-yaml #12151 Josh Brower 2024-01-10 11:15:51 -05:00
  • 6ff764e6a1 refactor for reinstall stability Josh Brower 2024-01-10 10:22:50 -05:00
  • f5568995ac Merge pull request #12149 from Security-Onion-Solutions/jertel/logs Jason Ertel 2024-01-10 09:12:46 -05:00
  • 47eea80d03 exempt transient license check errors #12149 Jason Ertel 2024-01-10 09:07:17 -05:00
  • 0b919ff0fa Merge pull request #12144 from Security-Onion-Solutions/salt3006.5 Josh Patterson 2024-01-09 12:09:36 -05:00
  • c9f2038990 remove outdated comment #12144 m0duspwnens 2024-01-09 11:36:44 -05:00
  • bf05efa59f Merge pull request #12141 from Security-Onion-Solutions/fix/fleet-reset Josh Brower 2024-01-09 10:38:07 -05:00
  • b058bc8c05 Move to non-destructive #12141 Josh Brower 2024-01-09 10:22:43 -05:00
  • 7ddda03ee9 Merge pull request #12138 from Security-Onion-Solutions/fix/fim Josh Brower 2024-01-09 08:26:55 -05:00
  • 5513e74807 comma #12138 Josh Brower 2024-01-09 08:12:33 -05:00
  • 31ee365a91 Fixup FIM events Josh Brower 2024-01-09 08:11:05 -05:00