Commit Graph

  • fbdc0c4705 add configurable realert threshold per agent #15012 reyesj2 2025-09-10 10:56:09 -05:00
  • d1a2b57aa2 Merge pull request #15011 from Security-Onion-Solutions/hideroni Josh Patterson 2025-09-10 09:15:55 -04:00
  • f5ec1d4b7c don't show sensoroni config changes #15011 Josh Patterson 2025-09-10 09:09:02 -04:00
  • 0aa556e375 Merge pull request #15009 from Security-Onion-Solutions/reyesj2/ea-alerter Jorge Reyes 2025-09-09 17:00:39 -05:00
  • d9e86c15bc Merge pull request #15010 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-09 17:15:52 -04:00
  • 4107fa006f fix repo files to remove #15010 Josh Patterson 2025-09-09 16:51:42 -04:00
  • 29980ea958 offline threshold check #15009 reyesj2 2025-09-09 15:39:55 -05:00
  • 8f36d2ec00 update log file name reyesj2 2025-09-09 15:38:50 -05:00
  • 10511b8431 Merge pull request #15008 from Security-Onion-Solutions/cogburn/fix-templates coreyogburn 2025-09-09 14:03:36 -06:00
  • 2535ae953d Fix Index Patterns #15008 Corey Ogburn 2025-09-09 14:00:01 -06:00
  • 2f68cd7483 Merge pull request #14991 from Security-Onion-Solutions/cogburn/wip-module coreyogburn 2025-09-09 10:32:06 -06:00
  • 6655276410 force update to kafka-fleet-output-policy reyesj2 2025-09-08 21:13:29 -05:00
  • 9f7bcb0f7d add --force flag to so-kafka-fleet-output-policy & default to using fleet secret storage for client key reyesj2 2025-09-08 21:13:11 -05:00
  • aa43177d8c Fix Setting Name #14991 Corey Ogburn 2025-09-05 11:31:08 -06:00
  • 12959d114c added threshold config fields for assistant Matthew Wright 2025-09-04 16:36:51 -04:00
  • 855b489c4b datastream reyesj2 2025-09-04 10:39:57 -05:00
  • 673f9cb544 Responding to Feedback Corey Ogburn 2025-09-04 09:20:50 -06:00
  • 0a3ff47008 Cleanup Annotations Corey Ogburn 2025-09-03 12:12:27 -06:00
  • 834e34128d Non-dev URL Corey Ogburn 2025-08-28 16:03:35 -06:00
  • 73776f8d11 Cleaning up New ES Indexes Corey Ogburn 2025-08-27 12:46:19 -06:00
  • 120e61e45c ClientParams Corey Ogburn 2025-08-26 16:06:14 -06:00
  • fc2d450de0 Update Settings Corey Ogburn 2025-08-26 09:16:04 -06:00
  • cea4eaf081 Updated Assistant Mapping Corey Ogburn 2025-08-06 09:02:43 -06:00
  • b1753f86f9 New Message Structure Corey Ogburn 2025-07-30 13:14:09 -06:00
  • 6323fbf46b Content Object Corey Ogburn 2025-07-30 11:48:27 -06:00
  • ba601c39b3 Rough Go at New Mappings/Settings Corey Ogburn 2025-07-29 11:23:28 -06:00
  • ec27517bdd New Config Values Corey Ogburn 2025-07-11 10:37:50 -06:00
  • 624ec3c93e Merge pull request #15003 from Security-Onion-Solutions/fix/wording Josh Brower 2025-09-08 09:10:43 -04:00
  • f318a84c18 Update so-elastic-fleet-reset #15003 Josh Brower 2025-09-08 09:03:33 -04:00
  • 8cca58dba9 Merge pull request #14998 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-05 17:13:37 -04:00
  • 6c196ea61a Merge branch '2.4/dev' into vlb2 #14998 Jason Ertel 2025-09-05 17:11:10 -04:00
  • 207572f2f9 remove debug added to fail_setup Josh Patterson 2025-09-05 14:16:03 -04:00
  • 4afc986f48 firewall and logstash pipeline for managerhype Josh Patterson 2025-09-05 13:14:47 -04:00
  • ba5d140d4b Merge pull request #14996 from Security-Onion-Solutions/reyesj2/ea-alerter Jorge Reyes 2025-09-05 10:41:59 -05:00
  • 348f9dcaec prevent multiple script instances using file lock #14996 reyesj2 2025-09-05 10:01:24 -05:00
  • 915b9e7bd7 use logrotate reyesj2 2025-09-05 09:22:44 -05:00
  • dfec29d18e custom kquery reyesj2 2025-09-04 15:37:28 -05:00
  • 77fef02116 Merge pull request #14994 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-04 11:06:31 -04:00
  • 38ef4a6046 pass pillar properly #14994 Josh Patterson 2025-09-04 11:02:27 -04:00
  • f3328c41fb Merge pull request #14990 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-03 10:37:46 -04:00
  • a007fa6505 Merge remote-tracking branch 'origin/2.4/dev' into vlb2 #14990 Josh Patterson 2025-09-03 09:52:49 -04:00
  • 1a32a0897c Merge remote-tracking branch 'origin/2.4/dev' into reyesj2/ea-alerter reyesj2 2025-09-02 17:11:21 -05:00
  • e26310d172 elastic agent offline alerter reyesj2 2025-09-02 17:00:03 -05:00
  • c7cdb0b466 Merge pull request #14986 from Security-Onion-Solutions/cogburn/internal-reverse coreyogburn 2025-09-02 15:25:19 -06:00
  • df0b484b45 More Descriptive Description #14986 Corey Ogburn 2025-09-02 15:07:13 -06:00
  • 2181cddf49 Move EnableReverseLookup Corey Ogburn 2025-09-02 14:09:55 -06:00
  • a2b6968cef Merge pull request #14975 from Security-Onion-Solutions/reyesj2/es8186 Jorge Reyes 2025-09-02 10:14:33 -05:00
  • 285fbc2783 Merge remote-tracking branch 'origin/2.4/dev' into vlb2 Josh Patterson 2025-09-02 09:23:24 -04:00
  • 94c5a1fd98 Merge pull request #14980 from Security-Onion-Solutions/mikebond Josh Patterson 2025-08-29 11:08:17 -04:00
  • 19362fe5e5 Update so-combine-bond #14980 Mike Reeves 2025-08-29 11:06:25 -04:00
  • a7a81e9825 always manage script, only run it if bond0 exists Josh Patterson 2025-08-29 11:05:42 -04:00
  • 31484d1158 Merge pull request #14978 from Security-Onion-Solutions/mikebond Mike Reeves 2025-08-29 10:07:24 -04:00
  • f51cd008f2 only manage bond script if bond0 exists #14978 Josh Patterson 2025-08-29 10:04:56 -04:00
  • a5675a79fe es 8.18.6 pipeline upd #14975 reyesj2 2025-08-28 19:45:17 -05:00
  • 1ea7b3c09f es 8.18.6 reyesj2 2025-08-28 18:27:56 -05:00
  • d9127a288f Merge pull request #14957 from Security-Onion-Solutions/reyesj2-patch-6 Jorge Reyes 2025-08-28 14:19:03 -05:00
  • 23ae259c82 Merge pull request #14972 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-08-28 10:41:23 -04:00
  • ebb78bc9bd Merge remote-tracking branch 'origin/2.4/dev' into vlb2 #14972 Josh Patterson 2025-08-28 09:21:33 -04:00
  • e5920b6465 add managerhype back to whiptail Josh Patterson 2025-08-28 09:21:20 -04:00
  • 153a99a002 Merge pull request #14971 from Security-Onion-Solutions/mikebond Mike Reeves 2025-08-27 18:42:18 -04:00
  • 69a5e1e2f5 remove md file #14971 Josh Patterson 2025-08-27 15:14:15 -04:00
  • 0858160be2 support for modifying nic channels Josh Patterson 2025-08-27 14:51:57 -04:00
  • ccd79c814d Add script for bond0 channels Mike Reeves 2025-08-27 09:53:37 -04:00
  • 45f25ca62d Merge pull request #14966 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-08-26 15:07:36 -04:00
  • a8a01b8191 Merge branch 'bravo' into vlb2 #14966 Josh Patterson 2025-08-26 14:59:23 -04:00
  • ac2c044a94 Merge remote-tracking branch 'origin/2.4/dev' into vlb2 Josh Patterson 2025-08-26 14:55:06 -04:00
  • e10d00d114 support for managerhype Josh Patterson 2025-08-26 14:54:37 -04:00
  • cbdd369a18 ensure x509 in mine Josh Patterson 2025-08-25 08:39:55 -04:00
  • b2e7f58b3d analyzer test updates reyesj2 2025-08-22 17:36:48 -05:00
  • a6600b8762 elasticsearch dep upgrades reyesj2 2025-08-22 17:11:06 -05:00
  • 5479d49379 greynoise breakup long line for linter reyesj2 2025-08-22 16:00:05 -05:00
  • 304985b61e Merge pull request #14959 from Security-Onion-Solutions/jertel/wip Jason Ertel 2025-08-22 16:55:45 -04:00
  • d6c725299b Merge pull request #14956 from Security-Onion-Solutions/cogburn/playbook-repo-name coreyogburn 2025-08-22 14:02:42 -06:00
  • d99857002d Improved Label #14956 Corey Ogburn 2025-08-22 13:18:22 -06:00
  • 2a6c74917e Ruleset Name UiElement Corey Ogburn 2025-08-22 13:00:17 -06:00
  • 9f0bd4bad3 spamhaus enable multiline annotation on nameservers entries reyesj2 2025-08-22 13:51:05 -05:00
  • 924b06976c spamhaus config typos reyesj2 2025-08-22 13:50:40 -05:00
  • 1357f19e48 update wording #14959 Jason Ertel 2025-08-22 13:25:25 -04:00
  • c91e9ea4e0 return to normalcy Jason Ertel 2025-08-22 13:23:19 -04:00
  • c2c96dad6e bump version reyesj2 2025-08-22 08:43:48 -05:00
  • 1a08833e77 typo reyesj2 2025-08-22 08:41:03 -05:00
  • d16dfcf4e8 emailrep dep upgrades reyesj2 2025-08-21 16:22:48 -05:00
  • b79c7b0540 sublime dep upgrades reyesj2 2025-08-21 16:17:44 -05:00
  • 9f45792217 pulsedive dep upgrades reyesj2 2025-08-21 16:07:08 -05:00
  • d3108c3549 greynoise dep upgrade + use community version with no auth reyesj2 2025-08-21 14:30:21 -05:00
  • 7d883cb5e0 echotrail api no longer available reyesj2 2025-08-21 12:38:00 -05:00
  • ebd81c1df9 otx dep upgrades reyesj2 2025-08-21 12:22:47 -05:00
  • 418dbee9fa virustotal dep upgrades reyesj2 2025-08-21 12:15:13 -05:00
  • cccc3bf625 urlscan dep upgrades reyesj2 2025-08-21 12:06:35 -05:00
  • a3e0072631 update readme threatfox uses auth for api now reyesj2 2025-08-21 11:48:17 -05:00
  • 220e485312 threatfox dep upgrade + use auth for api access reyesj2 2025-08-21 11:47:54 -05:00
  • 67f8fca043 spamhaus dep upgrades reyesj2 2025-08-21 11:32:13 -05:00
  • 0e0ab8384c localfile dep upgrade reyesj2 2025-08-21 11:26:59 -05:00
  • 58228f70ca malwarehashregistry dep upgrades reyesj2 2025-08-21 11:16:28 -05:00
  • 7968de06b4 enable access to global stig pillar #14957 reyesj2 2025-08-21 11:06:29 -05:00
  • 87fdd90f56 Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into 2.4/dev Mike Reeves 2025-08-21 10:39:34 -04:00
  • 65e7e56fbe Merge pull request #14950 from Security-Onion-Solutions/180soup Josh Patterson 2025-08-21 09:50:53 -04:00
  • 424fdff934 180 soup base #14950 Josh Patterson 2025-08-21 09:43:30 -04:00
  • f72996d9d1 Merge pull request #14949 from Security-Onion-Solutions/reyesj2-patch-7 Jorge Reyes 2025-08-21 08:33:30 -05:00
  • d77556c672 pcap dir #14949 reyesj2 2025-08-21 08:25:48 -05:00