Commit Graph

  • 056072af7d Merge pull request #11088 from Security-Onion-Solutions/TOoSmOotH-patch-2 Mike Reeves 2023-08-17 14:51:25 -04:00
  • fb3fee5d4b Update HOTFIX #11088 Mike Reeves 2023-08-17 14:43:35 -04:00
  • e7be8991f1 Merge pull request #11083 from Security-Onion-Solutions/jertel/souptty Jason Ertel 2023-08-17 13:47:37 -04:00
  • 09dd3f529b force image pulls to go into soup log #11083 Jason Ertel 2023-08-17 13:45:51 -04:00
  • 488c4d5000 Merge pull request #11079 from Security-Onion-Solutions/fix/import_evtx_pcap weslambert 2023-08-17 12:29:01 -04:00
  • abad833c5e Merge pull request #11075 from Security-Onion-Solutions/2.4/soupmods Mike Reeves 2023-08-17 10:53:52 -04:00
  • 4363e71e80 Add soup for 2.4.20 #11075 Mike Reeves 2023-08-17 10:51:59 -04:00
  • 7971d9749a Assign pipeline to import #11079 Wes 2023-08-17 14:08:48 +00:00
  • 5ebe33d45f Merge pull request #11068 from Security-Onion-Solutions/fix/elastic_fleet_package_force_2 weslambert 2023-08-17 08:20:24 -04:00
  • 4887eb4957 Update so-elastic-fleet-package-load #11068 weslambert 2023-08-16 22:31:14 -04:00
  • 0620919241 Merge pull request #11064 from Security-Onion-Solutions/fix/elasticfleet_package_force weslambert 2023-08-16 16:37:39 -04:00
  • e84d624d23 Force package installation #11064 Wes 2023-08-16 20:10:20 +00:00
  • 45bc2ec380 Merge pull request #11060 from Security-Onion-Solutions/issue/10922 Josh Patterson 2023-08-16 10:47:13 -04:00
  • 9bf7b9bda5 set the timezone earlier in setup #11060 m0duspwnens 2023-08-16 10:02:47 -04:00
  • ab19fa9ece set salt log levels to info m0duspwnens 2023-08-16 09:21:06 -04:00
  • 53d7d69135 update salt docs url in service file m0duspwnens 2023-08-16 08:46:24 -04:00
  • b22776dc5a set timezone to etc/utc during setup m0duspwnens 2023-08-15 16:22:02 -04:00
  • dc6d9d4ba2 Merge pull request #11047 from Security-Onion-Solutions/TOoSmOotH-patch-1 Mike Reeves 2023-08-15 07:29:34 -04:00
  • 075ef5e02c Update VERSION #11047 Mike Reeves 2023-08-15 07:27:48 -04:00
  • 16da0b469a Merge pull request #11040 from Security-Onion-Solutions/2.4/dev 2.4.10-20230815 Mike Reeves 2023-08-15 07:14:03 -04:00
  • 5c2c2908b8 Merge pull request #11044 from Security-Onion-Solutions/TOoSmOotH-patch-2 #11040 Mike Reeves 2023-08-14 16:52:53 -04:00
  • ad9da07de1 Update DOWNLOAD_AND_VERIFY_ISO.md #11044 Mike Reeves 2023-08-14 16:51:24 -04:00
  • d1210e946c Merge pull request #11043 from Security-Onion-Solutions/jertel/up Jason Ertel 2023-08-14 16:46:21 -04:00
  • 5d6fe4d9ae Merge branch '2.4/main' into jertel/up #11043 Jason Ertel 2023-08-14 16:44:13 -04:00
  • 193f9c08fb Merge pull request #11042 from Security-Onion-Solutions/2.4.10 Mike Reeves 2023-08-14 16:41:21 -04:00
  • 4808c21cf4 2.4.10 #11042 Mike Reeves 2023-08-14 16:34:32 -04:00
  • 4106d1f69d 2.4.10 Mike Reeves 2023-08-14 16:33:08 -04:00
  • 007720132b Merge pull request #11034 from Security-Onion-Solutions/dougburks-patch-1 Jason Ertel 2023-08-13 16:56:50 -04:00
  • f3a58cd336 soup should respect current indentation in soc_global.sls #11034 Doug Burks 2023-08-13 16:46:32 -04:00
  • faca36e74c Merge pull request #11021 from Security-Onion-Solutions/2.4/esurlfixup Josh Brower 2023-08-12 08:41:54 -04:00
  • f38b77892b Move back #11021 Josh Brower 2023-08-11 17:14:48 -04:00
  • 00297cd864 Move from post to pre Josh Brower 2023-08-11 16:10:16 -04:00
  • ce63e47fcd Enable forced update Josh Brower 2023-08-11 14:47:33 -04:00
  • d53489d674 Merge pull request #11023 from Security-Onion-Solutions/jertel/fixann Jason Ertel 2023-08-11 13:58:40 -04:00
  • 1fb3a59573 add missing annotations to avoid soc crash #11023 Jason Ertel 2023-08-11 13:41:58 -04:00
  • a5e60363cf add missing annotations to avoid soc crash Jason Ertel 2023-08-11 13:38:16 -04:00
  • 3f054031a0 Set default for import and eval only Josh Brower 2023-08-11 13:32:22 -04:00
  • 4a54febf38 Merge pull request #11016 from Security-Onion-Solutions/issue/10957 Josh Patterson 2023-08-11 09:22:05 -04:00
  • fdb2ca4167 set SO desktop wallpaper for iso install #11016 m0duspwnens 2023-08-11 09:15:41 -04:00
  • 7112d53d4d Merge pull request #11014 from Security-Onion-Solutions/2.4/templateloadfix Josh Brower 2023-08-10 20:00:57 -04:00
  • 1d83b2f2e6 Add elasticsearch integration #11014 Josh Brower 2023-08-10 19:51:12 -04:00
  • a724b95441 Merge branch '2.4/dev' into 2.4/templateloadfix Josh Brower 2023-08-10 19:01:24 -04:00
  • 0d894b7f52 Upgrade integration packages Josh Brower 2023-08-10 18:57:17 -04:00
  • e32d7eb127 Merge pull request #11012 from Security-Onion-Solutions/issue/10957 Josh Patterson 2023-08-10 16:27:56 -04:00
  • caced64d11 set desktop background #11012 m0duspwnens 2023-08-10 16:10:39 -04:00
  • 3ec3f8bcd8 Merge pull request #11011 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2023-08-10 15:17:20 -04:00
  • 4426437ad3 Update motd.md #11011 Doug Burks 2023-08-10 15:04:31 -04:00
  • 1f0f74ff04 Merge pull request #11009 from Security-Onion-Solutions/fix/soruleupdate Josh Patterson 2023-08-10 12:04:42 -04:00
  • e43900074a ensure only 1 instance of so-rule-update runs. execute the cmd at the end of state run #11009 m0duspwnens 2023-08-10 11:54:49 -04:00
  • 732d2605a7 Merge pull request #11008 from Security-Onion-Solutions/fix/esanno Josh Patterson 2023-08-10 11:32:14 -04:00
  • 4d497022db replace . with _x_ for soc ui compat #11008 m0duspwnens 2023-08-10 09:52:18 -04:00
  • 2680a50927 Merge pull request #11004 from Security-Onion-Solutions/2.4/esurlfix Josh Brower 2023-08-10 08:50:56 -04:00
  • 874dab7535 Unset defaults #11004 Josh Brower 2023-08-09 19:02:53 -04:00
  • fe9917ef1c Merge pull request #11002 from Security-Onion-Solutions/2.4/fixfqdn Josh Brower 2023-08-09 16:41:09 -04:00
  • e844cf11db Move base_url to cert SAN #11002 Josh Brower 2023-08-09 16:38:27 -04:00
  • f9e272dd8f add additional annotations for elasticsearch index settings m0duspwnens 2023-08-09 16:09:23 -04:00
  • dfe916d7c8 add annotation for so-logs index m0duspwnens 2023-08-09 15:19:17 -04:00
  • c3c769922d Merge pull request #11000 from Security-Onion-Solutions/issue/10954 Josh Patterson 2023-08-09 11:31:55 -04:00
  • 30e3fbb41c remove extra ) #11000 m0duspwnens 2023-08-09 11:21:16 -04:00
  • 78694807ff Merge remote-tracking branch 'origin/2.4/dev' into issue/10954 m0duspwnens 2023-08-09 11:19:19 -04:00
  • 8844e305ab use sensor.interface for suricata. make af-packet.interface ro in soc ui m0duspwnens 2023-08-09 11:18:47 -04:00
  • 1a37c43c98 Merge pull request #10997 from Security-Onion-Solutions/2.4/autoupgrade Josh Brower 2023-08-09 10:58:26 -04:00
  • bf78faa0f0 Enable upgrade check during state run #10997 Josh Brower 2023-08-09 10:43:34 -04:00
  • 204ef7e68f Merge pull request #10994 from Security-Onion-Solutions/2.4/autoupgrade Josh Brower 2023-08-09 09:47:57 -04:00
  • 176608d2f9 Merge pull request #10995 from Security-Onion-Solutions/fix/desktop Josh Patterson 2023-08-09 09:34:44 -04:00
  • 28dfdbf06d securityonion_desktop is just desktop #10995 m0duspwnens 2023-08-09 08:51:39 -04:00
  • a443c654e5 fix desktop pillar in setup m0duspwnens 2023-08-09 08:48:00 -04:00
  • 6413050f2e set doc_desktop_url before jinja m0duspwnens 2023-08-09 08:39:46 -04:00
  • fe7a940082 add details for enabling in soc gui m0duspwnens 2023-08-09 08:31:54 -04:00
  • e586d6b967 Extract Elastic Agent tarball for airgap soup #10994 Josh Brower 2023-08-09 08:30:19 -04:00
  • 2d25e352d4 write to adv_ pillar file since that is where it would be stored from using the soc ui m0duspwnens 2023-08-09 08:18:13 -04:00
  • 4297d51a2d Refactor for multiple agents Josh Brower 2023-08-09 08:14:52 -04:00
  • 1440c72559 changes for desktop referencing Rocky/CentOS to OEL m0duspwnens 2023-08-09 08:06:51 -04:00
  • 00efc2f88f rename workstation to desktop for firewall m0duspwnens 2023-08-09 07:31:31 -04:00
  • d55c2f889c Merge pull request #10989 from Security-Onion-Solutions/issue/10973 Josh Patterson 2023-08-08 19:35:02 -04:00
  • e1e535b009 Retry if exit code is error Josh Brower 2023-08-08 18:38:18 -04:00
  • 789fff561e ensure ownership of /opt/so/log/strelka/filecheck.log #10989 m0duspwnens 2023-08-08 17:55:30 -04:00
  • 58fe25623b ensure ownership of /opt/so/log/strelka/filecheck_stdout.log m0duspwnens 2023-08-08 17:48:34 -04:00
  • 553b758c61 update cronjobs first, the kill filecheck m0duspwnens 2023-08-08 17:28:14 -04:00
  • 6da2f117f2 change which user runs filecheck cron based on md engine m0duspwnens 2023-08-08 17:25:08 -04:00
  • 6ad22edf8e Merge pull request #10987 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2023-08-08 17:18:38 -04:00
  • 2dbe679849 force restart of filecheck if the config changes m0duspwnens 2023-08-08 17:05:03 -04:00
  • 2f74b69cc3 Update soup for 2.4.10 #10987 Doug Burks 2023-08-08 16:27:11 -04:00
  • 4320dab856 Merge pull request #10986 from Security-Onion-Solutions/fix/windows_event_table bryant-treacle 2023-08-08 16:23:14 -04:00
  • 036b81707b Update defaults.yaml #10986 bryant-treacle 2023-08-08 16:10:54 -04:00
  • 8455d3da6f Merge pull request #10977 from Security-Onion-Solutions/2.4/squashbug Josh Brower 2023-08-08 15:55:58 -04:00
  • 3d4fd08547 Update defaults.yaml bryant-treacle 2023-08-08 15:28:06 -04:00
  • 21c80e4953 run so-rule-update after idstools container restart m0duspwnens 2023-08-08 15:27:23 -04:00
  • 5c704d7e58 run so-rule-update if idstools configs change m0duspwnens 2023-08-08 15:20:44 -04:00
  • 230f5868f9 sync sorules m0duspwnens 2023-08-08 15:14:27 -04:00
  • 20dedab4b2 remove previously add rules files m0duspwnens 2023-08-08 15:03:06 -04:00
  • 9118ac2b56 filter.rules to filters.rules m0duspwnens 2023-08-08 13:59:43 -04:00
  • aab89d2483 rule-files does not go under profiling m0duspwnens 2023-08-08 13:54:58 -04:00
  • b2e75e77e8 add local.rules and filter.rules to suricata defaults. add extraction.rules, local.rules and filter.rules for suricata metadata m0duspwnens 2023-08-08 13:50:19 -04:00
  • bcd1ccd91b Merge pull request #10983 from Security-Onion-Solutions/fix/tgrafzeekcloss Josh Patterson 2023-08-08 10:19:46 -04:00
  • 673b45af09 import ZEEKMERGED #10983 m0duspwnens 2023-08-08 09:41:42 -04:00
  • a06040c035 add WORKERS calculation back to zeekcaptureloss script m0duspwnens 2023-08-08 09:37:37 -04:00
  • e286b8f2ba Merge remote-tracking branch 'origin/2.4/dev' into fix/tgrafzeekcloss m0duspwnens 2023-08-08 09:36:12 -04:00
  • 69553f9017 removes spaces from zeekcaptureloss script m0duspwnens 2023-08-08 09:34:59 -04:00
  • 609a2bf32e only import ZEEKMERGED if a sensor type node m0duspwnens 2023-08-08 09:27:03 -04:00