Commit Graph

  • 25c746bb14 Merge pull request #15067 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-25 16:12:52 -04:00
  • cd04d1e5a7 Merge remote-tracking branch 'origin/2.4/dev' into vlb2 #15067 Josh Patterson 2025-09-25 16:06:36 -04:00
  • 1fb558cc77 managerhype br0 setup Josh Patterson 2025-09-25 16:06:25 -04:00
  • 7f1b76912c Merge pull request #15072 from Security-Onion-Solutions/jertel/wip Jason Ertel 2025-09-25 15:45:02 -04:00
  • 3a2ceb0b6f retry kratos pulls since this is the first image to install during setup #15072 Jason Ertel 2025-09-25 15:40:00 -04:00
  • 1345756fce Merge pull request #15071 from Security-Onion-Solutions/mwright/temp Matthew Wright 2025-09-25 15:18:20 -04:00
  • d81d9a0722 small tweak to investigation prompt #15071 Matthew Wright 2025-09-25 14:45:06 -04:00
  • 55074fda69 Merge pull request #15070 from Security-Onion-Solutions/reyesj2-patch-1 Jorge Reyes 2025-09-25 09:55:54 -05:00
  • 23e12811a1 make sure fleet-default-output is not set as either default output policy #15070 Jorge Reyes 2025-09-25 09:51:32 -05:00
  • 5d1edf6d86 Merge remote-tracking branch 'origin/2.4/dev' into vlb2 Josh Patterson 2025-09-24 17:32:08 -04:00
  • a91e8b26f6 Merge pull request #15066 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-24 16:51:07 -04:00
  • c836dd2acd set interface for network.ip_addrs for hypervisors #15066 Josh Patterson 2025-09-24 16:50:29 -04:00
  • e826ea5d04 Merge pull request #15065 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-24 15:20:31 -04:00
  • 3a87af805f update service file, use salt.minion state to update mine_functions #15065 Josh Patterson 2025-09-24 15:19:46 -04:00
  • 328ac329ec Merge pull request #15064 from Security-Onion-Solutions/reyesj2-patch-1 Jorge Reyes 2025-09-24 09:04:14 -05:00
  • a3401aad11 typo #15064 Jorge Reyes 2025-09-24 08:56:40 -05:00
  • 5a67b89a80 Update so-saltstack-update #15063 Josh Patterson 2025-09-24 09:49:02 -04:00
  • 431f71cc82 Merge pull request #15047 from Security-Onion-Solutions/reyesj2/es-fleet-patch Jorge Reyes 2025-09-24 07:45:43 -05:00
  • 23a9780ebb Merge pull request #15061 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-23 15:56:47 -04:00
  • 4587301cca only update mine for managerhype during setup #15061 Josh Patterson 2025-09-23 15:56:00 -04:00
  • 9cb8ebbaa7 Merge pull request #15056 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-23 09:05:55 -04:00
  • 14ddbd32ad salt-minion service file changes for hypervisor and managerhype #15056 Josh Patterson 2025-09-22 16:38:40 -04:00
  • 4599b95ae7 separate salt-minion service file Josh Patterson 2025-09-22 16:37:16 -04:00
  • c92dc580a2 centralize MINION_ROLE lookup_role #15047 reyesj2 2025-09-19 13:17:52 -05:00
  • 4666aa9818 Merge branch 'reyesj2/es-fleet-patch' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch reyesj2 2025-09-19 12:55:08 -05:00
  • f066baf6ba use only the characters up to the last seen '_' reyesj2 2025-09-19 12:54:04 -05:00
  • ba710c9944 import or eval should get updated Jorge Reyes 2025-09-19 12:26:08 -05:00
  • 198695af03 Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch reyesj2 2025-09-19 11:56:53 -05:00
  • fec78f5fb5 Merge pull request #15051 from Security-Onion-Solutions/reyesj2/patch-lgchk Jorge Reyes 2025-09-19 11:41:55 -05:00
  • d03dd7ac2d check for oom kill only in the last 24 hours #15051 reyesj2 2025-09-19 11:32:13 -05:00
  • d2dd52b42a Merge branch 'reyesj2/patch-lgchk' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch #15052 reyesj2 2025-09-19 11:12:09 -05:00
  • c9db52433f add oom check to so-log-check reyesj2 2025-09-19 11:08:42 -05:00
  • 138849d258 more typos reyesj2 2025-09-18 17:33:42 -05:00
  • a9ec12e402 Merge branch 'reyesj2/es-fleet-patch' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch reyesj2 2025-09-18 16:41:34 -05:00
  • 87281efc24 typo reyesj2 2025-09-18 16:41:33 -05:00
  • 29ac4f23c6 typo reyesj2 2025-09-18 16:26:37 -05:00
  • 878a3f8962 flip logic to check there aren't two default policies and fleet-default-output is disabled reyesj2 2025-09-18 16:05:34 -05:00
  • 21e27bce87 Merge branch 'reyesj2/es-fleet-patch' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch reyesj2 2025-09-18 15:42:28 -05:00
  • 336ca0dbbd typos reyesj2 2025-09-18 15:42:25 -05:00
  • d9eba3cd0e typo reyesj2 2025-09-18 15:17:22 -05:00
  • 81b7e2b420 Merge remote-tracking branch 'origin' into reyesj2/es-fleet-patch reyesj2 2025-09-18 14:34:41 -05:00
  • cd5483623b update import/eval fleet output config -- try to prevent corrupt dual 'default' output polices from having a successful installation reyesj2 2025-09-18 14:33:34 -05:00
  • faa112eddf update last so-elastic-fleet-common functions reyesj2 2025-09-18 12:18:16 -05:00
  • 422b4bc4c9 Add local custom Playbooks 2.4/playbooklocalrepo DefensiveDepth 2025-09-18 12:22:20 -04:00
  • 6cdd88808a Add local custom Playbooks DefensiveDepth 2025-09-18 12:07:21 -04:00
  • f663f22628 elastic_fleet_integration_id reyesj2 2025-09-18 10:27:54 -05:00
  • 8b07ff453d elastic_fleet_integration_policy_package_version reyesj2 2025-09-18 10:21:07 -05:00
  • 24a0fa3f6d add fleet_api wrapper for curl retries reyesj2 2025-09-18 10:15:57 -05:00
  • a5011b398d add err check and retries to elastic_fleet_integration_policy_package_name and associated scripts reyesj2 2025-09-18 09:39:56 -05:00
  • 5b70398c0a add error check & retries to elastic_fleet_integration_policy_names and associated scripts reyesj2 2025-09-17 15:35:20 -05:00
  • f3aaee1e41 update elastic_fleet_agent_policy_ids scripts already check rc reyesj2 2025-09-17 14:59:41 -05:00
  • d0e875928d add error checking and retries for elastic_fleet_installed_packages & associated script reyesj2 2025-09-17 14:59:13 -05:00
  • 3e16bc8335 Merge branch '2.4/dev' of github.com:Security-Onion-Solutions/securityonion into reyesj2/es-fleet-patch reyesj2 2025-09-17 14:37:43 -05:00
  • c1d85493df Merge pull request #15045 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2025-09-17 14:23:23 -04:00
  • e01d0f81ea Update 2-4.yml #15045 Doug Burks 2025-09-17 14:22:40 -04:00
  • 376d0f3295 Merge pull request #15044 from Security-Onion-Solutions/jertel/wip Jason Ertel 2025-09-17 14:22:02 -04:00
  • 4418623f73 bump version #15044 Jason Ertel 2025-09-17 14:20:44 -04:00
  • d1f4e26e29 Merge pull request #15043 from Security-Onion-Solutions/2.4/dev 2.4.180-20250916 Doug Burks 2025-09-17 14:15:32 -04:00
  • 5166db1caa Merge pull request #15042 from Security-Onion-Solutions/2.4/main #15043 #15041 Doug Burks 2025-09-17 13:13:46 -04:00
  • ff5ad586af Merge pull request #15040 from Security-Onion-Solutions/dougburks-patch-1 Doug Burks 2025-09-17 13:00:26 -04:00
  • 9e24d21282 remove unused functions from so-elastic-fleet-common reyesj2 2025-09-17 11:41:27 -05:00
  • 5806999f63 add error check & retries to elastic_fleet_bulk_package_install reyesj2 2025-09-17 11:39:06 -05:00
  • 4dae1afe0b Add files via upload #15040 Doug Burks 2025-09-17 12:37:29 -04:00
  • 456cad1ada Update DOWNLOAD_AND_VERIFY_ISO.md for 2.4.180 Doug Burks 2025-09-17 12:36:55 -04:00
  • ded520c2c1 Merge remote-tracking branch 'origin/2.4/dev' into idstools-refactor DefensiveDepth 2025-09-17 10:42:43 -04:00
  • a77157391c remove idstools DefensiveDepth 2025-09-17 10:42:05 -04:00
  • 063a2b3348 update elastic_fleet_package_version_check & elastic_fleet_package_install to add error checking + retries. Update related scripts reyesj2 2025-09-16 21:56:53 -05:00
  • bcd2e95fbe add error checking and retries to elastic_fleet_integration_policy_upgrade reyesj2 2025-09-16 21:22:03 -05:00
  • 94e8cd84e6 because of more aggressive exits use salt to rerun script as needed reyesj2 2025-09-16 21:07:33 -05:00
  • 948d72c282 add error check and retry to elastic_fleet_integration_update reyesj2 2025-09-16 21:07:02 -05:00
  • bdeb92ab05 add err check and retries for elastic_fleet_integration_create reyesj2 2025-09-16 20:30:45 -05:00
  • fdb5ad810a add err check and retries around func elastic_fleet_policy_create reyesj2 2025-09-16 20:10:48 -05:00
  • f588a80ec7 fix jq error when indices don't exist (seen on fresh installs when fleet hasn't ever been installed) reyesj2 2025-09-16 10:37:26 -05:00
  • 562b7e54cb Merge pull request #15031 from Security-Onion-Solutions/reyesj2/kfoutput Jorge Reyes 2025-09-15 15:33:48 -05:00
  • 3c847bca8b Merge pull request #15034 from Security-Onion-Solutions/reyesj2/patch31 Jorge Reyes 2025-09-15 15:28:42 -05:00
  • ce2cc26224 run so-elastic-agent-gen-installers #15034 reyesj2 2025-09-15 15:25:38 -05:00
  • f3c574679c Merge pull request #15033 from Security-Onion-Solutions/reyesj2/patch31 Jorge Reyes 2025-09-15 15:21:46 -05:00
  • 5da3fed1ce 8.18.6 agent #15033 reyesj2 2025-09-15 15:19:43 -05:00
  • e6bcf5db6b fix case of broken kafka output policy when new receiver is added and secret storage was overwritten #15031 reyesj2 2025-09-15 13:46:02 -05:00
  • 4d24c57903 Merge pull request #15028 from Security-Onion-Solutions/reyesj2/ea-alerter Jorge Reyes 2025-09-12 14:45:20 -05:00
  • 0606c0a454 agent monitor template & dataset name update #15028 reyesj2 2025-09-12 14:26:22 -05:00
  • bb984e05e3 Merge pull request #15026 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-12 14:34:18 -04:00
  • b35b0aaf2c Merge pull request #14941 from Security-Onion-Solutions/reyesj2/lgest Jorge Reyes 2025-09-12 13:22:40 -05:00
  • 62f04fa5dd fix role check #15026 Josh Patterson 2025-09-12 14:09:30 -04:00
  • d89df5f0dd Merge pull request #15025 from Security-Onion-Solutions/2.4/fixes Josh Brower 2025-09-12 13:44:03 -04:00
  • f0c1922600 Support endpoint logs with no host.ip field #15025 DefensiveDepth 2025-09-12 13:31:34 -04:00
  • ab2cdd18ed Support endpoint logs with no host.ip field DefensiveDepth 2025-09-12 13:29:43 -04:00
  • 889bb7ddf4 Merge pull request #15024 from Security-Onion-Solutions/reyesj2/pypy Jorge Reyes 2025-09-12 11:11:34 -05:00
  • a959f90d0b Merge remote-tracking branch 'origin/2.4/dev' into reyesj2/pypy #15024 #14958 reyesj2 2025-09-12 11:05:54 -05:00
  • a54cd004d6 Merge pull request #15013 from Security-Onion-Solutions/reyesj2/kfoutput Jorge Reyes 2025-09-12 07:34:54 -05:00
  • 5100032fbd Merge pull request #15022 from Security-Onion-Solutions/reyesj2/cfqdn-recv Jorge Reyes 2025-09-11 16:33:41 -05:00
  • 0f235baa7e receiver custom fqdn #15022 reyesj2 2025-09-11 16:14:43 -05:00
  • e5660b8c8e Merge pull request #15020 from Security-Onion-Solutions/reyesj2/essuriroll Jorge Reyes 2025-09-11 16:03:30 -05:00
  • 588a1b86d1 suricata metadata index rollover 1d -> 30d #15020 reyesj2 2025-09-11 15:46:45 -05:00
  • 46f0afa24b Merge pull request #15019 from Security-Onion-Solutions/reyesj2/ea-alerter Jorge Reyes 2025-09-11 14:34:46 -05:00
  • a7651b2734 lower filestream fingerprint length #15019 reyesj2 2025-09-11 14:30:49 -05:00
  • 890f76e45c avoid delay in log ingest after a forced kafka output policy update #15013 reyesj2 2025-09-10 20:21:11 -05:00
  • 03892bad5e Merge pull request #15015 from Security-Onion-Solutions/vlb2 Josh Patterson 2025-09-10 14:58:41 -04:00
  • e6eecc93c8 Merge pull request #15012 from Security-Onion-Solutions/reyesj2/ea-alerter #15015 Jorge Reyes 2025-09-10 13:19:21 -05:00
  • 8dc0f8d20e fix elastic agent ssl unpack error reyesj2 2025-09-10 12:49:30 -05:00