mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2026-06-15 06:38:40 +02:00
acc9b8062e
Removes all Strelka container salt states and infrastructure references, replaced by the native fileanalyze module in sensoroni. Removed: - salt/strelka/ directory (all container states, configs, tools) - Docker container definitions for 6 Strelka containers - Firewall rules for strelka_frontend - Container references in containers.map.jinja - top.sls and allowed_states references to strelka/strelka.manager - so-minion add_strelka_to_minion() function and call sites - so-deny strelka_frontend entry - Logstash strelka bind mount - Logrotate strelka config - Telegraf strelka file monitoring - so-sensor-clean strelka cleanup - so-image-common strelka container images Kept (still needed): - Elasticsearch index/ingest pipeline (ingests fileanalyze output) - Elastic agent/fleet log collection config - SOC strelkaengine (YARA rule management) - Kibana saved objects (dashboards)
164 lines
5.1 KiB
YAML
164 lines
5.1 KiB
YAML
logrotate:
|
|
config:
|
|
"/opt/so/log/nginx/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/nginx/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/soc/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/soc/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/kratos/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/kratos/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/hydra/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/hydra/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/kibana/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/kibana/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/influxdb/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/influxdb/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/elastalert/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/elastalert/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/soctopus/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/soctopus/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/elasticfleet/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/elasticfleet/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/elasticfleet/*_x_ndjson":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/elasticfleet/*.ndjson
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/elasticsearch/*indices-delete*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/elasticsearch/*indices-delete.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/suricata/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/suricata/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/mysql/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/mysql/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/telegraf/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/telegraf/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/redis/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/redis/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/sensoroni/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/sensoroni/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/salt/so-salt-minion-check":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/salt/so-salt-minion-check
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/salt/minion":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/salt/minion
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/salt/master":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/salt/master
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/nsm/idh/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /nsm/idh/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/playbook/*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/playbook/*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/sensor_clean_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/sensor_clean.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|
|
"/opt/so/log/agents/agent-monitor*_x_log":
|
|
description: List of logrotate options for this file.
|
|
title: /opt/so/log/agents/agent-monitor*.log
|
|
advanced: True
|
|
multiline: True
|
|
global: True
|
|
forcedType: "[]string"
|