Commit Graph

29 Commits

Author SHA1 Message Date
thomashaw
1938d6544c Disabling double notifications in KDE - wip 3/? 2022-11-07 18:00:12 +00:00
thomashaw
177f10d188 Disabling double notifications in KDE - wip 2/? 2022-11-07 17:17:05 +00:00
thomashaw
4b5182b714 Disabling double notifications in KDE - wip 2022-11-07 16:28:46 +00:00
thomashaw
0573f60623 dynamic ip service file + requires changes 2022-07-10 18:58:18 +01:00
thomashaw
abda4c54c3 DO NOT MERGE -- temporary change for testing, TODO: parameterise elastalert.service rather than hard-coded aaa_admin 2022-04-23 12:04:15 +01:00
thomashaw
0e2edb803b use env file to avoid proxy on EA 2022-04-21 11:07:09 +01:00
thomashaw
d2b31ecfbf updated elastalert rule execalerter to include 'raise' keyword 2022-04-19 16:12:25 +01:00
thomashaw
0dac6feff1 ea fix 2022-03-01 16:19:25 +00:00
thomashaw
f91ba131fb fix 2022-03-01 16:18:58 +00:00
thomashaw
59884a72f9 updating generated rule format and rule target paths 2022-02-24 17:23:11 +00:00
thomashaw
ecefe2370f fixing typo 2022-02-24 12:10:33 +00:00
thomashaw
e048c2a328 updating aaa_client too... 2022-02-23 17:33:08 +00:00
thomashaw
5be33225d7 updated auditbeat config to track system logins and user changes 2022-02-23 17:31:13 +00:00
thomashaw
2b5fdfaa21 working... now testing w/o explicit PyYAML version 2022-02-22 14:25:20 +00:00
thomashaw
fc42affef1 fixing typo + updating test scenario 2022-02-22 13:47:34 +00:00
Z. Cliffe Schreuders
e464835192 test scenario update, fixing PyYAML install issue... 2022-02-21 13:23:30 +00:00
thomashaw
f312c8beb3 big_merge merge commit 2022-02-17 21:34:08 +00:00
thomashaw
a1a15fc731 elastalert dependency fix wip 2022-02-08 21:15:50 +00:00
thomashaw
65adb0d448 update pip3 2022-02-08 20:31:03 +00:00
thomashaw
5810b462f5 update pip3 2022-02-08 18:38:13 +00:00
thomashaw
7a2a20de0a wip 2022-02-08 17:36:28 +00:00
thomashaw
0a06435dc9 big_merge 2021-11-22 16:26:34 +00:00
thomashaw
7c71c45d29 ELK merge - includes new Elastalert, Logstash, Kibana, Elastalert, Auditbeat, Filebeat modules and other misc changes. 2021-11-15 19:17:11 +00:00
ts
6c1a1f31d2 ELK watcher WIP 2018-11-16 10:19:09 +00:00
ts
b34a84c9d3 Auditbeat audit_rules.erb template added 2018-11-16 10:19:09 +00:00
ts
63d2c54f1e Auditbeat pushing correctly with file integrity module 2018-11-16 10:19:09 +00:00
ts
56b2953c0d ELK auditbeat module - wip 2018-11-16 10:19:09 +00:00
ts
07d76f13cc ELK stack installing and working. Test with a second VM pushing logs with filebeat. 2018-11-16 10:19:09 +00:00
ts
9497e40d4a puppet ELK stack: utilities/elasticsearch, utilities/filebeat, utilities/kibana, utilities/logstash - needs parameterising + requires ubuntu64 base. 2018-11-16 10:19:09 +00:00