thomashaw
|
1938d6544c
|
Disabling double notifications in KDE - wip 3/?
|
2022-11-07 18:00:12 +00:00 |
|
thomashaw
|
177f10d188
|
Disabling double notifications in KDE - wip 2/?
|
2022-11-07 17:17:05 +00:00 |
|
thomashaw
|
4b5182b714
|
Disabling double notifications in KDE - wip
|
2022-11-07 16:28:46 +00:00 |
|
thomashaw
|
0573f60623
|
dynamic ip service file + requires changes
|
2022-07-10 18:58:18 +01:00 |
|
thomashaw
|
abda4c54c3
|
DO NOT MERGE -- temporary change for testing, TODO: parameterise elastalert.service rather than hard-coded aaa_admin
|
2022-04-23 12:04:15 +01:00 |
|
thomashaw
|
0e2edb803b
|
use env file to avoid proxy on EA
|
2022-04-21 11:07:09 +01:00 |
|
thomashaw
|
d2b31ecfbf
|
updated elastalert rule execalerter to include 'raise' keyword
|
2022-04-19 16:12:25 +01:00 |
|
thomashaw
|
0dac6feff1
|
ea fix
|
2022-03-01 16:19:25 +00:00 |
|
thomashaw
|
f91ba131fb
|
fix
|
2022-03-01 16:18:58 +00:00 |
|
thomashaw
|
59884a72f9
|
updating generated rule format and rule target paths
|
2022-02-24 17:23:11 +00:00 |
|
thomashaw
|
ecefe2370f
|
fixing typo
|
2022-02-24 12:10:33 +00:00 |
|
thomashaw
|
e048c2a328
|
updating aaa_client too...
|
2022-02-23 17:33:08 +00:00 |
|
thomashaw
|
5be33225d7
|
updated auditbeat config to track system logins and user changes
|
2022-02-23 17:31:13 +00:00 |
|
thomashaw
|
2b5fdfaa21
|
working... now testing w/o explicit PyYAML version
|
2022-02-22 14:25:20 +00:00 |
|
thomashaw
|
fc42affef1
|
fixing typo + updating test scenario
|
2022-02-22 13:47:34 +00:00 |
|
Z. Cliffe Schreuders
|
e464835192
|
test scenario update, fixing PyYAML install issue...
|
2022-02-21 13:23:30 +00:00 |
|
thomashaw
|
f312c8beb3
|
big_merge merge commit
|
2022-02-17 21:34:08 +00:00 |
|
thomashaw
|
a1a15fc731
|
elastalert dependency fix wip
|
2022-02-08 21:15:50 +00:00 |
|
thomashaw
|
65adb0d448
|
update pip3
|
2022-02-08 20:31:03 +00:00 |
|
thomashaw
|
5810b462f5
|
update pip3
|
2022-02-08 18:38:13 +00:00 |
|
thomashaw
|
7a2a20de0a
|
wip
|
2022-02-08 17:36:28 +00:00 |
|
thomashaw
|
0a06435dc9
|
big_merge
|
2021-11-22 16:26:34 +00:00 |
|
thomashaw
|
7c71c45d29
|
ELK merge - includes new Elastalert, Logstash, Kibana, Elastalert, Auditbeat, Filebeat modules and other misc changes.
|
2021-11-15 19:17:11 +00:00 |
|
ts
|
6c1a1f31d2
|
ELK watcher WIP
|
2018-11-16 10:19:09 +00:00 |
|
ts
|
b34a84c9d3
|
Auditbeat audit_rules.erb template added
|
2018-11-16 10:19:09 +00:00 |
|
ts
|
63d2c54f1e
|
Auditbeat pushing correctly with file integrity module
|
2018-11-16 10:19:09 +00:00 |
|
ts
|
56b2953c0d
|
ELK auditbeat module - wip
|
2018-11-16 10:19:09 +00:00 |
|
ts
|
07d76f13cc
|
ELK stack installing and working. Test with a second VM pushing logs with filebeat.
|
2018-11-16 10:19:09 +00:00 |
|
ts
|
9497e40d4a
|
puppet ELK stack: utilities/elasticsearch, utilities/filebeat, utilities/kibana, utilities/logstash - needs parameterising + requires ubuntu64 base.
|
2018-11-16 10:19:09 +00:00 |
|