Marco Ochse
c60d53ca3f
Merge pull request #754 from shaderecker/cloud-region
...
Explicitly add region name to clouds.yaml
2021-01-26 16:38:41 +01:00
Sebastian Haderecker
e7a41feef4
Explicitly add region name
2021-01-26 16:24:09 +01:00
t3chn0m4g3
ee3d667615
bump dionaea to 0.11.0
2021-01-19 10:59:32 +00:00
Marco Ochse
df27ba4e5f
Merge pull request #750 from shaderecker/patch-2
...
Update Ansible Docu
2021-01-14 09:43:29 +01:00
Sebastian Haderecker
459db01e23
Update Ansible Docu
...
Add disclaimer about Ansible 2.10 & how to install with pip
2021-01-13 23:53:39 +01:00
Marco Ochse
f767179cc9
Merge pull request #749 from shaderecker/pip3
...
Ansible: Set pip executable to pip3
2021-01-12 17:14:46 +01:00
Sebastian Haderecker
749e7ee246
Set to pip3 to avoid Python Autodiscovery
2021-01-12 17:04:03 +01:00
Marco Ochse
3a7eda96fa
Merge pull request #747 from shaderecker/patch-1
...
Add MEDICAL to tpot.conf.dist
2021-01-08 12:02:23 +01:00
Sebastian Haderecker
43ae92cf44
Remove redundant tpot.conf.dist file content
2021-01-08 11:34:03 +01:00
Sebastian Haderecker
2fb51f3b3a
Add MEDICAL to tpot.conf.dist
2021-01-08 11:31:58 +01:00
t3chn0m4g3
d2dc43e1ef
Update internet IF retrieval
...
To be consistent with @adepasquale PR #746 fatt, glutton and p0f Dockerfiles were updated accordingly.
2021-01-06 17:05:09 +00:00
Marco Ochse
db73a0656e
Merge pull request #746 from adepasquale/master
...
Change method to get default Suricata interface
@adepasquale Thanks again!
2021-01-06 17:45:32 +01:00
Andrea De Pasquale
b3b983afe6
Change method to get default Suricata interface
...
On some systems, interface number 2 is not always the correct one.
With AWK we now collect the first active interface having both an
address and a broadcast.
2021-01-06 11:14:24 +01:00
Marco Ochse
273cab4759
Update general-issue-for-t-pot.md
2021-01-05 16:03:42 +01:00
t3chn0m4g3
e1745bdea1
fix broken sqlite db
2020-12-28 21:49:28 +00:00
t3chn0m4g3
c34570f665
remove docker parallel pulls
2020-12-28 20:54:09 +00:00
t3chn0m4g3
020cbb5355
avoid ghcr.io because of slow transfers
2020-12-28 20:37:47 +00:00
t3chn0m4g3
aea14c9ead
docker pull background
2020-12-28 17:46:05 +00:00
t3chn0m4g3
b57f6ddd1e
remove netselect-apt
...
causes too many unpredictable errors
#733 as the latest example
2020-12-28 10:40:19 +00:00
t3chn0m4g3
af6ce8854d
bump elastic stack to 7.10.1
2020-12-10 15:20:18 +00:00
t3chn0m4g3
6069b214a5
bump ewsposter to 1.12
2020-12-10 11:40:53 +00:00
Marco Ochse
252051dfe7
Merge pull request #731 from shaderecker/patch-1
...
More Python 3 stuff
2020-12-04 15:41:27 +01:00
Sebastian Haderecker
f9fa1bcc74
Fix setup on Debian
...
On Debian there are not the same preinstalled packages as on Ubuntu.
Fix the compilation of netifaces, which requires gcc and python3-dev.
2020-12-04 14:42:32 +01:00
t3chn0m4g3
f3f9f6ae72
cleanup
2020-12-03 00:01:38 +00:00
t3chn0m4g3
bdf095367d
prep for ewsposter 1.11
2020-12-02 23:21:23 +00:00
Sebastian Haderecker
4abb0e5ce6
Missed this one
...
Python 3 is our friend :D
2020-12-02 23:56:54 +01:00
t3chn0m4g3
ba87ebfdaa
update objects for Elastic Stack 7.10.0
2020-12-02 22:54:54 +00:00
t3chn0m4g3
8a7e81815e
prep for Elastic Stack 7.10.0
2020-12-02 22:36:17 +00:00
Marco Ochse
17eff81e9c
Merge pull request #728 from shaderecker/patch-1
...
Update pip dependency to Python3
2020-11-30 20:06:05 +01:00
Marco Ochse
f8f1bc1757
Merge pull request #727 from adepasquale/suricata-update
...
Suricata: use suricata-update for rule management
2020-11-30 20:05:24 +01:00
Andrea De Pasquale
87a27e4f2b
Suricata: use suricata-update for rule management
...
As a bonus we can now run "suricata-update" using docker-exec,
triggering both a rule update and a Suricata rule reload.
2020-11-30 17:56:14 +01:00
Sebastian Haderecker
7f8f3a01c3
Update pip dependency to Python3
2020-11-30 17:27:28 +01:00
Marco Ochse
2ecef8c607
enable MQTT
...
as eagle eyed by @adepasquale
2020-11-27 19:07:12 +01:00
Marco Ochse
d992a25a0a
Merge pull request #726 from adepasquale/suricata-yaml-6.0.x
...
Suricata: update suricata.yaml config to 6.0.x
2020-11-27 18:55:57 +01:00
Andrea De Pasquale
73a5847753
Suricata: update suricata.yaml config to 6.0.x
...
Merge in the latest updates from suricata-6.0.x while at the same time
keeping the custom T-Pot configuration.
https://github.com/OISF/suricata/blob/suricata-6.0.0/suricata.yaml.in
2020-11-26 19:16:01 +01:00
Marco Ochse
c976aea73e
Merge pull request #725 from adepasquale/suricata-yaml-5.x
...
Suricata: update suricata.yaml config to 5.x
2020-11-26 16:23:50 +01:00
t3chn0m4g3
4ada38988c
bump cowrie to 2.2.0
2020-11-26 08:17:09 +00:00
Andrea De Pasquale
0010f99662
Suricata: disable eve.stats since it's unused
...
Prevent the error below by disabling stats globally and in eve-log:
<Error> - [ERRCODE: SC_ERR_STATS_LOG_GENERIC(278)] - eve.stats: stats are disabled globally: set stats.enabled to true.
2020-11-25 17:07:49 +01:00
Andrea De Pasquale
e2f76c44cb
Suricata: update suricata.yaml config to 5.x
...
Merge in the latest updates from suricata-5.x while at the same time
keeping the custom T-Pot configuration.
https://github.com/OISF/suricata/blob/master-5.0.x/suricata.yaml.in
2020-11-25 15:51:41 +01:00
t3chn0m4g3
e26853c7fa
bump suricata to 5.0.4
2020-10-28 17:53:23 +00:00
t3chn0m4g3
d64cbe6741
bump ipphoney to latest master
2020-10-28 17:34:28 +00:00
t3chn0m4g3
c3809b5a98
bump heralding to latest master
2020-10-28 17:27:09 +00:00
t3chn0m4g3
a3d40cc57c
bump spiderfoot to 3.2.1
2020-10-28 17:08:55 +00:00
t3chn0m4g3
e3fda4d464
bump dionaea to 0.9.2
2020-10-28 16:45:53 +00:00
t3chn0m4g3
4bf245d13b
bump conpot to latest master
2020-10-28 13:56:52 +00:00
t3chn0m4g3
92925cecbd
bump dicompot to latest master
2020-10-27 21:30:33 +00:00
t3chn0m4g3
f204cdf9b8
bump elk to 7.3
2020-10-27 19:43:32 +00:00
t3chn0m4g3
ff4a394e3b
reverting elk to 7.9.1
2020-10-15 12:24:46 +00:00
Marco Ochse
ce7b79b71a
Merge pull request #707 from brianlechthaler/patch-3
...
Bump Elastic dependencies to 7.9.2
2020-10-15 13:37:11 +02:00
t3chn0m4g3
b28cc2edd0
prepare for new ewsposter
2020-10-15 09:14:30 +00:00