t3chn0m4g3
f204cdf9b8
bump elk to 7.3
2020-10-27 19:43:32 +00:00
t3chn0m4g3
ff4a394e3b
reverting elk to 7.9.1
2020-10-15 12:24:46 +00:00
Marco Ochse
ce7b79b71a
Merge pull request #707 from brianlechthaler/patch-3
...
Bump Elastic dependencies to 7.9.2
2020-10-15 13:37:11 +02:00
t3chn0m4g3
b28cc2edd0
prepare for new ewsposter
2020-10-15 09:14:30 +00:00
Brian Lechthaler
84a741ec64
IMPORTANT: Fix Node Version
...
Bump node version to `10.22.1-alpine`
**KIBANA WILL NOT WORK WITHOUT THIS**
2020-10-07 13:53:21 -07:00
Brian Lechthaler
d351a89096
Bump Kibana version to 7.9.2
2020-10-04 18:05:16 -07:00
Brian Lechthaler
488da48df7
Bump Logstash version to 7.9.2
2020-10-04 18:04:15 -07:00
Brian Lechthaler
85da099cd0
Bump Elasticsearch to 7.9.2
2020-10-04 18:03:00 -07:00
Brian Lechthaler
b1d8e293de
add DockerHub back in cap filter
...
see https://github.com/telekom-security/tpotce/pull/691#issuecomment-688648225
2020-09-08 10:45:58 -07:00
Brian Lechthaler
7fdf9edb60
Update Suricata Capture Filter for New Docker Repo
2020-09-07 19:57:15 -07:00
t3chn0m4g3
0e7abb8d2c
restore mibfix for conpot
2020-09-07 15:46:52 +00:00
t3chn0m4g3
1ee9c29805
set new container registry, point installer to branch
2020-09-04 13:29:14 +00:00
t3chn0m4g3
2e5639a50b
fix links
2020-09-04 13:01:21 +00:00
listbot
47dca8b835
continue pin / prep images ghcr
2020-09-04 12:37:28 +00:00
listbot
1ac79d6be7
begin prep for move to GitHub Container Registry
...
Start pinning Dockerfiles to specific releases / commits
2020-09-02 15:18:32 +00:00
t3chn0m4g3
54a6a944aa
prep for ipphoney
2020-08-25 12:25:59 +00:00
t3chn0m4g3
b86d2c715b
prep for ipphoney
2020-08-24 21:36:08 +00:00
t3chn0m4g3
8f06b5b499
start prepping for ipphoney
2020-08-24 15:55:50 +00:00
t3chn0m4g3
6ec5a04802
fix deps issue with conpot
2020-08-24 15:55:10 +00:00
t3chn0m4g3
5080151b7c
prep for elk 7.9
2020-08-24 10:35:46 +00:00
t3chn0m4g3
c1f7146800
prep elk stack for 7.9.0
2020-08-20 15:03:16 +00:00
t3chn0m4g3
743616fa09
update conpot to latest working master
2020-08-13 16:30:37 +00:00
t3chn0m4g3
6e18b6f660
bump elasticpot to latest master
2020-08-13 10:37:03 +00:00
t3chn0m4g3
50d67fc286
bump spiderfoot to 3.1 final
...
Fix Spiderfoot issue not showing current scan
2020-08-13 09:06:49 +00:00
t3chn0m4g3
c28642932a
bump elk stack to 7.8.1
2020-08-13 08:34:44 +00:00
t3chn0m4g3
8af45c9440
prevent cowrie from unwanted log rotation
2020-07-07 00:00:57 +00:00
t3chn0m4g3
6d29f504df
provide fix for #669
2020-07-06 23:30:11 +00:00
t3chn0m4g3
618ee3c6e9
tweaking
...
add kibana export / import config function
ewsposter remove transmitting old elasticpot data (need update)
final export of all objects
2020-06-29 10:45:33 +00:00
t3chn0m4g3
3a418534d8
tweaking
...
random reboot times for crontab
remix compose files
some tweaking
2020-06-28 20:03:14 +00:00
t3chn0m4g3
4e6510b5c7
dicompot tweaking
2020-06-27 00:37:12 +00:00
t3chn0m4g3
16a7cdb975
tweaking
...
Update logstash config for new Dicompot fields
Revert Dionaea back to 0.8.0, latest master was unstable
2020-06-26 23:48:48 +00:00
t3chn0m4g3
0031980416
cleanup and prepare for docker image rebuilds
2020-06-26 14:34:05 +00:00
t3chn0m4g3
6a98496e8c
cleanup and prepare for docker image rebuilds
2020-06-25 22:58:23 +00:00
t3chn0m4g3
ec8f5d9b66
cleanup and prepare for docker image rebuilds
2020-06-25 16:14:37 +00:00
t3chn0m4g3
238a08b055
tweaking
...
cleanup index-pattern
add dicompot log to logstash
2020-06-24 13:21:29 +00:00
t3chn0m4g3
99d8cf9b32
fix for query fields
2020-06-24 10:22:09 +00:00
t3chn0m4g3
81c6351cf1
fix for keeping daily index
2020-06-23 21:40:38 +00:00
t3chn0m4g3
65e849cf33
bump elk stack to 7.8
2020-06-21 21:11:21 +00:00
t3chn0m4g3
a396356785
add honeysap logstash config
2020-06-19 22:53:56 +00:00
t3chn0m4g3
a7c653e7fe
start integrating honeysap
2020-06-19 11:54:50 +00:00
t3chn0m4g3
697c5cb3f6
begin integration of dicompot
2020-06-18 16:38:43 +00:00
t3chn0m4g3
2882668826
Add a new elasticsearch honeypot
...
adjust installer
adjust elasticpot configs to T-Pot's environment
create Dockerfile
adjust logstash config
update Readme
2020-06-17 18:09:59 +00:00
t3chn0m4g3
27a5db9edf
alpine 3.11 needs py3-pip in extra package
2020-06-16 11:28:56 +00:00
t3chn0m4g3
4cc1aa08c2
tweaking
...
Bump ELK stack to 7.7.1
Install curator via pip
Some tweaks
2020-06-08 21:56:16 +00:00
t3chn0m4g3
be918033e0
bump to ELK 7.7.0
2020-05-14 16:27:57 +00:00
t3chn0m4g3
680194adf7
prep for new listbot FQDN
2020-05-12 09:19:09 +00:00
Marco Ochse
be7afd8042
Merge pull request #636 from dtag-dev-sec/master
...
merge master to dev
2020-05-12 10:31:34 +02:00
Marco Ochse
fea6b8a646
correct typo
...
fixes #635
2020-05-11 17:21:22 +02:00
Marco Ochse
cbefe6a074
Update capture-filter.bpf
2020-04-22 17:49:59 +02:00
Marco Ochse
ed73d83317
Update update.sh
2020-04-22 17:48:32 +02:00
Marco Ochse
34bbbf59ac
Update Dockerfile
2020-04-22 17:16:19 +02:00
Marco Ochse
a6c8d3d712
Update Dockerfile
2020-04-22 17:15:44 +02:00
Marco Ochse
1a7b3b3795
Load listbot data from OTC
2020-04-22 16:50:41 +02:00
t3chn0m4g3
73e1842c16
offload listbot from netlify CDN
2020-04-02 13:12:11 +00:00
t3chn0m4g3
2201e072f6
testing honeysap
2020-03-12 16:02:43 +00:00
t3chn0m4g3
fb06c46793
Merge branch 'dev' of https://github.com/dtag-dev-sec/tpotce into dev
2020-03-09 10:44:36 +00:00
t3chn0m4g3
f76d8ab161
update delivery window
2020-03-09 10:43:52 +00:00
Marco Ochse
a256ecedc8
Merge branch 'master' into dev
2020-03-09 11:20:39 +01:00
t3chn0m4g3
fb3777141b
tanner, prepare merger w/ master
2020-03-09 09:44:26 +00:00
t3chn0m4g3
a18304dfdc
tanner, prepare merger w/ master
2020-03-09 09:35:19 +00:00
t3chn0m4g3
6a703544c6
tweaking
2020-03-05 23:58:27 +00:00
t3chn0m4g3
941a0e1587
tweaking
2020-03-05 23:22:03 +00:00
t3chn0m4g3
692a21ddb1
tanner tweaking and testing
...
include unsecure, fix name bug
2020-03-05 23:12:49 +00:00
t3chn0m4g3
df22adb45d
bump elk stack to 7.6.1
2020-03-05 21:20:11 +00:00
t3chn0m4g3
07c68c85bb
tweaking
2020-03-04 14:36:03 +00:00
t3chn0m4g3
a4227e6a9f
tweaking
2020-03-04 12:12:12 +00:00
t3chn0m4g3
3b8c959c66
tweaking
2020-03-03 12:30:57 +00:00
t3chn0m4g3
5d7a6f3270
tweaking
2020-03-02 15:23:05 +00:00
t3chn0m4g3
53e9470d58
cleanup
2020-02-27 10:35:50 +00:00
t3chn0m4g3
bf7d1299ca
tweaking
2020-02-26 14:22:48 +00:00
t3chn0m4g3
70dca02ce4
tweaking
2020-02-25 16:59:22 +00:00
t3chn0m4g3
6bfcf8b1c4
tweaking
2020-02-24 16:43:34 +00:00
t3chn0m4g3
bd0e6936eb
bump heralding to latest master
...
fixed by https://github.com/johnnykv/heralding/issues/129#event-3058184614
2020-02-21 11:38:29 +00:00
t3chn0m4g3
545209dce6
fix for honeytrap
2020-02-15 15:40:47 +00:00
t3chn0m4g3
153f7be9dc
cleanup
2020-02-14 17:26:53 +00:00
t3chn0m4g3
faa5667246
bump adbhoney, cowrie, honeytrap to 20.06
2020-02-14 17:22:30 +00:00
t3chn0m4g3
f11ad6b523
tweaking
...
ELK 7.6.0 is not ready for production, however it works if APM is enabled (disabled in config, so image wont build as precaution)
Remove SISSDEN from ewsposter, suricata
Bump suricata to 5.0.1
Alpine now support suricata incl. enabled JA3 support, move back to Alpine install
2020-02-14 15:28:06 +00:00
Marco Ochse
b31225b97c
Merge pull request #524 from pisces-period/pisces-period-cowrie-patch
...
make Dockerfile compatible with any Python version
2020-02-03 17:17:25 +01:00
t3chn0m4g3
ad861200de
update mailoney
2020-02-03 14:46:43 +00:00
t3chn0m4g3
5ce5911ec1
cleanup
2020-02-03 12:59:21 +00:00
t3chn0m4g3
b9da9f04af
adjust default field
2020-02-03 12:18:43 +00:00
t3chn0m4g3
984ba958fb
logstash template not upgraded
...
with daily index enabled logstash will not be able to put new events into ES
simple solution, just deleting logstash template upon logstash start and leave it to logstash to upload the latest template
.
2020-02-01 14:08:23 +00:00
t3chn0m4g3
64729f5064
remove ilm support, breaks existing index at upgrade
2020-01-31 15:50:34 +00:00
t3chn0m4g3
5a4724bcba
elk 7.x dev test
2020-01-31 14:21:55 +00:00
t3chn0m4g3
64907a2eba
random loop timer ewsposter
2020-01-30 11:07:28 +00:00
t3chn0m4g3
fa0fdbb579
prepare for ELK migration to 7.x
2020-01-29 14:21:40 +00:00
t3chn0m4g3
33222a92b6
finish heimdall integration
2020-01-27 17:03:44 +00:00
t3chn0m4g3
62b519999e
tweaking
2020-01-24 15:38:00 +00:00
t3chn0m4g3
8b19228d99
tweaking heimdall, read only for now
2020-01-24 15:16:25 +00:00
t3chn0m4g3
2d16a9c9f6
tweaking new landing page
2020-01-24 14:14:09 +00:00
t3chn0m4g3
95a075e764
start working on new landing page
2020-01-24 02:21:33 +00:00
pisces-period
dc75b5567a
make Dockerfile compatible with any Python version
...
adding a temporary variable to store the current (updated) version of Python, thus fixing the situation where the version is != 3.7 (e.g. Alpine python package at version 3.8.1-r1), causing lines 39-41 to break in the original code (install path is hard-coded at 3.7).
2020-01-23 17:42:48 +01:00
t3chn0m4g3
f110eb08b0
prepare for mailoney json logging
2020-01-22 12:17:30 +00:00
t3chn0m4g3
1d0aad3b34
tweak logstash.conf for citrixhoneypot
2020-01-16 18:04:29 +00:00
t3chn0m4g3
a6ed6613a5
prepare citrixhoneypot for ELK integration
2020-01-16 15:13:58 +00:00
t3chn0m4g3
a953542f8f
rebase citrixhoneypot
2020-01-16 10:29:58 +00:00
t3chn0m4g3
be3e998a92
prepare citrixhoneypot for JSON logging
2020-01-15 13:59:11 +00:00
t3chn0m4g3
8a844e6dd3
prepare for CitrixHoneypot
2020-01-15 12:14:23 +00:00
t3chn0m4g3
755cbb77db
prepare for citrixhoneypot
2020-01-15 10:37:48 +00:00
t3chn0m4g3
2ed0f939d1
rebuild, tweak spiderfoot
2020-01-03 17:04:18 +00:00