t3chn0m4g3
d6ea4cdde2
prep for elk 8.x, pave way for next t-pot release
2022-01-07 18:03:00 +00:00
t3chn0m4g3
fb49a77180
tweaking, json_batch transfer to hive
2022-01-07 15:41:57 +00:00
t3chn0m4g3
202246a3cd
tweaking
2022-01-06 16:45:51 +00:00
t3chn0m4g3
467dfae320
cleanup, move to correct folders
2022-01-04 18:35:44 +00:00
t3chn0m4g3
0178b4c4d3
Work in progress!
...
This is the foundation for the distributed T-Pot feature,
highly work in progress, only works with local docker image builds,
will be available for prod for upcoming T-Pot 22xx.
2022-01-03 18:25:31 +00:00
t3chn0m4g3
68b080a3a8
Work in progress!
...
This is the foundation for the distributed T-Pot feature,
highly work in progress, only works with local docker image builds,
will be available for prod for upcoming T-Pot 22xx.
2022-01-03 18:24:17 +00:00
t3chn0m4g3
b0339610a2
Prep for Log4Pot integration
2021-12-16 20:25:40 +00:00
t3chn0m4g3
3103c94355
add mini edition
2021-11-20 13:08:35 +00:00
Marco Ochse
6fb2fa783a
update for new honeypots
2021-11-18 21:32:48 +01:00
t3chn0m4g3
05a7d33c9f
add paths, logrotate settings, cleaner settings for new honeypots
2021-08-24 11:51:01 +00:00
t3chn0m4g3
0c5ab33b8a
bump elastic stack to 7.12.1
2021-05-17 16:32:03 +00:00
t3chn0m4g3
b28cc2edd0
prepare for new ewsposter
2020-10-15 09:14:30 +00:00
t3chn0m4g3
2e5639a50b
fix links
2020-09-04 13:01:21 +00:00
t3chn0m4g3
b86d2c715b
prep for ipphoney
2020-08-24 21:36:08 +00:00
t3chn0m4g3
618ee3c6e9
tweaking
...
add kibana export / import config function
ewsposter remove transmitting old elasticpot data (need update)
final export of all objects
2020-06-29 10:45:33 +00:00
t3chn0m4g3
3a418534d8
tweaking
...
random reboot times for crontab
remix compose files
some tweaking
2020-06-28 20:03:14 +00:00
t3chn0m4g3
a7c653e7fe
start integrating honeysap
2020-06-19 11:54:50 +00:00
t3chn0m4g3
697c5cb3f6
begin integration of dicompot
2020-06-18 16:38:43 +00:00
t3chn0m4g3
2882668826
Add a new elasticsearch honeypot
...
adjust installer
adjust elasticpot configs to T-Pot's environment
create Dockerfile
adjust logstash config
update Readme
2020-06-17 18:09:59 +00:00
t3chn0m4g3
739c7c1154
update ascii logo version
2020-06-16 16:32:34 +00:00
t3chn0m4g3
5319c548ad
get top 100 src_ip's
2020-03-11 13:51:49 +00:00
t3chn0m4g3
857190ec20
add 2fa, update reamde and changelog
2020-03-10 15:39:16 +00:00
t3chn0m4g3
f11ad6b523
tweaking
...
ELK 7.6.0 is not ready for production, however it works if APM is enabled (disabled in config, so image wont build as precaution)
Remove SISSDEN from ewsposter, suricata
Bump suricata to 5.0.1
Alpine now support suricata incl. enabled JA3 support, move back to Alpine install
2020-02-14 15:28:06 +00:00
t3chn0m4g3
2d249ac6b1
tweak export script for new references
2020-01-31 17:43:04 +00:00
t3chn0m4g3
1167231560
fix error log path
2020-01-27 08:51:34 +00:00
t3chn0m4g3
8a844e6dd3
prepare for CitrixHoneypot
2020-01-15 12:14:23 +00:00
Marco Ochse
3498f3e635
fix typo
2020-01-13 22:44:14 +01:00
t3chn0m4g3
f4a078c443
introduce pigz for clean.sh
...
See #501 and thanks to @workandresearchgithub
2019-12-24 10:31:54 +00:00
Marco Ochse
3b43c55c04
Merge pull request #480 from shaderecker/ansible-updates
...
Ansible updates
2019-11-04 09:20:18 +01:00
Sebastian Haderecker
8314a7d34a
Fix wrong order of variables
...
- Align with all example configs
- This is important for Ansible to check wether the file has changed
2019-10-28 10:22:20 +00:00
t3chn0m4g3
5079b57f94
add option to unlock ES for r/w
2019-10-15 15:41:21 +00:00
vorband
504e3f2734
added ews.cfg change script
...
script changes the ews authentication information and reconfigures
T-Pot to deliver data to the trusted/authenticated domain.
2019-06-27 10:36:46 +02:00
Sebastian Haderecker
b505d560e7
Merge branch 'master' into hpfeeds-cmd
2019-06-26 11:17:49 +02:00
Sebastian Haderecker
1113c9c0c9
Minor typo
2019-06-26 09:15:29 +00:00
t3chn0m4g3
8b03fb8f28
remove glastopf
2019-06-03 20:04:50 +00:00
t3chn0m4g3
0f8eaef8f5
tweaking
2019-06-03 19:53:52 +00:00
t3chn0m4g3
4e902b6560
add fatt to nextgen
2019-06-01 17:47:14 +00:00
Marco Ochse
9edb84e3b4
increase total number of fields for logstash template
...
The number of 1000 should not exceed, however as a precaution the limit on future versions of T-Pot will be pushed to 2000.
Also see #382
2019-05-28 15:30:49 +02:00
Sebastian Haderecker
9815f17b16
Imrove console output
2019-05-16 07:59:52 +00:00
Sebastian Haderecker
12cf4ecd89
Update comments
2019-05-16 07:52:17 +00:00
Sebastian Haderecker
6b40c1ca7f
HPFEEDS: Command line option
...
- OptIn script accepts config file as argument (--conf=hpfeeds.cfg)
- Current config is written to /data/ews/conf/hpfeeds.cfg
2019-05-16 01:09:50 +00:00
t3chn0m4g3
3fef0fd6da
add hptest script
2019-05-11 11:29:00 +00:00
listbot
c09547e3a4
adjust group and permissions for /data
2019-05-08 11:16:48 +00:00
t3chn0m4g3
ade98060d8
avoid breaking of symlink for tpot.yml
2019-04-01 09:59:27 +00:00
t3chn0m4g3
33e98822e3
Add HPFEEDS opt-in
2019-04-01 07:56:06 +00:00
t3chn0m4g3
c0d0e016e6
tweaking
...
Update Heralding to support SOCKS5
Correct Readme
Resize tped.sh
2019-03-27 13:39:23 +00:00
t3chn0m4g3
b5d45bc539
tweaking
2019-03-20 16:00:35 +00:00
t3chn0m4g3
da6299e6a1
tweaking
2019-03-20 10:09:07 +00:00
t3chn0m4g3
5dae44b5e9
prepare for sissden opt-in
2019-03-15 15:59:02 +00:00
t3chn0m4g3
6f30322ad5
prepare for honeypy
2019-03-10 18:15:59 +00:00