t3chn0m4g3
1094b33665
start adding openSUSE Tumbleweed
2023-06-25 13:17:33 +02:00
t3chn0m4g3
e2e20e3684
add fedora to installer, tweaking
2023-06-24 14:05:13 +02:00
t3chn0m4g3
95c6a8e28a
add support for Ubuntu, begin work on Fedora
2023-06-22 18:30:18 +00:00
t3chn0m4g3
d7bcfda109
add git clone
2023-06-22 18:36:37 +02:00
t3chn0m4g3
048cbb8b6c
sync hw clock to system
2023-06-22 17:17:42 +02:00
t3chn0m4g3
29a445da4e
start work on ansible installer
2023-06-21 23:21:11 +02:00
Marco Ochse
2c4eaf0794
Begin of restructuring ...
...
- deprecate old release
- set virtual version
- we need tpot user / group, adding to installer
- tweaking
- do not use the dev branch, it will break stuff
2023-06-13 23:59:09 +02:00
t3chn0m4g3
b71f2f67f4
Cleanup and prep for Beta
...
- remove some files from merge
- prepare for beta
2017-10-19 11:02:59 +02:00
Marco Ochse
7c495250b4
fix merge
2017-10-19 08:47:01 +00:00
Marco Ochse
7b228c5be0
some cleanup
2017-09-26 15:18:06 +00:00
Marco Ochse
b5a4ef948f
play with layout
2017-09-25 21:08:00 +00:00
t3chn0m4g3
8cb6457882
rename webs to correct name webtty
2017-09-20 15:12:10 +02:00
Marco Ochse
0363b218ec
update logo
2017-08-30 15:12:29 +00:00
Marco Ochse
ba56a6c923
fix install error regarding blanks in hostname
2017-08-30 11:20:09 +00:00
Marco Ochse
0a3b67e01c
tweaking, t-pot docker tags to 1710
2017-08-28 20:03:46 +00:00
Marco Ochse
3ee9ad15d7
add mailoney, rdpy dashboards
2017-08-27 20:40:55 +00:00
Marco Ochse
56ebd9f05c
include rdpy honeypot
2017-08-27 00:37:57 +00:00
Marco Ochse
46eea25f38
bump ctop version to 0.6.1
2017-08-24 22:43:57 +00:00
Marco Ochse
fc52474fa0
add glastopf.db to logrotate.conf
2017-08-23 10:02:00 +00:00
Marco Ochse
6ff5c6b94f
all dashboards are now adapted to 17.x
...
will probably still need some finetuning
2017-08-20 21:12:46 +00:00
Marco Ochse
6d98aaf1bd
tweaking, account for new elk versions
2017-08-18 22:54:01 +00:00
Marco Ochse
277f24e0ee
prepare for vnclowpot tweaking
2017-08-18 22:05:30 +00:00
Marco Ochse
26f019c894
prepare for vnclowpot and more dashboards finished
2017-08-18 22:02:51 +00:00
Marco Ochse
93e6ce9712
re-eanble ipv6 for docker
2017-08-14 22:40:51 +00:00
Marco Ochse
53f11c419c
dashboards tweaking
2017-08-14 16:32:54 +00:00
Marco Ochse
796e74059e
clean up
2017-08-14 15:10:21 +00:00
Marco Ochse
d1c167bd5f
tweaking
...
allow for ftp data
forward ftp data into dionaea container
disable ipv6 since it messes up dionaea ip logging
2017-08-14 14:55:28 +00:00
Marco Ochse
adc8ddd090
tweaking
...
Update backup_es_folders to fit latest 17.x design
Include updated elkbase
Include updated kibana-objects
2017-08-11 20:27:20 +00:00
Marco Ochse
9e2313d7ca
fix visual bug (sometimes only string PORTS is displayed)
2017-08-07 14:54:33 +00:00
Marco Ochse
8e8f94b1b4
fix curator
...
-the old curator does not support ES 5.x
-include curator 5.1.1 and pin version to exactly that to avoid surprises with disruptive updates
-configs reside in /etc/tpot/curator
-will be started daily through /etc/crontab
-by default all logstash indices older than 90 days will be deleted
2017-08-07 13:18:55 +00:00
Marco Ochse
b25caf6302
improve dps.sh output
2017-08-07 10:24:25 +00:00
Marco Ochse
77a4635f59
maltrail is too far off scope
2017-07-23 10:25:40 +00:00
Marco Ochse
01d4ef2928
account for unresolved external ip address
2017-07-21 15:26:37 +00:00
Marco Ochse
07c3f48894
compress and rotate logs if persistence enabled
...
if persistence is enabled, log files, downloads, binaries, etc. will be compressed and rotated
each start / stop of the t-pot service will account for a full rotation cycle if files are not empty
basically the rotation will recycle logs after 30 days, unless the service is stopped / started manually which will cause for a shorter period
2017-07-20 20:25:49 +00:00
Marco Ochse
c8c3124f04
tweaking
2017-07-12 18:53:20 +00:00
Marco Ochse
022a48f1b8
tweaking
2017-07-12 18:51:20 +00:00
Marco Ochse
9e880d14ed
test backport fix for hostname
2017-06-29 08:04:49 +00:00
Marco Ochse
6549f8f582
nsa gen is no more, offline alternative
2017-06-21 22:46:12 +00:00
Marco Ochse
51e8dc1aca
fix path
2017-06-21 19:34:08 +00:00
Marco Ochse
0e7563da17
prepare for honeypot changes
2017-06-21 19:26:42 +00:00
Marco Ochse
77e68f0e64
tweaking, add new honeypot
...
correct a typo in CONTRIBUTING.MD
preapre for and add mailoney honeypot
2017-06-15 22:08:56 +00:00
Marco Ochse
a1bc127698
consider commented config lines
2017-06-07 16:24:42 +00:00
Marco Ochse
66cdb0e60a
modifications for conpot update
2017-06-07 15:51:42 +00:00
Marco Ochse
4e6f4fc9e8
finetuning
...
add p0f
change some defaults
2017-06-06 22:32:49 +00:00
Marco Ochse
48d36f999d
finetuning suricata
2017-06-03 23:56:10 +00:00
Marco Ochse
aea18d5f92
squashing some bugs
...
do not forward tcp connections to or from 127.0.0.1 to NFQ (fixes strange netdata behaviour)
run netdata on network mode host again (update compose files) including host metrics
2017-05-30 19:07:43 +00:00
Marco Ochse
5d8ad0a623
add spiderfoot persistence
2017-05-25 21:59:26 +00:00
Marco Ochse
2bbafbc791
handle iptables differently
2017-05-23 23:32:07 +00:00
Marco Ochse
345df08941
improvements
...
use docker-compose from pypi with support for 2.1 compose file version
logstash, kibana, head & netdata are now depending on a healthy elasticsearch container before starting
remove alerta-cli
tweak installer
2017-05-22 19:36:41 +00:00
Marco Ochse
931ac2dd85
tweaking
...
update dps.sh
adjust docker-compose related tpot configs for dionaea (stdin_open: true)
adjust tpot.service (suritcata / p0f prep) to be aware of a situation without local network route ( Fixes#99 )
2017-05-11 17:01:21 +00:00
Marco Ochse
ce0e42e555
get latest ctop
2017-05-04 22:52:32 +00:00
Marco Ochse
b36c63962d
tweaking, prepare for elk microservice
2017-05-03 20:55:18 +00:00
Marco Ochse
3de02ee7b0
tweaking for docker-compose
...
get rid of self-check scripts, docker-compose takes care of that now
use tpot.yml config for tpot scripts
wipe crontab clean of legacy scripts
check.lock no longer needed (rc.local)
adjust installer (invisible cursor, get image info from tpot.yml, some tweaking)
2017-05-01 19:03:27 +00:00
Marco Ochse
365e1a1e5c
prepare switch to docker-compose
2017-04-30 23:34:30 +00:00
Marco Ochse
291034d53e
feed newlines when patching sshd config
2017-04-26 20:01:15 +02:00
Marco Ochse
dc30cd81c2
fix token for everything installation
2017-04-24 17:21:45 +02:00
Marco Ochse
0d684cc825
add pypi to list of internet checks
2017-04-24 16:57:58 +02:00
Marco Ochse
843ba30762
final touches on installer
...
move tsec password dialog from debian installer to t-pot-installer
check for secure password for tsec and web user
fix layout issue
2017-04-24 16:06:23 +02:00
Marco Ochse
50a93f5abf
neatify two installer widgets
2017-04-22 20:05:12 +02:00
Marco Ochse
66dd2398e8
cleanup and prettyfy installer
...
reorganized installer
now using dialog throughout the whole installation
2017-04-21 01:11:10 +02:00
Marco Ochse
8417ed2fbd
fix path
2017-04-19 15:48:27 +02:00
Marco Ochse
845a11e240
fix path
2017-04-19 15:39:34 +02:00
Marco Ochse
9fea0461fc
Clean up, add Spiderfoot
...
tpot configs are now stored in /etc/tpot/
tpot related scripts are now stored /usr/share/tpot/bin
some scripts are improved
some scripts are cleaned of old comments
spiderfoot is now part of tpot
2017-04-19 12:22:51 +00:00
Marco Ochse
62ce12a8a9
disable logging for installer
...
1. improve performance
2. improve convenience, user sees progress
3. infos and errors are displayed
2017-04-17 00:53:47 +02:00
Marco Ochse
5b267b396f
improve installer
2017-04-16 23:44:19 +02:00
Marco Ochse
c9827f0f03
manage kibana objetcs, ES dump and restore, ES folder backup
2017-04-14 22:08:35 +00:00
Marco Ochse
90592e7388
manage kibana objetcs, dump and restore
2017-04-12 20:46:12 +00:00
Marco Ochse
d54702ece8
include updates
2017-04-10 20:38:22 +00:00
Marco Ochse
1453e26f76
prepare for forward logs to cc
2017-04-07 15:20:56 +00:00
Marco Ochse
ff4a87ff42
set linux as term
2017-03-22 18:42:24 +00:00
Marco Ochse
9090b5cfd7
installer ui improvements
2017-03-22 18:27:43 +00:00
Marco Ochse
052a3489e9
fix typo
2017-03-17 23:49:29 +00:00
Marco Ochse
ffc0edd587
prepare for elk 5.x and improvements
2017-03-17 23:47:04 +00:00
Marco Ochse
a94b34c8a8
add some colors
2017-03-15 09:28:12 +00:00
Marco Ochse
71e1069dbe
fix
2017-03-13 22:17:02 +00:00
Marco Ochse
412c7fa508
fix
2017-03-13 21:58:48 +00:00
Marco Ochse
fcbb2952d3
fixes and improvements
2017-03-13 21:19:28 +00:00
Marco Ochse
a556a193f7
fix netdata error
2017-03-13 19:44:02 +00:00
Marco Ochse
d3599bcc10
update ui-for-docker systemd
2017-03-13 16:29:51 +00:00
Marco Ochse
fddfc68ff3
improvements
2017-03-13 16:10:37 +00:00
Marco Ochse
ff75c6c588
modify installer for 17.06
2017-03-13 10:07:46 +00:00
Marco Ochse
a98e6bfc53
prepare for 17.06 dev env
2017-03-13 00:38:43 +00:00
Marco Ochse
4a67a47a04
remove some services from myip.sh
2017-03-12 23:50:27 +00:00
Marco Ochse
4a58f7488a
fix bug myip.sh
2017-03-12 23:46:12 +00:00
Marco Ochse
c5de828d7e
prepare for new ewsposter
2017-03-12 23:31:34 +00:00
Marco Ochse
fb02d41e57
add latest ctop
2017-03-12 20:57:56 +00:00
Marco Ochse
35700a731b
update /etc/issue
2017-03-12 12:05:22 +00:00
Marco Ochse
26a9357d84
modify elk service
2017-03-08 17:06:13 +00:00
Marco Ochse
fab294bdda
remove patching docker defaults
...
handled in systemd scripts for each container
2017-03-04 21:24:50 +01:00
Marco Ochse
9fbdcf80f5
add working solution for head
2017-02-27 17:42:34 +00:00
Marco Ochse
6298afae4a
Update install.sh
2017-02-26 12:29:38 +01:00
Marco Ochse
20759a7c5c
starting with elk5
2017-02-26 11:22:56 +00:00
Marco Ochse
4c3b6e819c
Update ews.cfg
2017-02-24 12:20:08 +01:00
Marco Ochse
1175541d5c
add conpot support
2017-02-22 20:21:56 +01:00
t3chn0m4g3
7036a7fc77
include a better solution to fetch external ip
2017-02-22 15:04:48 +00:00
Marco Ochse
3099f6f3f3
Fix broken proxy support by using curl with different IP service
...
... leaving comment for DNS variant
2017-02-22 15:21:10 +01:00
Marco Ochse
5f12ea7543
fix problem with ext ip resolving
2017-02-15 14:26:28 +01:00
Marco Ochse
41a3b610eb
improve wlan example config
2016-12-06 13:18:00 +01:00
Marco Ochse
aecb9380f2
fix docker proxy issue
...
starting with systemd docker only sources /etc/default/docker which means for proxy to work the export commands need to be removed.
2016-12-06 10:44:04 +01:00
Marco Ochse
d1b85a497d
fix namegen issue when using a proxy
2016-12-06 09:55:41 +01:00