Ahmed Shawky 
							
						 
					 
					
						
						
							
						
						54a84b8640 
					 
					
						
						
							
							Make sure WinDefend service is not running when uninstalling Windows-Defender and Windows-Defender-Features features.  
						
						
						
						
					 
					
						2020-06-25 04:22:55 +04:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						ab5c0b2452 
					 
					
						
						
							
							Standardize logging  
						
						
						
						
					 
					
						2020-06-21 12:28:44 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						c735f52934 
					 
					
						
						
							
							Fixing the loop logic  
						
						
						
						
					 
					
						2020-06-21 11:49:18 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						ded6656cb7 
					 
					
						
						
							
							Update operator  
						
						
						
						
					 
					
						2020-06-21 09:16:50 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						7858530c17 
					 
					
						
						
							
							Remove from Ansible too  
						
						
						
						
					 
					
						2020-06-21 00:28:38 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						565ca261f1 
					 
					
						
						
							
							Fix quote escaping  
						
						
						
						
					 
					
						2020-06-20 23:51:10 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						d466f343c4 
					 
					
						
						
							
							Fixing shellcheck lint output  
						
						
						
						
					 
					
						2020-06-20 19:14:09 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						8fca376f4a 
					 
					
						
						
							
							Merge branch 'master' into osquery_refactor  
						
						
						
						
					 
					
						2020-06-20 18:34:28 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						bb12246e74 
					 
					
						
						
							
							Refactor osquery and add retry-loop for OU  
						
						
						
						
					 
					
						2020-06-20 18:32:28 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						9e6670b1e2 
					 
					
						
						
							
							Update fix-windows-expiration.ps1  
						
						... 
						
						
						
						Add try/catch for the regex matching 
						
						
					 
					
						2020-06-20 16:32:55 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						2708f4fa4e 
					 
					
						
						
							
							Update install-microsoft-ata.ps1  
						
						... 
						
						
						
						Add additional write-host statements 
						
						
					 
					
						2020-06-15 00:53:35 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						a033ea2b60 
					 
					
						
						
							
							Update configure-ou.ps1  
						
						
						
						
					 
					
						2020-06-14 17:53:06 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						7f837cbb1d 
					 
					
						
						
							
							Typos  
						
						
						
						
					 
					
						2020-06-13 22:43:10 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						1dbe8a75b2 
					 
					
						
						
							
							Add a retry to configure-ou.ps1  
						
						
						
						
					 
					
						2020-06-13 22:35:15 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						dfa0a09d43 
					 
					
						
						
							
							Update create-domain.ps1  
						
						
						
						
					 
					
						2020-06-13 21:50:00 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						f8cc4a9ec7 
					 
					
						
						
							
							Update join-domain.ps1  
						
						
						
						
					 
					
						2020-06-13 21:49:41 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						add22be68b 
					 
					
						
						
							
							Update create-domain.ps1  
						
						... 
						
						
						
						Don't change DNS settings for azure provisioning 
						
						
					 
					
						2020-06-13 21:47:59 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						69320e2b16 
					 
					
						
						
							
							Update install-botsv3.sh  
						
						... 
						
						
						
						Add Splunk restart after app installation 
						
						
					 
					
						2020-06-08 17:57:37 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						74dda07942 
					 
					
						
						
							
							Update ESXi bootstrap too  
						
						
						
						
					 
					
						2020-06-01 22:53:36 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						7dc7e6916c 
					 
					
						
						
							
							ESXi RAM Bump, osquery fixes  
						
						
						
						
					 
					
						2020-06-01 22:51:14 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						2823f140d2 
					 
					
						
						
							
							Update props.conf  
						
						
						
						
					 
					
						2020-06-01 21:47:32 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						c55b3d6def 
					 
					
						
						
							
							Update transforms.conf  
						
						
						
						
					 
					
						2020-06-01 21:46:22 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						da366bcce6 
					 
					
						
						
							
							Update install-microsoft-ata.ps1  
						
						
						
						
					 
					
						2020-06-01 01:58:53 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						9ddc914c95 
					 
					
						
						
							
							Add BadBlood download to install-redteam.ps1  
						
						
						
						
					 
					
						2020-06-01 01:40:54 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						10f260bf73 
					 
					
						
						
							
							Update logger_dashboard.xml  
						
						
						
						
					 
					
						2020-06-01 01:21:22 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						6312f4740b 
					 
					
						
						
							
							Add Powershell script to resolve expiration issues  
						
						
						
						
					 
					
						2020-05-19 00:26:19 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						79a2a03b5c 
					 
					
						
						
							
							Fixing retry logic in install-microsoft-ata.ps1  
						
						... 
						
						
						
						Fixes issue #444  
						
						
					 
					
						2020-05-11 16:59:50 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						ca515405a5 
					 
					
						
						
							
							Update install-redteam.ps1  
						
						
						
						
					 
					
						2020-05-10 12:51:32 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						5398841cfe 
					 
					
						
						
							
							Update bootstrap.sh  
						
						
						
						
					 
					
						2020-05-09 13:38:57 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						2659539afa 
					 
					
						
						
							
							Update install-redteam.ps1  
						
						
						
						
					 
					
						2020-05-09 12:41:52 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						c8d6cf433d 
					 
					
						
						
							
							Update install-redteam.ps1  
						
						
						
						
					 
					
						2020-05-07 20:55:10 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						614f3148e3 
					 
					
						
						
							
							More Defender removal code  
						
						
						
						
					 
					
						2020-05-07 14:07:21 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						23e8e288f9 
					 
					
						
						
							
							Merge branch 'master' into update_gpo_ena  
						
						
						
						
					 
					
						2020-05-03 17:13:59 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						aeecd1b756 
					 
					
						
						
							
							Update DC Auditing GPO and Add Packer Script for ENA  
						
						
						
						
					 
					
						2020-05-03 17:12:05 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						9e9120f02b 
					 
					
						
						
							
							Implementing blacklist on wef_inputs.conf  
						
						... 
						
						
						
						Resolving Issue #436  
						
						
					 
					
						2020-05-03 17:08:22 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						f0a7b1481f 
					 
					
						
						
							
							Typo  
						
						
						
						
					 
					
						2020-05-02 22:21:24 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						b314066e06 
					 
					
						
						
							
							Fixing Splunk regex  
						
						
						
						
					 
					
						2020-05-02 22:20:48 -07:00 
						 
				 
			
				
					
						
							
							
								Olaf Hartong 
							
						 
					 
					
						
						
							
						
						7476ff94df 
					 
					
						
						
							
							Added missing subscription forward rule  
						
						
						
						
					 
					
						2020-04-30 21:53:05 +02:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						6de7ffa8d5 
					 
					
						
						
							
							Reverting last update to install-redteam.ps1  
						
						
						
						
					 
					
						2020-04-25 23:03:03 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						3f12ac524a 
					 
					
						
						
							
							Update install-redteam.ps1  
						
						
						
						
					 
					
						2020-04-25 12:20:25 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						203d7a4638 
					 
					
						
						
							
							Fixing eth1 ip detection logic  
						
						... 
						
						
						
						Interfaces can have multiple IP addresses, causing this step to fail in Virtualbox 
						
						
					 
					
						2020-04-18 22:53:35 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						d1d0566773 
					 
					
						
						
							
							Add some Splunk nullQueues for noisy events  
						
						
						
						
					 
					
						2020-04-18 15:59:54 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						7c0b8907db 
					 
					
						
						
							
							Fix path for install-utilities.ps1  
						
						
						
						
					 
					
						2020-04-17 22:02:29 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						37d7d1dfd1 
					 
					
						
						
							
							Fixing Splunk app filename  
						
						
						
						
					 
					
						2020-04-17 13:58:12 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						60f89345af 
					 
					
						
						
							
							Override Bootstrap DNS Settings  
						
						
						
						
					 
					
						2020-04-16 22:00:05 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						3fde431699 
					 
					
						
						
							
							Small logger bugfixes  
						
						
						
						
					 
					
						2020-04-14 13:29:58 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						03c96430a5 
					 
					
						
						
							
							Merge branch 'master' into logger_bugfix  
						
						
						
						
					 
					
						2020-04-13 00:09:52 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						a67ce6efb5 
					 
					
						
						
							
							Fixing logger bugs, updating vm tools, updating Win10 ISO  
						
						
						
						
					 
					
						2020-04-13 00:05:49 -07:00 
						 
				 
			
				
					
						
							
							
								Chris Long 
							
						 
					 
					
						
						
							
						
						dbfa998ec2 
					 
					
						
						
							
							Update install-windows_ta.ps1  
						
						
						
						
					 
					
						2020-04-08 00:20:01 -07:00 
						 
				 
			
				
					
						
							
							
								Mike Haag 
							
						 
					 
					
						
						
							
						
						2b37af791d 
					 
					
						
						
							
							Bootstrap.sh Error fixes  
						
						... 
						
						
						
						Errors during install:
-     logger: Error during app install: failed to extract app from /vagrant/resources/splunk_forwarder/splunk-add-on-for-microsoft-windows_700.tgz to /opt/splunk/var/run/splunk/bundle_tmp/2ade41e05f0e68dc: No such file or directory
-     logger: Error during app install: failed to extract app from /vagrant/resources/splunk_server/add-on-for-microsoft-sysmon_1062.tgz to /opt/splunk/var/run/splunk/bundle_tmp/eeef7b83a2d6b716: No such file or directory
1. Fixed the forwarder error by placing the updated TA in the forwarder path.
2. fixed server error, this was caused by a typo in the name. 
						
						
					 
					
						2020-04-06 09:04:23 -06:00