weslambert

Results 83 comments of weslambert

Thanks, I am aware of this issue and will have a look. In the meantime, I have updated the Logstash config file, here: https://github.com/weslambert/securityonion-velociraptor/blob/main/salt/logstash/pipelines/config/custom/9501_output_velociraptor.conf.jinja Please keep in mind, this is...

Are you referring to an internal hesitation or non-compliance with regard to use of `wget`? Or are you referring to how we interface with MISP, for example not using the...

Thanks! My use case is just that I need to be able to specify the output path/file in some way while running non-interactively, so I really don't even need the...

I think this will work -- I'll try it out and let you know how it goes. Thanks for your help!

You'll want to use an EIP if you want it to be persistent after stopping/starting. If you are going to stop/start anyway, and don't want to pay for the maintenance...

No problem, and no worries! I will push those changes to the codebase soon.

I just wanted to check in and see if this was something that could be considered for a future release? I'm maintaining a project that integrates DFIR-IRIS with some other...

Hi, I just wanted to follow up on this item to see if it is on the roadmap. Let me know how I can help. Thanks!

Yeah, the rewrite alone didn't work for me. I would be interested in what else is needed. Thanks!