Teddy Reed
|
3004df5a50
|
Use custom logger for RocksDB
|
2015-12-15 20:49:33 -08:00 |
|
Teddy Reed
|
2ec5d34291
|
Bump non-OS X TSK builds to 4.2.0
|
2015-12-14 23:43:08 -08:00 |
|
Teddy Reed
|
51fd73c449
|
Assure dropTo can be used safely consecutively
|
2015-12-14 21:27:00 -08:00 |
|
Teddy Reed
|
fbc8fb92dc
|
Allow --config_dump with watcher
|
2015-12-14 16:19:37 -08:00 |
|
Teddy Reed
|
63d12789b4
|
Fix regression in file content predicate refactor
|
2015-12-14 15:24:55 -08:00 |
|
Teddy Reed
|
31dfad2515
|
Fix unhelpful subscriber verbose error for process_file_events
|
2015-12-14 15:09:52 -08:00 |
|
Teddy Reed
|
e6a474a6f1
|
Fix Debian os_version detection
|
2015-12-14 15:09:40 -08:00 |
|
Teddy Reed
|
cfb44fdf09
|
Fix incorrect size of pointer in device_ tables
Limit max number of device_files to 10k
|
2015-12-14 15:09:34 -08:00 |
|
Teddy Reed
|
92719e7b48
|
Add OSX platform_info
|
2015-12-12 03:29:17 -08:00 |
|
Teddy Reed
|
70face8ac2
|
Add platform_info table for UEFI/ROM details
|
2015-12-12 01:55:14 -08:00 |
|
Teddy Reed
|
fdfe5f4d3f
|
Add support for Linux SMBIOS/DMI EFI structure parsing
|
2015-12-11 23:18:04 -08:00 |
|
Teddy Reed
|
a99b62a31d
|
Preserve atime and mtime by default for readFile
|
2015-12-11 22:18:45 -08:00 |
|
Teddy Reed
|
718ff77864
|
Extend fields of file_events
|
2015-12-11 10:26:36 -08:00 |
|
Teddy Reed
|
c6e9f0e321
|
Merge pull request #1724 from theopolis/faster_hashing
Speed up file hashing
|
2015-12-11 08:59:06 -08:00 |
|
Teddy Reed
|
98eb6a5055
|
Reorganize file_events into process_file_events
|
2015-12-11 00:58:22 -08:00 |
|
Teddy Reed
|
59750ec87d
|
Speed up file hashing
|
2015-12-11 00:36:16 -08:00 |
|
Teddy Reed
|
1a1b07b5c6
|
Merge pull request #1716 from theopolis/pack_shards
[#1636] Add simple sharding to packs and pack queries
|
2015-12-10 17:37:57 -08:00 |
|
Lex Neva
|
e9c183d962
|
DRY for inotify event mask (we missed IN_MOVE)
|
2015-12-10 16:00:02 -05:00 |
|
Teddy Reed
|
9d394065e3
|
[#1636] Add simple sharding to packs and pack queries
|
2015-12-10 10:01:53 -08:00 |
|
Teddy Reed
|
675d1d2267
|
[Fix #1714] Restore balance to the DOUBLE force
|
2015-12-09 17:28:30 -08:00 |
|
Teddy Reed
|
4129c6b191
|
Add 'AggStep0' to OpCode type discovery
Closes: #1699
|
2015-12-09 01:53:40 -08:00 |
|
Teddy Reed
|
9f79d74c60
|
Add canary path on empty FSEvents subscription set
|
2015-12-09 00:14:08 -08:00 |
|
Teddy Reed
|
fe234f8f96
|
Merge pull request #1711 from theopolis/fix_refresh_config
Fix quick regression with config refresh runner
|
2015-12-08 16:11:37 -08:00 |
|
Teddy Reed
|
1436d9d73a
|
Fix quick regression with config refresh runner
|
2015-12-08 15:53:19 -08:00 |
|
Teddy Reed
|
309944c586
|
Configuration triggered publisher reconfiguration
|
2015-12-08 14:03:35 -08:00 |
|
Teddy Reed
|
6602a59b7d
|
Change EventSubscriber API to include subscription references
|
2015-12-07 22:22:04 -08:00 |
|
Teddy Reed
|
b7650e5291
|
Remove passwd_changes and user_data from event callbacks
|
2015-12-07 17:47:38 -08:00 |
|
Teddy Reed
|
02c2b37a5d
|
Merge pull request #1709 from theopolis/expire_results
[Fix #1694] Expire results for 'old' scheduled queries
|
2015-12-07 14:01:44 -08:00 |
|
Teddy Reed
|
12716496aa
|
[Fix #1694] Expire results for 'old' scheduled queries
|
2015-12-07 12:23:43 -08:00 |
|
Teddy Reed
|
b88d6816f3
|
Additional TSK tables
|
2015-12-07 08:36:22 -08:00 |
|
Teddy Reed
|
c020bb87b4
|
Merge pull request #1705 from theopolis/dump
[#1702] Add config and database dumping to stdout
|
2015-12-06 21:41:31 -08:00 |
|
Teddy Reed
|
24aa387eb0
|
Merge pull request #1696 from theopolis/node_invalid
[#1676] Clear node key on node_invalid
|
2015-12-06 17:10:12 -08:00 |
|
Teddy Reed
|
bfa0d617be
|
Merge pull request #1679 from theopolis/support_multi_loggers
[#1648] Support multiple loggers
|
2015-12-06 15:00:32 -08:00 |
|
Teddy Reed
|
eeff5d0bf0
|
[#1676] Clear node key on node_invalid
|
2015-12-06 14:28:00 -08:00 |
|
Teddy Reed
|
9ebd292eb6
|
[#1648] Support multiple loggers
|
2015-12-06 11:10:10 -08:00 |
|
Teddy Reed
|
fef53fa0d0
|
Add config and database dumping to stdout
|
2015-12-06 11:01:26 -08:00 |
|
Teddy Reed
|
ad07e07879
|
Make chrome extension identifiers easier to extract
|
2015-12-04 11:50:13 -08:00 |
|
Teddy Reed
|
1acba4dfa6
|
Merge pull request #1700 from theopolis/tsk2
TSK integration and example tables
|
2015-12-04 11:26:03 -08:00 |
|
Teddy Reed
|
f687a84840
|
[Fix #1689] Remove C-style comments from config examples
|
2015-12-04 11:08:54 -08:00 |
|
Teddy Reed
|
373ce339dc
|
TSK integration and example tables
|
2015-12-04 11:08:51 -08:00 |
|
Teddy Reed
|
e5bc6410ba
|
Merge pull request #1697 from theopolis/fix_1660
[Fix #1660] Prevent spurious NETLINK recv retries
|
2015-12-02 23:56:39 -08:00 |
|
Teddy Reed
|
4dc6b9f0a3
|
[Fix #1660] Prevent spurious NETLINK recv retries
|
2015-12-02 23:33:20 -08:00 |
|
Teddy Reed
|
ffb5b7020e
|
[Fix #1693, #1527] Add osquery-specific query planner output
|
2015-12-02 19:57:24 -08:00 |
|
Teddy Reed
|
ccff0c8c18
|
[Fix #1686] Add 'subject' and 'signing_algorithm' to certificates
|
2015-11-29 18:32:13 -08:00 |
|
Teddy Reed
|
f57968e0f6
|
Use a static 'binary' name for Glog
|
2015-11-27 11:27:09 -08:00 |
|
Teddy Reed
|
2bad9d6a74
|
Changes to suport node-based configs
|
2015-11-24 14:44:56 -08:00 |
|
Teddy Reed
|
2e57869d34
|
Merge pull request #1681 from theopolis/fix_1665
[#1665, #1615] Refactor user-based tables to act uniformly
|
2015-11-24 13:07:28 -08:00 |
|
Teddy Reed
|
35129a7af7
|
[#1665, #1615] Refactor user-based tables to act uniformly
|
2015-11-24 12:46:25 -08:00 |
|
Teddy Reed
|
204b16a946
|
Merge pull request #1675 from theopolis/planner_or
Fix constraints stacking
|
2015-11-24 12:25:15 -08:00 |
|
Teddy Reed
|
f2361bca21
|
Merge pull request #1680 from sharvilshah/clang_analyzer_fixes
Fix clang-analyzer warning
|
2015-11-24 07:04:06 -08:00 |
|