We recently released Security Onion 2.3.190:
https://blog.securityonion.net/2022/12/security-onion-23190-now-available.html
Today, we are releasing a hotfix which improves support for Suricata file extraction into Strelka:
https://docs.securityonion.net/en/2.3/release-notes.html#hotfix-20221207-changes
New Installations
If you want to perform a new installation, please review the documentation and then you can find instructions here:
https://docs.securityonion.net/en/2.3/download.html
Existing 2.3 Installations
If you haven't yet updated to 2.3.190, then you should review all links at the top of this post so that you are aware of all recent changes.
WARNING! If you have an existing Security Onion 2.3 installation and update to Security Onion 2.3.140 or higher, the Elastic components will undergo a major version upgrade to version 8. Please review and follow the steps at the link below. Failure to do so could result in loss of access to all data stored inside of Elastic and a non-functioning Security Onion installation.
https://docs.securityonion.net/en/2.3/soup.html#elastic-8
Please be aware that custom settings in Kibana may be overwritten during upgrade. We recommend that you test the upgrade process on a test deployment before deploying to production. If you have a distributed deployment, then we recommend monitoring SOC Grid while your update is running to verify that all nodes update properly. If there are issues, you can review logs, services, and containers for any additional clues. If you need help, please see our support information below.
If you have custom Elasticsearch templates, please see:
https://docs.securityonion.net/en/2.3/elasticsearch.html#custom-templates
For more information about the update process, please see:
https://docs.securityonion.net/en/2.3/soup.html
Security Onion 16.04
If you are still running Security Onion 16.04, please note that it is past End Of Life. Please take this opportunity to upgrade to Security Onion 2:
https://docs.securityonion.net/en/2.3/appendix.html
Questions or Problems
If you have questions or problems, please see our support options:
https://docs.securityonion.net/en/2.3/support.html
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.