Fixed score filter alerts page, updated dist, removed logging (#8648)

* Fixed score filter alerts page, updated dist, removed logging

* Reverted to correct version
This commit is contained in:
GabrieleDeri 2024-08-21 09:25:01 +02:00 committed by GitHub
parent 0e28dbe326
commit 12c0d7fa32
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
6 changed files with 4 additions and 27 deletions

View file

@ -566,14 +566,10 @@ SELECT
f.FIRST_SEEN AS first_seen,
f.LAST_SEEN AS tstamp_end,
f.VLAN_ID AS vlan_id,
f.PACKETS AS packets,
f.TOTAL_BYTES AS total_bytes,
f.SRC2DST_PACKETS AS cli2srv_pkts,
f.DST2SRC_PACKETS AS srv2cli_pkts,
f.SRC2DST_BYTES AS cli2srv_bytes,
f.DST2SRC_BYTES AS srv2cli_bytes,
f.SRC2DST_DSCP AS src2dst_dscp,
f.DST2SRC_DSCP AS dst2src_dscp,
f.PROTOCOL AS proto,
IF(f.IPV4_SRC_ADDR != 0, IPv4NumToString(f.IPV4_SRC_ADDR), IPv6NumToString(f.IPV6_SRC_ADDR)) AS cli_ip,
IF(f.IPV4_DST_ADDR != 0, IPv4NumToString(f.IPV4_DST_ADDR), IPv6NumToString(f.IPV6_DST_ADDR)) AS srv_ip,
@ -582,8 +578,6 @@ SELECT
f.L7_PROTO AS l7_proto,
f.L7_PROTO_MASTER AS l7_master_proto,
f.L7_CATEGORY AS l7_cat,
f.PROFILE AS profile,
f.NTOPNG_INSTANCE_NAME AS ntopng_instance_name,
f.FLOW_RISK AS flow_risk_bitmap,
f.INTERFACE_ID AS interface_id,
f.STATUS AS alert_id,
@ -594,10 +588,6 @@ SELECT
char(bitShiftRight(f.DST_COUNTRY_CODE, 8), bitAnd(f.DST_COUNTRY_CODE, 0xFF)) AS srv_country,
f.SRC_LABEL AS cli_name,
f.DST_LABEL AS srv_name,
f.SRC_MAC AS src_mac,
f.DST_MAC AS dst_mac,
f.SRC_ASN AS src_asn,
f.DST_ASN AS dst_asn,
f.COMMUNITY_ID AS community_id,
f.SCORE AS score,
f.SRC_HOST_POOL_ID AS cli_host_pool_id,
@ -617,21 +607,9 @@ SELECT
f.ALERTS_MAP AS alerts_map,
f.INFO AS info,
IPv4NumToString(f.PROBE_IP) AS probe_ip,
f.OBSERVATION_POINT_ID AS observation_point_id,
f.SRC2DST_TCP_FLAGS AS src2dst_tcp_flags,
f.DST2SRC_TCP_FLAGS AS dst2src_tcp_flags,
f.CLIENT_NW_LATENCY_US AS client_nw_latency_us,
f.SERVER_NW_LATENCY_US AS server_nw_latency_us,
f.INPUT_SNMP AS input_snmp,
f.OUTPUT_SNMP AS output_snmp,
f.SRC_PROC_NAME AS src_proc_name,
f.DST_PROC_NAME AS dst_proc_name,
f.SRC_PROC_USER_NAME AS src_proc_user_name,
f.DST_PROC_USER_NAME AS dst_proc_user_name,
f.ALERT_CATEGORY AS alert_category,
f.IS_ALERT_DELETED AS is_alert_deleted,
f.MINOR_CONNECTION_STATE AS minor_connection_state,
f.MAJOR_CONNECTION_STATE AS major_connection_state,
mitre.TACTIC AS mitre_tactic,
mitre.TECHNIQUE AS mitre_technique,
mitre.SUB_TECHNIQUE AS mitre_subtechnique,