Matteo Biscosi
|
0fecdee1e4
|
Reworked blacklists page
|
2024-04-11 12:48:59 -04:00 |
|
Matteo Biscosi
|
1460eda751
|
Fixes SQL injection description
|
2024-04-10 07:16:13 -04:00 |
|
Luca Deri
|
f26d56959c
|
Renamed HostBlackHoleContactsAlert to HostScannerAlert
|
2024-04-08 18:35:49 +02:00 |
|
Matteo Biscosi
|
436bf03e56
|
Removed html when not requested and fixed some alerts description(#8304)
|
2024-04-08 10:45:11 -04:00 |
|
Matteo Biscosi
|
cbec26e3b4
|
Fixes missing alert descriptions (#8314 #8313)
|
2024-04-08 07:02:17 -04:00 |
|
Nicolo Maio
|
a68667861e
|
Fix Host Alert BlackHole Contacts title.
|
2024-03-29 11:24:37 +01:00 |
|
Nicolo Maio
|
b20e06482c
|
Fix the logic for HostBlackHoleContacts and RXOnlyHostScan checks.
|
2024-03-29 10:09:57 +01:00 |
|
Nicolò Maio
|
2deb42a7a2
|
Add the blackhole contacts alerts and update the scan detection alert. (#8290)
|
2024-03-28 08:55:45 +01:00 |
|
Nicolo Maio
|
8372d80dc8
|
Add UID to the description of blacklisted flow alerts. (#7799)
|
2024-03-01 16:38:46 +01:00 |
|
Nicolo Maio
|
4e9d324236
|
Add traffic profiles rules. (#7839)
|
2024-03-01 15:18:08 +01:00 |
|
Matteo Biscosi
|
88e5d26afe
|
Removed no more used checks (#8235)
|
2024-02-27 05:49:44 -05:00 |
|
Luca Deri
|
2ee2c180a5
|
Removed alerts no longer necessary as they have been replaced by local traffic rules
|
2024-02-21 22:54:22 +01:00 |
|
Luca Deri
|
ab34197603
|
Various script fixed
Improved error message when scripts fail
|
2024-02-19 22:13:01 +01:00 |
|
Matteo Biscosi
|
e597e83e15
|
Removed and fixes some dependencies
|
2024-02-19 12:38:56 +00:00 |
|
Nicolo Maio
|
df2e4bd12a
|
Add VLAN rules. (#8193)
|
2024-02-06 17:47:15 +01:00 |
|
Nicolo Maio
|
d537a71781
|
Add usage metric in SNMP devices rules.
|
2024-01-19 11:15:19 +01:00 |
|
Nicolo Maio
|
b3c573498f
|
Reworked SNMP interfaces average usage and replaced the interface load alert with the interface average usage alert (#8168)
|
2024-01-17 12:41:59 +01:00 |
|
Luca Deri
|
55870e97b9
|
(C) Update
|
2024-01-12 11:44:18 +01:00 |
|
Matteo Biscosi
|
2b13cdc177
|
Fixes various issues on exporters rules
|
2023-12-21 18:30:33 +00:00 |
|
Nicolo Maio
|
418b37ffcd
|
Fix flow exporter ifname on local traffic rules. (#8099)
|
2023-12-15 13:02:08 +01:00 |
|
Nicolo Maio
|
98bea0a032
|
[VS] Fix in ipv4_netscan the host not detected case. (#8086)
|
2023-12-11 19:50:27 +01:00 |
|
Nicolo Maio
|
9d61a1f41e
|
[VS] Fix not configured alert description.
|
2023-12-05 19:03:26 +01:00 |
|
Nicolo Maio
|
3e5b3a8218
|
[VS] Add multiselect on ipv4_netscan.
|
2023-12-05 17:40:49 +01:00 |
|
Nicolo Maio
|
a5a2146cfb
|
Add isVSConfiguredHost and triggertHostNotConfiguredAlert. (#8051)
|
2023-11-30 09:36:48 +01:00 |
|
Matteo Biscosi
|
d75454a709
|
Added blacklisted flow alert debug
|
2023-11-29 16:20:14 +00:00 |
|
Matteo Biscosi
|
e8b8b7e570
|
Fixes blacklisted flow message in case of custom categories
|
2023-11-28 11:13:53 +00:00 |
|
Nicolo Maio
|
fb0ff0850c
|
[VS] Add check on the host before TCP/UDP portscan. (#8050)
|
2023-11-23 14:58:37 +01:00 |
|
Matteo Biscosi
|
ed4ab2836f
|
Added system alert in case of ntopng failure (#8040)
|
2023-11-22 10:22:22 +00:00 |
|
Matteo Biscosi
|
da2c0ea972
|
Fixes interface alert subject not correctly formatted (#8036)
|
2023-11-21 11:55:04 +00:00 |
|
Nicolo Maio
|
34f7a42308
|
[VS] Add historical reports. (#8015) (#7950)
|
2023-11-20 17:06:23 +01:00 |
|
Nicolo Maio
|
8864c52fef
|
[VS] Fix alert url.
|
2023-11-20 12:16:31 +01:00 |
|
Nicolo Maio
|
672539ac9f
|
[VS] Disable alert triggers for port changes when conducting a CVE scan
|
2023-11-13 16:14:08 +01:00 |
|
Nicolo Maio
|
2083ea6cb9
|
[VS] Add IPv6 badge on alert description.
|
2023-11-13 14:51:34 +01:00 |
|
Alfredo Cardigliano
|
b24905747c
|
Add local_explorer flag to alert format callback
|
2023-11-13 13:02:07 +01:00 |
|
Nicolo Maio
|
6187ee30b8
|
[VS] Fix alert description.
|
2023-11-13 11:01:43 +01:00 |
|
Luca Deri
|
463b906b59
|
Added supporto for ModBUS Scattered Holding Register Read
|
2023-11-10 11:36:35 +01:00 |
|
Nicolo Maio
|
5ad7b64874
|
[VS] Add scan type in alert message (#7969)
|
2023-11-06 11:32:21 +01:00 |
|
Alfredo Cardigliano
|
5de25b0dfb
|
Improve VS alert description (#7969)
|
2023-11-02 15:05:41 +01:00 |
|
Matteo Biscosi
|
b970d0859e
|
Fixes shutting down doesn't insert alerts in CH (#7949)
|
2023-10-25 11:41:53 +00:00 |
|
Matteo Biscosi
|
f9a55743b6
|
Added malware host contacted check
|
2023-10-18 10:40:54 +00:00 |
|
Nicolo Maio
|
3aeab7041c
|
[VS] Fix nil check cases.
|
2023-10-18 12:38:47 +02:00 |
|
Nicolo Maio
|
200190d301
|
Fix host and iface rules with ndpi:protocol metrics. (#7912)
|
2023-10-16 18:33:37 +02:00 |
|
Matteo Biscosi
|
ec3545df2d
|
Fixes interface name (#7908)
|
2023-10-16 09:32:46 +00:00 |
|
Nicolo Maio
|
be6c2e0d4f
|
[VS] Fix alert generation.
|
2023-10-12 16:58:55 +02:00 |
|
Nicolo Maio
|
3d44707cc8
|
[VS] Add UDP port handler and implement numerous fixes.
|
2023-10-12 15:17:05 +02:00 |
|
Nicolo Maio
|
225cd81bcb
|
Add port service name and fix alerts (#7859)
|
2023-10-02 18:40:48 +02:00 |
|
Nicolo Maio
|
92ce0298d0
|
Remove tprint.
|
2023-09-07 16:01:16 +02:00 |
|
Nicolo Maio
|
08620ecdec
|
Add traffic RX and TX (#7754)
|
2023-08-29 15:59:52 +02:00 |
|
Matteo Biscosi
|
dc291cf89e
|
Changed VS alert message
|
2023-08-18 14:41:37 +00:00 |
|
Matteo Biscosi
|
f88f512ac2
|
Added debug print to VA
|
2023-08-18 12:52:34 +00:00 |
|