Commit graph

417 commits

Author SHA1 Message Date
Matteo Biscosi
0fecdee1e4 Reworked blacklists page 2024-04-11 12:48:59 -04:00
Matteo Biscosi
1460eda751 Fixes SQL injection description 2024-04-10 07:16:13 -04:00
Luca Deri
f26d56959c Renamed HostBlackHoleContactsAlert to HostScannerAlert 2024-04-08 18:35:49 +02:00
Matteo Biscosi
436bf03e56 Removed html when not requested and fixed some alerts description(#8304) 2024-04-08 10:45:11 -04:00
Matteo Biscosi
cbec26e3b4 Fixes missing alert descriptions (#8314 #8313) 2024-04-08 07:02:17 -04:00
Nicolo Maio
a68667861e Fix Host Alert BlackHole Contacts title. 2024-03-29 11:24:37 +01:00
Nicolo Maio
b20e06482c Fix the logic for HostBlackHoleContacts and RXOnlyHostScan checks. 2024-03-29 10:09:57 +01:00
Nicolò Maio
2deb42a7a2
Add the blackhole contacts alerts and update the scan detection alert. (#8290) 2024-03-28 08:55:45 +01:00
Nicolo Maio
8372d80dc8 Add UID to the description of blacklisted flow alerts. (#7799) 2024-03-01 16:38:46 +01:00
Nicolo Maio
4e9d324236 Add traffic profiles rules. (#7839) 2024-03-01 15:18:08 +01:00
Matteo Biscosi
88e5d26afe Removed no more used checks (#8235) 2024-02-27 05:49:44 -05:00
Luca Deri
2ee2c180a5 Removed alerts no longer necessary as they have been replaced by local traffic rules 2024-02-21 22:54:22 +01:00
Luca Deri
ab34197603 Various script fixed
Improved error message when scripts fail
2024-02-19 22:13:01 +01:00
Matteo Biscosi
e597e83e15 Removed and fixes some dependencies 2024-02-19 12:38:56 +00:00
Nicolo Maio
df2e4bd12a Add VLAN rules. (#8193) 2024-02-06 17:47:15 +01:00
Nicolo Maio
d537a71781 Add usage metric in SNMP devices rules. 2024-01-19 11:15:19 +01:00
Nicolo Maio
b3c573498f Reworked SNMP interfaces average usage and replaced the interface load alert with the interface average usage alert (#8168) 2024-01-17 12:41:59 +01:00
Luca Deri
55870e97b9 (C) Update 2024-01-12 11:44:18 +01:00
Matteo Biscosi
2b13cdc177 Fixes various issues on exporters rules 2023-12-21 18:30:33 +00:00
Nicolo Maio
418b37ffcd Fix flow exporter ifname on local traffic rules. (#8099) 2023-12-15 13:02:08 +01:00
Nicolo Maio
98bea0a032 [VS] Fix in ipv4_netscan the host not detected case. (#8086) 2023-12-11 19:50:27 +01:00
Nicolo Maio
9d61a1f41e [VS] Fix not configured alert description. 2023-12-05 19:03:26 +01:00
Nicolo Maio
3e5b3a8218 [VS] Add multiselect on ipv4_netscan. 2023-12-05 17:40:49 +01:00
Nicolo Maio
a5a2146cfb Add isVSConfiguredHost and triggertHostNotConfiguredAlert. (#8051) 2023-11-30 09:36:48 +01:00
Matteo Biscosi
d75454a709 Added blacklisted flow alert debug 2023-11-29 16:20:14 +00:00
Matteo Biscosi
e8b8b7e570 Fixes blacklisted flow message in case of custom categories 2023-11-28 11:13:53 +00:00
Nicolo Maio
fb0ff0850c [VS] Add check on the host before TCP/UDP portscan. (#8050) 2023-11-23 14:58:37 +01:00
Matteo Biscosi
ed4ab2836f Added system alert in case of ntopng failure (#8040) 2023-11-22 10:22:22 +00:00
Matteo Biscosi
da2c0ea972 Fixes interface alert subject not correctly formatted (#8036) 2023-11-21 11:55:04 +00:00
Nicolo Maio
34f7a42308 [VS] Add historical reports. (#8015) (#7950) 2023-11-20 17:06:23 +01:00
Nicolo Maio
8864c52fef [VS] Fix alert url. 2023-11-20 12:16:31 +01:00
Nicolo Maio
672539ac9f [VS] Disable alert triggers for port changes when conducting a CVE scan 2023-11-13 16:14:08 +01:00
Nicolo Maio
2083ea6cb9 [VS] Add IPv6 badge on alert description. 2023-11-13 14:51:34 +01:00
Alfredo Cardigliano
b24905747c Add local_explorer flag to alert format callback 2023-11-13 13:02:07 +01:00
Nicolo Maio
6187ee30b8 [VS] Fix alert description. 2023-11-13 11:01:43 +01:00
Luca Deri
463b906b59 Added supporto for ModBUS Scattered Holding Register Read 2023-11-10 11:36:35 +01:00
Nicolo Maio
5ad7b64874 [VS] Add scan type in alert message (#7969) 2023-11-06 11:32:21 +01:00
Alfredo Cardigliano
5de25b0dfb Improve VS alert description (#7969) 2023-11-02 15:05:41 +01:00
Matteo Biscosi
b970d0859e Fixes shutting down doesn't insert alerts in CH (#7949) 2023-10-25 11:41:53 +00:00
Matteo Biscosi
f9a55743b6 Added malware host contacted check 2023-10-18 10:40:54 +00:00
Nicolo Maio
3aeab7041c [VS] Fix nil check cases. 2023-10-18 12:38:47 +02:00
Nicolo Maio
200190d301 Fix host and iface rules with ndpi:protocol metrics. (#7912) 2023-10-16 18:33:37 +02:00
Matteo Biscosi
ec3545df2d Fixes interface name (#7908) 2023-10-16 09:32:46 +00:00
Nicolo Maio
be6c2e0d4f [VS] Fix alert generation. 2023-10-12 16:58:55 +02:00
Nicolo Maio
3d44707cc8 [VS] Add UDP port handler and implement numerous fixes. 2023-10-12 15:17:05 +02:00
Nicolo Maio
225cd81bcb Add port service name and fix alerts (#7859) 2023-10-02 18:40:48 +02:00
Nicolo Maio
92ce0298d0 Remove tprint. 2023-09-07 16:01:16 +02:00
Nicolo Maio
08620ecdec Add traffic RX and TX (#7754) 2023-08-29 15:59:52 +02:00
Matteo Biscosi
dc291cf89e Changed VS alert message 2023-08-18 14:41:37 +00:00
Matteo Biscosi
f88f512ac2 Added debug print to VA 2023-08-18 12:52:34 +00:00