Commit graph

487 commits

Author SHA1 Message Date
Matteo Biscosi
f8ab508a68 Removed html and added json format from flow_related_info 2024-04-10 07:11:32 -04:00
Matteo Biscosi
48fbd19a51 Added host location to flow page (#8293) 2024-04-09 05:31:48 -04:00
Matteo Biscosi
436bf03e56 Removed html when not requested and fixed some alerts description(#8304) 2024-04-08 10:45:11 -04:00
Matteo Biscosi
afe48631e6 Fixes missing filter alert on remote/local host 2024-04-03 09:47:25 -04:00
Alfredo Cardigliano
eb69c20864 Debug tracing 2024-04-02 16:44:30 +02:00
Nicolo Maio
dd7b184691 Add filter for the alert description. (#7660) 2024-03-25 14:46:50 +01:00
Alfredo Cardigliano
81a731c343 Remove flow filter when not requested by the gui 2024-03-11 16:11:08 +01:00
Alfredo Cardigliano
2d22a636a7 Honour no-html flag 2024-03-04 09:49:30 +01:00
Alfredo Cardigliano
19a53092f4 Handle format=json in rest/v2/get/xxx/alert/list.lua 2024-02-28 16:14:29 +01:00
Nicolo Maio
24e81d3ef9 Fix JA3 and JA4 serialization + Add JA4_c_hash filter 2024-02-22 19:00:11 +01:00
Matteo Biscosi
29a28ea203 Fixes circular dependency when filtering 2024-02-20 09:34:21 +00:00
Matteo Biscosi
e243f7c826 Fixes some lua requires 2024-02-20 08:57:48 +00:00
Nicolò Maio
1e9524d483
Removing lua utils in storage utils (#8227)
* Removing lua_utils from storage_utils

* Remove profiling

* Add missing requires for the 'flowinfo2hostname' method.

* Move clickhouseSupport check to check_redis_prefs
2024-02-19 17:56:26 +01:00
Matteo Biscosi
ddadaf3e77 Removed circular dependency on network_utils 2024-02-19 11:04:06 +00:00
Matteo Biscosi
cdfb0ca105 Fixes missing require 2024-02-15 18:34:50 +00:00
Luca Deri
35d1604bc7 Added missing dependency 2024-02-15 19:12:13 +01:00
Matteo Biscosi
dbf4bf2a2b Removed useless imports in lua code upping the memory usage 2024-02-15 15:21:40 +00:00
Matteo Biscosi
ca4d3915de Added trace in case of alert insert failure 2024-01-31 10:42:29 +00:00
Nicolo Maio
55bbf18aaf Various fixes on the SNMP engaged alerts page. (#8187) 2024-01-26 16:19:38 +01:00
Nicolo Maio
2193fa286b Fix IP filter in SNMP engaged alerts explorer. (#8108) 2024-01-25 09:56:24 +01:00
Luca Deri
55870e97b9 (C) Update 2024-01-12 11:44:18 +01:00
Alfredo Cardigliano
3179d0bb2f Fix debug message 2024-01-11 11:26:17 +01:00
Alfredo Cardigliano
5bbf7cefb8 Print bad alerts with no alert_category defines 2023-12-04 15:19:46 +01:00
Nicolo Maio
f12f4d1fa8 [VS] Add enable alert historical flows actions. (#8018) 2023-11-22 12:25:02 +01:00
Matteo Biscosi
da2c0ea972 Fixes interface alert subject not correctly formatted (#8036) 2023-11-21 11:55:04 +00:00
Alfredo Cardigliano
9e3adc817f Add checks on missing measurement info 2023-11-13 13:06:12 +01:00
Alfredo Cardigliano
b24905747c Add local_explorer flag to alert format callback 2023-11-13 13:02:07 +01:00
Matteo Biscosi
35b7ab5943 Removed duplicated field 2023-11-02 13:20:38 +00:00
Matteo Biscosi
5ba3afddae Fixes ordering on network not working 2023-10-25 13:43:29 +00:00
Nicolo Maio
02b201ce61 Fix URLs on SNMP alert stats page. 2023-10-24 17:42:00 +02:00
Alfredo Cardigliano
4614ea3ea3 Fix comment 2023-10-16 11:46:20 +02:00
Alfredo Cardigliano
14da92abff Fix alerts custom queries 2023-10-13 10:48:25 +02:00
Alfredo Cardigliano
c0ec94edc6 Code rework 2023-10-04 15:16:39 +02:00
Alfredo Cardigliano
c6458dbc29 Fix flow alert queries on SQLite (#7869) 2023-10-03 15:24:35 +02:00
Alfredo Cardigliano
66648f76f5 Fix SQL error on alerts 2023-10-02 09:17:21 +02:00
Matteo Biscosi
284b040130 Fixes alert store not working 2023-09-27 16:08:13 +00:00
Matteo Biscosi
9670b4fee1 Fixes select issue 2023-09-27 11:02:40 +00:00
Matteo Biscosi
47377af96b Added total traffic column in flow alerts page (#7776) 2023-09-26 10:18:25 +00:00
Matteo Biscosi
ad2e918f8d Moved vulnerability scan alert into active monitoring alerts (#7761) 2023-08-18 10:18:23 +00:00
Alfredo Cardigliano
72aa7b4011 Take the score into account when computing the top alerts (weighted count) 2023-08-17 09:43:05 +02:00
Alfredo Cardigliano
b6be0e1d48 Take the score into account when computing the top alerted hosts 2023-08-17 09:34:25 +02:00
Alfredo Cardigliano
ca7ded97f6 Fix flow alert where clause in write mode 2023-07-26 10:12:17 +02:00
Alfredo Cardigliano
7a314e9d69 Add sample custom query for host alerts. Fix host alerts format to handle empty fields. 2023-07-24 15:50:59 +02:00
Alfredo Cardigliano
96620bfe77 Fix sort in alert custom queries 2023-07-24 15:12:27 +02:00
Alfredo Cardigliano
0883cef68d Fix count (and reported total rows) with group by on alerts 2023-07-21 17:57:06 +02:00
Alfredo Cardigliano
06ceee61cc Extend record.filter with tag filters to be used to Expand aggregated alerts into raw alerts 2023-07-19 16:44:03 +02:00
Alfredo Cardigliano
ede79f5197 Fix rendering ov vlan and port 2023-07-19 11:49:22 +02:00
Alfredo Cardigliano
6cf88c6d34 Fix rendering of cli/src and vlan in custom queries 2023-07-19 11:29:26 +02:00
Alfredo Cardigliano
4215f033b3 Support fixed filters in custol alert queries 2023-07-19 09:56:35 +02:00
Alfredo Cardigliano
1bdf0680c6 Fix format of longlived alerts 2023-07-18 11:34:50 +02:00