Commit graph

11042 commits

Author SHA1 Message Date
Matteo Biscosi
2ba9fcda17 Fixes suspicious DGA domain alert (#8978) 2025-03-06 15:45:20 +01:00
Luca
39c1df732b QoE improvements 2025-03-06 11:13:20 +01:00
Matteo Biscosi
ba09b280cb Added check for asset_utils fail 2025-03-05 11:53:05 +01:00
Matteo Biscosi
34b559e66d Added attacker in port scan (#9009) 2025-03-05 11:52:56 +01:00
Manuel Ceroni
83d6fb24da
Port scan alert aggregation (#9021) 2025-03-04 16:12:13 +01:00
GabrieleDeri
4c1026f54d
Updated some REST documentation (#9013) 2025-03-03 10:31:37 +01:00
Alfredo Cardigliano
d884c9bc14 Add alert set_as_attacker / set_as_victim for lua alerts on hosts 2025-03-03 08:55:19 +01:00
Alfredo Cardigliano
d9266c0c92 Remove rest/v1 (obsolete) 2025-03-03 08:25:10 +01:00
Luca
a72491832f Periodic flow check is now disabled by default 2025-02-28 18:58:34 +01:00
manuelceroni
bbbcd6510a Changed interval size and priority for port scan alerts 2025-02-28 13:14:17 +01:00
Alfredo Cardigliano
ab9224d2ce Extend lua alerts API with alert:set_require_attention() 2025-02-28 11:58:08 +01:00
Matteo Biscosi
a251974b21 Fixes misstyping 2025-02-28 11:18:23 +01:00
Matteo Biscosi
fb44f88f34 Fixes missing where and query not working (#8999) 2025-02-28 11:15:41 +01:00
GabrieleDeri
c45d7d3347
Fixed missing import of host pool and silence duplicate alerts (#9008)
* Fixed missing import of host pool and silence duplicate alerts in notification config import

* Removed debug print
2025-02-27 23:33:50 +01:00
Matteo Biscosi
acb437468d Fixes issue with view interface changing ifid (#8989) 2025-02-27 15:02:48 +01:00
Matteo Biscosi
c9a95ded82 Fixes names not displayed (#8994) 2025-02-27 13:42:52 +01:00
Alfredo Cardigliano
ad1d684373 Fix reported retr/ooo/lost stats 2025-02-27 11:21:47 +01:00
Manuel Ceroni
d4b7a3d375
Implemented port scan alert (clickhouse) (#9006) 2025-02-27 10:44:18 +01:00
GabrieleDeri
76bfcc88ce
Added rest to map score to severity (#9005) 2025-02-26 21:53:54 +01:00
Matteo Biscosi
c6c47f727e Added QoE timeseries and stats into various entities (#8984) 2025-02-26 18:13:11 +01:00
Matteo Biscosi
59dead6933 Fixes flow table incorrect in host details page 2025-02-26 18:13:11 +01:00
Alfredo Cardigliano
4963dddfbf Add more recipient stats for all endpoints 2025-02-26 16:39:27 +01:00
Alfredo Cardigliano
cc71465273 Fix example 2025-02-26 14:46:27 +01:00
GabrieleDeri
3e13ef3f06
Fixed broken iec104 REST, added missing params error code #9001 (#9002) 2025-02-26 14:35:24 +01:00
Matteo Biscosi
59f5b4267c Moved QoE function to a new modules and added labels to QoE charts 2025-02-26 11:39:42 +01:00
Alfredo Cardigliano
c0596432ef Add QoE pie chart to the dashboard 2025-02-26 10:38:24 +01:00
Luca Deri
b5c2604da8 Fixed webhook timeout. Added tracings
Improved webhook messages
2025-02-26 10:36:34 +01:00
Matteo Biscosi
f912b247af Moved qoe position filter 2025-02-26 10:16:15 +01:00
Matteo Biscosi
1db56458d6 Added QoE filter to live flows (#8982) 2025-02-26 10:12:27 +01:00
Luca Deri
45c5e96f21 Added ICMP information in flows list 2025-02-25 15:45:25 +01:00
Matteo Biscosi
a0700827c9 Added bs5 tooltips to historical data 2025-02-25 15:04:13 +01:00
Matteo Biscosi
2e3904e78a Optimized drop counter 2025-02-25 14:06:51 +01:00
Matteo Biscosi
93d7557daf Moved qoe score to enterprise L version 2025-02-25 14:06:33 +01:00
Matteo Biscosi
a1d70927eb Added qoe labels to historical 2025-02-25 12:05:49 +01:00
Alfredo Cardigliano
dc4393f9ad Remove unused old endpoint 2025-02-25 10:15:18 +01:00
Alfredo Cardigliano
4fa955544c Add QoE score to historical flows 2025-02-25 10:02:44 +01:00
GabrieleDeri
117b6e3f0c
Added documentation for duplicate alerts silencing logic (#8992) 2025-02-25 09:26:46 +01:00
Matteo Biscosi
3603d2659a Added autocomplete off to pwd fields 2025-02-24 18:09:28 +01:00
GabrieleDeri
fe18eff11d
Started fixing rest Documentation and postman collection creation (#8987) 2025-02-24 11:46:44 +01:00
Luca Deri
2630523059 QoE improvements 2025-02-23 21:11:12 +01:00
Matteo Biscosi
e541c21dc7 Fixes historical flow details not working correctly 2025-02-21 16:34:01 +01:00
Alfredo Cardigliano
5bfdb2b335 Add SRC2DST_PACKETS/DST2SRC_PACKETS columns definition. Complete SRC2DST_BYTES/DST2SRC_BYTES definition. 2025-02-21 10:06:38 +01:00
Matteo Biscosi
2f6261fc57 Fixes infrastructure query link 2025-02-20 17:22:59 +01:00
Alfredo Cardigliano
6b43730bdd Extend conversations custom query with packets/bytes per direction 2025-02-20 17:01:08 +01:00
Alfredo Cardigliano
90400a1628 Fix nan 2025-02-20 15:30:15 +01:00
Alfredo Cardigliano
1e78c6c720 Fix mac page 2025-02-20 12:15:21 +01:00
Alfredo Cardigliano
db966e8128 Fix hosts page 2025-02-20 11:48:06 +01:00
Alfredo Cardigliano
cfb0b08e64 Change column name 2025-02-20 11:37:53 +01:00
Manuel Ceroni
4ad05ce8e5
Implemented an alert for anomalous Redis reads and writes number (#8969) 2025-02-19 17:48:47 +01:00
Alfredo Cardigliano
2c1908b43e Fix dup condition 2025-02-19 09:47:19 +01:00