Commit graph

10890 commits

Author SHA1 Message Date
YellowMan
3969fc9d9e
added rest API mac traffic information (#8885)
* added asset management utils

* added rest API mac traffic information
2025-01-13 17:56:27 +01:00
Matteo Biscosi
60123b0217 Fixes flow details error 2025-01-13 15:41:27 +01:00
Matteo Biscosi
72681a36dd Added support to all and port range for acl 2025-01-13 09:52:28 +01:00
Matteo Biscosi
911e4c6f63 Fixes host names not correctly shown 2025-01-08 10:45:37 +01:00
Matteo Biscosi
2b9691b742 Fixes misstyping name 2025-01-07 10:38:16 +01:00
Luca Deri
8b046d1996 Label fix when mac is missing 2025-01-03 18:00:26 +01:00
Alfredo Cardigliano
d0d724ac80 Do not add is_engaged field for flow alerts as it is not required 2025-01-03 12:20:34 +01:00
Matteo Biscosi
59e2e82623 Fixes blacklists page default behavior (#8834) 2025-01-03 11:30:56 +01:00
Matteo Biscosi
9bd17fb1da Added merge data on asset_management 2025-01-03 11:22:14 +01:00
Matteo Biscosi
a63dec0dcc Reworked assets table 2024-12-30 12:37:54 +01:00
Alfredo Cardigliano
24c3745810 Fix engaged alerts rendering for all families 2024-12-30 12:24:23 +01:00
Alfredo Cardigliano
25ee73bbe3 Fix alerts chart for alerts engaged before the time interval (#8795) 2024-12-30 12:02:54 +01:00
Alfredo Cardigliano
a5c59a2c48 Check max alert engage time to optimize queries (#8795) 2024-12-27 18:45:55 +01:00
Luca Deri
ac6788a311 Bug fix 2024-12-23 21:01:01 +01:00
Luca Deri
4b160de275 Improved host policy alert 2024-12-23 10:32:04 +01:00
Alfredo Cardigliano
aed28b16dd Fix flow details for UDP 2024-12-20 16:52:07 +01:00
Alfredo Cardigliano
e242395dd2 Show engaged time interval in alerts 2024-12-20 12:44:21 +01:00
Matteo Biscosi
d435f379b0 Removed check on entity id when printing the host 2024-12-19 18:27:51 +01:00
YellowMan
a747b6bebc
added asset management utils (#8883) 2024-12-19 18:26:33 +01:00
Matteo Biscosi
133f5339b3 Added host policy alert in lua 2024-12-19 10:23:46 +01:00
Matteo Biscosi
02760c9303 Unified alert details page for ch and not (#8825) 2024-12-18 16:12:00 +01:00
YellowMan
3fae0b6e65
Mac tracking list (#8881)
* Local To Internet Connection Alert

* migrate information in mac-address traking list page
2024-12-18 15:09:41 +01:00
Alfredo Cardigliano
b38ce0cef7 Fix pcap bpf from the host page 2024-12-18 12:43:00 +01:00
Matteo Biscosi
8f30dbe7df Fixes indexing of a nil table (#8879) 2024-12-18 10:19:12 +01:00
Luca Deri
fd98333e2c Fixed TCP retransmission handling via ZMQ 2024-12-17 19:09:25 +01:00
Alfredo Cardigliano
619ebfa11c Add restricted networks configuration in nedge multicast forwarding 2024-12-17 12:00:29 +01:00
Matteo Biscosi
fc7fa607ae Added missing local2remote and remote2local ts (#8837) 2024-12-17 11:14:20 +01:00
Matteo Biscosi
a514dc9cdb Fixes periodicity changed description (#8853) 2024-12-17 11:06:52 +01:00
Matteo Biscosi
5faffe64bc Possible fix for error while loading the recipient (#8876) 2024-12-17 10:57:01 +01:00
Alfredo Cardigliano
0c9693bc76 Fix note 2024-12-16 10:59:43 +01:00
Matteo Biscosi
585287581a Added drops in the menubar (#8857) 2024-12-12 17:04:36 +01:00
Matteo Biscosi
e89f07f238 Merged score threshold and dangerous hosts alerts (#8827) 2024-12-12 16:45:43 +01:00
Matteo Biscosi
6ec9b42771 Added non null check 2024-12-12 11:51:45 +01:00
YellowMan
dc24919182
fixed missing information in historical flow details (#8872) 2024-12-12 11:42:13 +01:00
Matteo Biscosi
c0c1773777 Added function to convert from flow to flow_alert 2024-12-12 11:06:12 +01:00
Matteo Biscosi
faa34b614c Fixes alert score not correctlt working (#8851) 2024-12-11 19:25:30 +01:00
Matteo Biscosi
e3487d445f Fixes alerts incorrectly displayed 2024-12-11 19:25:30 +01:00
YellowMan
c712750200
Remote to local insecure flow (#8871)
* Fixed domain names contact alert behaviour

* enanched remote to local insecure flow alert description

* minor fix
2024-12-11 16:54:01 +01:00
Matteo Biscosi
5d76ee3ec7 Fixes score calculation error (#8868) 2024-12-11 12:32:20 +01:00
Matteo Biscosi
4de05910dc Fixes incorrect flow alert message printed 2024-12-11 11:27:26 +01:00
Matteo Biscosi
715cc5ddd9 Fixes compatibility with new alert format 2024-12-10 18:05:47 +01:00
Alfredo Cardigliano
e1c385985c Fix backward compatibility 2024-12-10 14:40:32 +01:00
Alfredo Cardigliano
d8d7330f11 Rework alert serialization. Change alert info format (info for all triggered alerts are now generated) 2024-12-10 13:27:57 +01:00
Matteo Biscosi
c214ffca9a Fixes blacklists timeseries not correctly showing values (#8817) 2024-12-09 13:28:55 +01:00
Alfredo Cardigliano
027a4ebbf4 Add missing require 2024-12-09 09:24:45 +01:00
Alfredo Cardigliano
e03f4e1bf8 Fix return code 2024-12-06 18:22:08 +01:00
Alfredo Cardigliano
bf89143232 Fix failure (#8808) 2024-12-06 18:17:56 +01:00
Matteo Biscosi
cec956fa1b Reworked applications and categories tabs (#) 2024-12-06 17:44:15 +01:00
Matteo Biscosi
609b059745 Added networks policies (#8812) 2024-12-05 16:51:26 +01:00
Matteo Biscosi
b5c956e693 Fixes network configuration not correctly working 2024-12-05 16:51:26 +01:00