Commit graph

7023 commits

Author SHA1 Message Date
Luca Deri
3d117a9e16 Added support for SIP CallID in flow key 2024-05-04 11:27:38 +02:00
Matteo Biscosi
4429334066 Removed RTP call state 2024-05-03 15:29:40 -04:00
Matteo Biscosi
680f3314ee Added badges to sip 2024-05-03 11:47:20 -04:00
Matteo Biscosi
33dfd63927 Added SIP status call 2024-05-03 11:33:37 -04:00
Matteo Biscosi
57eb0c7207 Started fixing issue #8325 2024-05-03 09:30:17 -04:00
Matteo Biscosi
2524aa13da Possible fix for rtp / sip protocols details (#8375) 2024-05-03 09:30:17 -04:00
Nicolo Maio
2e1b64d760 Add Blacklist reset button (#8359) 2024-05-03 15:01:50 +02:00
Matteo Biscosi
32f5872531 Removed debug print 2024-05-03 04:30:57 -04:00
Matteo Biscosi
c82168fb3d Added top snmp interfaces chart in flowdev exporters 2024-05-03 04:30:57 -04:00
Luca Deri
db38a5d2d5 DHCP (via ZMQ) Fixes for #7972
The symbolic hostname will use the DHCP name before the DNS resolved name
2024-05-02 21:46:03 +02:00
Luca Deri
a3baa4be71 Added missing DHCP mappings (#7972) 2024-05-02 19:25:19 +02:00
Luca Deri
7d4a14f8f4 Legacy code no longer used 2024-05-02 19:19:39 +02:00
Matteo Biscosi
64a9ffd45d Fixes attempt to index a nil value 2024-05-02 11:43:30 -04:00
Nicolo Maio
e3c427a139 Add L4 protocol filter in flow alerts. (#8358) 2024-05-02 17:30:13 +02:00
Matteo Biscosi
ff3c71f11e Fixes top dropdowns in alert page 2024-05-02 04:35:54 -04:00
Matteo Biscosi
00cb3604b1 Fixes filters sorting (#8361) 2024-05-02 03:59:51 -04:00
Luca Deri
bc372d0d93 Cosmetic fixes 2024-04-30 12:28:51 +02:00
Matteo Biscosi
b68a819c77 Fixes main alert score in case of single alert triggered 2024-04-29 16:57:01 -04:00
Luca Deri
f1eb972c6e Cosmetic changes 2024-04-29 22:46:50 +02:00
Matteo Biscosi
d0a1464f9c Fixes historical score formatter 2024-04-29 13:14:02 -04:00
Luca Deri
8f49ce0f4b Cleaned up bkaclisted flow label (removed UID) 2024-04-25 11:04:12 +02:00
Nicolo Maio
2bed18ea1e Add retransmissions, out-of-order, and lost packets filters in historical flows. (#7948) 2024-04-24 18:00:43 +02:00
Nicolò Maio
59075f5e10
Splitting blacklisted flow alert and creating two new alerts. (#8354) (#8355)
* Splitting blacklisted flow alert and creating two new alerts. (#8354)

* Renaming to 'Blacklisted Client Contact' and 'Blacklisted Server Contact'. (#8354)
2024-04-24 17:37:30 +02:00
Nicolò Maio
636ba2975c
Add Flow Reset Alert and counter. (#8264) (#8348)
* Add Flow Reset Alert and counter. (#8264)

* Renaming to TCP Flow Reset. (#8264)

* Renaming the value retrieved by the getName method. (#8264)
2024-04-24 17:15:20 +02:00
Luca Deri
dac2cb60ad Added missing dirs variable definition 2024-04-23 22:22:24 +02:00
Matteo Biscosi
d397d47555 Lowered the maximum amount of alert for jailed host (#8311) and added cleanup at startup 2024-04-23 10:03:50 -04:00
Alfredo Cardigliano
260510289e Fix match on alert type 2024-04-23 16:02:55 +02:00
Luca Deri
5779579a20 Fixes protocol categories and reverts 5b4629f9e5 2024-04-23 12:48:23 +02:00
Alfredo Cardigliano
3dbdcc4966 Fix filters on alert types for non host/flow alerts 2024-04-22 18:39:55 +02:00
Alfredo Cardigliano
6c02a54e20 Fix entity for alerts triggered from lua 2024-04-22 13:19:16 +02:00
Matteo Biscosi
6ee1026112 Added top blacklists charts (#8092) 2024-04-19 10:05:18 -04:00
Alfredo Cardigliano
e709a6818e Limit results to the max set in the backend 2024-04-19 15:51:17 +02:00
Alfredo Cardigliano
d7415c156d Add option to limit rows 2024-04-19 15:41:27 +02:00
Nicolo Maio
07d2f1417a Minor fix on historical flow details page. 2024-04-19 15:38:27 +02:00
Nicolo Maio
21379070f5 Add IssuerDN and Last Server filters. (#7032) 2024-04-18 17:30:06 +02:00
Nicolò Maio
fd6b0958c3
Rename the alert to "Remote to Local Insecure Flow". (#8257) (#8339) 2024-04-18 12:45:54 +02:00
Nicolò Maio
3d5fadf66b
Save backup on Disk (#8272) (#8332)
* Save backup on Disk (#8272)

* Utilize ntop.readdir and eliminate the usage of io.popen (#8272)
2024-04-18 12:45:15 +02:00
Nicolo Maio
b34a674427 Fix usage of COLLATE option. 2024-04-18 12:19:11 +02:00
Nicolo Maio
96cd811123 Fix incorrect historical hosts location. (#8338) 2024-04-17 12:55:29 +02:00
Nicolo Maio
2caddb8b04 Add absolute percentage as a metric in SNMP rules. 2024-04-16 14:47:19 +02:00
Matteo Biscosi
2671a71f1a Fixes historical detail not working 2024-04-16 06:08:15 -04:00
Matteo Biscosi
377281779e Fixes missing link to configuration page 2024-04-15 10:58:51 -04:00
Luca Deri
e888e6fb69 Typo 2024-04-13 08:50:26 +02:00
Luca Deri
4a93fe8a87 Added support in flow details for STUN MAPPED-ADDRESS 2024-04-12 21:14:38 +02:00
Matteo Biscosi
7d0a946007 Fixed missing fields in TLS alerts 2024-04-12 11:20:40 -04:00
Matteo Biscosi
0cfd1246c1 Fixes some alerts description 2024-04-12 11:03:33 -04:00
Matteo Biscosi
dc7eeba386 Changed score order 2024-04-12 10:48:08 -04:00
Matteo Biscosi
289c398783 Fixes fields disappearing in different rests 2024-04-12 09:29:15 -04:00
Matteo Biscosi
d326926680 Removed cpu and time intensive query 2024-04-12 09:11:12 -04:00
Matteo Biscosi
abc7330c14 Removed info duplicated field 2024-04-12 09:09:12 -04:00