Commit graph

161 commits

Author SHA1 Message Date
Luca Deri
389e832d1c (C) update 2026-01-19 16:23:53 +01:00
Manuel Ceroni
ff3c9605a5
Fixed quota exceeded alert (#9872) 2025-12-03 17:54:50 +01:00
Luca Deri
97c0bbb039 Improved alert formatting 2025-09-28 10:12:36 +02:00
Luca Deri
0e4014d7bf Minor formatting changes 2025-09-27 22:28:14 +02:00
Luca Deri
e13a7208e8 Improved alert reporting 2025-09-27 15:37:12 +02:00
Luca Deri
681d7703c9 Impoved alert formatting 2025-09-11 19:30:07 +02:00
Luca Deri
bdbf22de07 Improved AS changes script 2025-09-11 18:01:08 +02:00
Luca Deri
fe25a7a531 AS ranking alert changes 2025-09-11 17:04:54 +02:00
Alfredo Cardigliano
5fd9089eeb Add alert details page to AS alerts 2025-09-11 15:51:44 +02:00
Alfredo Cardigliano
94ef20b5d6 Safety check 2025-09-11 12:53:42 +02:00
Luca Deri
810ac15922 Fixed AS ranking alert 2025-09-09 23:09:33 +02:00
Luca Deri
e7dbf49932 AS ranking changes 2025-09-09 16:54:32 +02:00
Manuel Ceroni
d3b3a6b681
Removed AS from the message of the AS ranking changed alert (#9633) 2025-09-08 11:55:15 +02:00
Manuel Ceroni
837dc962b6
Implemented AS ranking changed alert (#9626) 2025-09-08 10:11:13 +02:00
Manuel Ceroni
62ef822ad4
Changed the message of the ASN Traffic Rule Alert (#9563) 2025-08-28 12:47:43 +02:00
Manuel Ceroni
33ad9fc7b6
Various fixes to ASN Traffic Rules (#9555)
* Various fixes to ASN Traffic Rules

* Formatted ASN names for ASN traffic rules alerts
2025-08-25 14:51:46 +02:00
Alfredo Cardigliano
ba382f7316 Add AS alert entity. Fix AS threshold crossed. 2025-08-25 14:45:22 +02:00
Manuel Ceroni
5e48729f68
Implemented ASN traffic rules (#9531) 2025-08-19 23:17:25 +02:00
Alfredo Cardigliano
7dcf3de812 Fix ip_outsite_dhcp_range alert 2025-04-01 13:17:46 +02:00
Alfredo Cardigliano
eb5df64e5f Fix links 2025-03-26 16:47:40 +01:00
Manuel Ceroni
4ad05ce8e5
Implemented an alert for anomalous Redis reads and writes number (#8969) 2025-02-19 17:48:47 +01:00
Alfredo Cardigliano
aebd8b459c Add more info to login activities alerts 2025-02-14 16:48:43 +01:00
Alfredo Cardigliano
95ba6d19c6 Indent 2025-02-14 12:19:06 +01:00
Matteo Biscosi
2a47b8667f Fixes mac addresses alerts 2024-12-02 17:32:55 +01:00
Matteo Biscosi
07ef54c7cc Added ACL violation ARP alert (#8696) 2024-12-02 13:07:56 +01:00
Luca
1117e71d18 Removed SYN flood check that was partially overlapping with SYN scan 2024-10-22 15:46:50 +02:00
Luca Deri
1477437b7c Improvements for no exporter/probe activity 2024-08-07 18:06:51 +02:00
Luca Deri
16b5a8ccc1 Implemented no exporter/probe activity (#8608) 2024-08-07 18:06:51 +02:00
Alfredo Cardigliano
b09688beee Add new alert no_exporter_activity 2024-08-07 13:05:48 +02:00
Alfredo Cardigliano
47e293b2df Difine new alert type snmp_trap. Add ability to trigger snmp_trap from C. 2024-07-25 08:16:33 +00:00
Luca Ferretti
7cceb656c0
fixed typo (#8565)
* added netbox documentation

* Update asset_inventory.rst

* added ndpi-protocols ipv6 rules

* updated ipv6 check for custom rule

* fix typo

* implemented mitre_table_info inside database

* fixed typo

* changed tecnique to technique typo

* Update host_alert_scan_detected.lua
2024-07-24 18:23:47 +02:00
Luca Ferretti
61628b55c0
fixed mitre_id typo (#8562)
* added netbox documentation

* Update asset_inventory.rst

* added ndpi-protocols ipv6 rules

* updated ipv6 check for custom rule

* fix typo

* implemented mitre_table_info inside database

* fixed typo
2024-07-24 16:19:33 +02:00
Matteo Biscosi
13287d609e Added alert when dropping flows due to flow exporters limit exceeded 2024-07-15 18:58:36 +02:00
Alfredo Cardigliano
01de4b646f Add missing return 2024-07-04 16:44:38 +00:00
Alfredo Cardigliano
39494e3002 Add cloud broker host in case of disconnection and reconnection 2024-07-04 16:42:46 +00:00
Alfredo Cardigliano
8d326f2718 Define new alert cloud_reconnected 2024-06-21 17:59:14 +02:00
Alfredo Cardigliano
dab5aeba99 Define new alert cloud_disconnected 2024-06-21 17:33:05 +02:00
Luca Deri
de0325d22a Added SNMP alert in case of unresposive devices
Modifie InfluxDB 1.x -> 1.x/2.x string
2024-06-20 23:56:12 +02:00
Luca Ferretti
1b3a0ec19a
initial mitre att&ck standardization (#8446)
* added feature sorting flows by protocol

* changed protocols comparison order

* initial commit for bitmap of server ports

* bitmap added to redis

* added debug string, bitmap not working

* Update alerts_list_per_license.rst

* Update alerts_list_per_license.rst

* initial mitre att&ck standardization

* Update ServerPortsBitmap.h

* updated mitre standardization
2024-06-12 15:55:10 +02:00
Luca Deri
c53b79e302 Definition of SNMP polling error 2024-06-02 17:55:37 +02:00
Nicolo Maio
2caddb8b04 Add absolute percentage as a metric in SNMP rules. 2024-04-16 14:47:19 +02:00
Matteo Biscosi
0fecdee1e4 Reworked blacklists page 2024-04-11 12:48:59 -04:00
Nicolo Maio
4e9d324236 Add traffic profiles rules. (#7839) 2024-03-01 15:18:08 +01:00
Matteo Biscosi
88e5d26afe Removed no more used checks (#8235) 2024-02-27 05:49:44 -05:00
Matteo Biscosi
e597e83e15 Removed and fixes some dependencies 2024-02-19 12:38:56 +00:00
Nicolo Maio
df2e4bd12a Add VLAN rules. (#8193) 2024-02-06 17:47:15 +01:00
Nicolo Maio
d537a71781 Add usage metric in SNMP devices rules. 2024-01-19 11:15:19 +01:00
Nicolo Maio
b3c573498f Reworked SNMP interfaces average usage and replaced the interface load alert with the interface average usage alert (#8168) 2024-01-17 12:41:59 +01:00
Luca Deri
55870e97b9 (C) Update 2024-01-12 11:44:18 +01:00
Matteo Biscosi
2b13cdc177 Fixes various issues on exporters rules 2023-12-21 18:30:33 +00:00