Alfredo Cardigliano
|
7d79313f7c
|
Fix invalid snmp interface selection (#7528)
|
2023-07-10 12:29:16 +02:00 |
|
Alfredo Cardigliano
|
5a1a118b5b
|
Handle device only in _entity_val_to_ip_and_port
|
2023-06-30 15:57:45 +02:00 |
|
Alfredo Cardigliano
|
188f7e6186
|
Fix link to historical flows - including vlan now (#7613)
|
2023-06-30 12:25:40 +02:00 |
|
Matteo Biscosi
|
353a154c6a
|
Fixes info entry in flow alerts
|
2023-06-30 08:47:12 +00:00 |
|
Alfredo Cardigliano
|
ec9c42f489
|
Fix default status for retrieved alerts (fix #7597)
|
2023-06-28 10:30:40 +02:00 |
|
Alfredo Cardigliano
|
4cfb9591c7
|
Support 'all' page in the alerts explorer showing historical and acknowledged alerts
|
2023-06-22 09:13:41 +02:00 |
|
Alfredo Cardigliano
|
cc8d3f5b0d
|
Fix host alert store, flow alert store in sqlite
|
2023-06-21 18:09:16 +02:00 |
|
Alfredo Cardigliano
|
9d0baae3ff
|
Cleanup debug print
|
2023-06-21 09:59:25 +02:00 |
|
Alfredo Cardigliano
|
fcdfaa04b0
|
Add alert category column and filter to alerts
|
2023-06-21 09:58:41 +02:00 |
|
Alfredo Cardigliano
|
11ff3db6c8
|
Fix query builder for snmp interface filters
|
2023-06-07 16:07:45 +02:00 |
|
Alfredo Cardigliano
|
69e7bcd2e4
|
Fix SNMP alerts in case of bad port number provided by the check
|
2023-06-06 10:34:44 +00:00 |
|
Alfredo Cardigliano
|
ef22a8adc4
|
Fix alert type filter in alerts explorer
|
2023-06-01 15:09:24 +02:00 |
|
Luca Deri
|
b42587325e
|
Replaces flow alert with the new page with resizable columns
Removed external link from flow alert page
|
2023-05-17 15:43:23 +02:00 |
|
Alfredo Cardigliano
|
c0b6e40596
|
Fix alert type match with SQLite (TODO support alert_map) (#7465)
|
2023-05-16 09:35:47 +02:00 |
|
Matteo Biscosi
|
5612113551
|
Fixes incorrect url redirect with severities
|
2023-05-09 09:21:04 +00:00 |
|
Matteo Biscosi
|
14ba4ada13
|
Fixes unformatted network
|
2023-04-26 16:18:38 +00:00 |
|
Matteo Biscosi
|
ba350292ae
|
Fixes missing alerts_map field in alerts (#7411 #7394)
|
2023-04-19 09:19:10 +00:00 |
|
Matteo Biscosi
|
e1d0f369f7
|
Removed debug tprint
|
2023-04-17 15:52:44 +00:00 |
|
Matteo Biscosi
|
f9ef574c5f
|
Fixes engaged alert rest not working properly (#7399)
|
2023-04-17 15:50:42 +00:00 |
|
Matteo Biscosi
|
f7d0f174ca
|
Fixes not working rows number (#7385)
|
2023-04-11 15:10:14 +00:00 |
|
Nicolo Maio
|
9b1da73e4c
|
Minor fix. (#6922)
|
2023-03-23 14:38:00 +00:00 |
|
Nicolo Maio
|
d4c67d4efc
|
Fix sql op and add comment. (#6922)
|
2023-03-23 14:32:03 +00:00 |
|
Nicolo Maio
|
fc135e1661
|
Add filter on 2nd and lower flow risk.(#6922)
|
2023-03-23 14:08:37 +00:00 |
|
Alfredo Cardigliano
|
0a86bd4196
|
Comment out unneeded condition
|
2023-03-22 15:06:28 +01:00 |
|
Nicolo Maio
|
ee057fb525
|
Fix alert Suspicious DGA Domain filter. (#7226)
|
2023-03-22 11:41:07 +00:00 |
|
Nicolo Maio
|
7d7fe03575
|
Fix top DGA domain name filter value. (#7226)
|
2023-03-22 09:14:51 +00:00 |
|
Nicolo Maio
|
09f0bb10fb
|
Minor fix. (#7226)
|
2023-03-21 15:55:50 +00:00 |
|
Nicolo Maio
|
260caf0b49
|
Add top domain name dropdown menu and alert filter. (#7226)
|
2023-03-21 15:38:00 +00:00 |
|
Matteo Biscosi
|
00e25ccd46
|
Added direct download with clickhouse alerts (#6852)
|
2023-03-21 11:21:47 +00:00 |
|
Matteo Biscosi
|
9ccda97dc6
|
Fixes ja3 filter not correctly working
|
2023-03-07 16:25:38 +00:00 |
|
Nicolò Maio
|
8d5959b7d6
|
Adding JA3. (#6908) (#7285)
|
2023-03-07 16:15:55 +01:00 |
|
Matteo Biscosi
|
e7f9086165
|
Added community id column on historical flows and alerts (#6908)
|
2023-02-16 18:17:49 +01:00 |
|
MatteoBiscosi
|
0264fb8992
|
Removed ip resolution when formatting alerts (#7209)
|
2023-02-08 13:06:36 +01:00 |
|
Alfredo Cardigliano
|
d6e926e9c9
|
Improve interface report
|
2023-02-03 15:26:42 +01:00 |
|
MatteoBiscosi
|
254bf31d23
|
Fixes vlan not properly working
|
2023-02-03 10:51:25 +01:00 |
|
Alfredo Cardigliano
|
cbc7eadbd8
|
Fix engaged alerts reported in all tab
|
2023-02-02 11:00:47 +01:00 |
|
Alfredo Cardigliano
|
16748e5f03
|
Add global top alerts stats
|
2023-01-20 16:52:05 +01:00 |
|
Alfredo Cardigliano
|
8631013266
|
Restore check for engaged alerts to be displayed if started before the displayed interval
|
2023-01-13 18:26:42 +01:00 |
|
Luca Deri
|
15786b1a00
|
Changes required to support multiple ntopng instances dumping flows into the same ClickHouse database
|
2023-01-11 20:00:03 +01:00 |
|
Alfredo Cardigliano
|
a9f4463f8e
|
Add Flow Risk (Bitmap) Filter in alerts (#7077)
|
2023-01-02 11:15:01 +01:00 |
|
Luca Deri
|
21101c43f1
|
Added detection of periodic flows and exported it as flow risk in both flows and alerts
|
2022-12-30 19:48:26 +01:00 |
|
Luca Deri
|
4f1451c021
|
Handled where clause in historical queries
|
2022-12-29 21:44:53 +01:00 |
|
Luca Deri
|
587cde6f27
|
Firxed alert store queries when group_by is used
|
2022-12-28 21:23:37 +01:00 |
|
Luca Deri
|
d596c5ee16
|
Improved alert analyser
|
2022-12-28 18:00:57 +01:00 |
|
Alfredo Cardigliano
|
4feb9ef4d9
|
Cleanup debug print
|
2022-12-23 18:57:09 +01:00 |
|
Alfredo Cardigliano
|
bc8fb50ce7
|
Improve Engaged Time Report in Chart (#7066)
|
2022-12-23 18:55:52 +01:00 |
|
MatteoBiscosi
|
e0b08d6878
|
Correctly formatted flow tuple with vlans
|
2022-12-19 10:38:30 +01:00 |
|
Alfredo Cardigliano
|
754e1dd7f4
|
Add top VLAN and Network flow alerts (#6999)
|
2022-12-05 06:39:38 -05:00 |
|
MatteoBiscosi
|
692ae0bfcc
|
Added critical and emergency status to alerts
|
2022-10-19 10:18:51 +02:00 |
|
MatteoBiscosi
|
52c316d214
|
Removed non standard connotations (#6878)
|
2022-10-17 15:53:36 +02:00 |
|