Commit graph

433 commits

Author SHA1 Message Date
Alfredo Cardigliano
7d79313f7c Fix invalid snmp interface selection (#7528) 2023-07-10 12:29:16 +02:00
Alfredo Cardigliano
5a1a118b5b Handle device only in _entity_val_to_ip_and_port 2023-06-30 15:57:45 +02:00
Alfredo Cardigliano
188f7e6186 Fix link to historical flows - including vlan now (#7613) 2023-06-30 12:25:40 +02:00
Matteo Biscosi
353a154c6a Fixes info entry in flow alerts 2023-06-30 08:47:12 +00:00
Alfredo Cardigliano
ec9c42f489 Fix default status for retrieved alerts (fix #7597) 2023-06-28 10:30:40 +02:00
Alfredo Cardigliano
4cfb9591c7 Support 'all' page in the alerts explorer showing historical and acknowledged alerts 2023-06-22 09:13:41 +02:00
Alfredo Cardigliano
cc8d3f5b0d Fix host alert store, flow alert store in sqlite 2023-06-21 18:09:16 +02:00
Alfredo Cardigliano
9d0baae3ff Cleanup debug print 2023-06-21 09:59:25 +02:00
Alfredo Cardigliano
fcdfaa04b0 Add alert category column and filter to alerts 2023-06-21 09:58:41 +02:00
Alfredo Cardigliano
11ff3db6c8 Fix query builder for snmp interface filters 2023-06-07 16:07:45 +02:00
Alfredo Cardigliano
69e7bcd2e4 Fix SNMP alerts in case of bad port number provided by the check 2023-06-06 10:34:44 +00:00
Alfredo Cardigliano
ef22a8adc4 Fix alert type filter in alerts explorer 2023-06-01 15:09:24 +02:00
Luca Deri
b42587325e Replaces flow alert with the new page with resizable columns
Removed external link from flow alert page
2023-05-17 15:43:23 +02:00
Alfredo Cardigliano
c0b6e40596 Fix alert type match with SQLite (TODO support alert_map) (#7465) 2023-05-16 09:35:47 +02:00
Matteo Biscosi
5612113551 Fixes incorrect url redirect with severities 2023-05-09 09:21:04 +00:00
Matteo Biscosi
14ba4ada13 Fixes unformatted network 2023-04-26 16:18:38 +00:00
Matteo Biscosi
ba350292ae Fixes missing alerts_map field in alerts (#7411 #7394) 2023-04-19 09:19:10 +00:00
Matteo Biscosi
e1d0f369f7 Removed debug tprint 2023-04-17 15:52:44 +00:00
Matteo Biscosi
f9ef574c5f Fixes engaged alert rest not working properly (#7399) 2023-04-17 15:50:42 +00:00
Matteo Biscosi
f7d0f174ca Fixes not working rows number (#7385) 2023-04-11 15:10:14 +00:00
Nicolo Maio
9b1da73e4c Minor fix. (#6922) 2023-03-23 14:38:00 +00:00
Nicolo Maio
d4c67d4efc Fix sql op and add comment. (#6922) 2023-03-23 14:32:03 +00:00
Nicolo Maio
fc135e1661 Add filter on 2nd and lower flow risk.(#6922) 2023-03-23 14:08:37 +00:00
Alfredo Cardigliano
0a86bd4196 Comment out unneeded condition 2023-03-22 15:06:28 +01:00
Nicolo Maio
ee057fb525 Fix alert Suspicious DGA Domain filter. (#7226) 2023-03-22 11:41:07 +00:00
Nicolo Maio
7d7fe03575 Fix top DGA domain name filter value. (#7226) 2023-03-22 09:14:51 +00:00
Nicolo Maio
09f0bb10fb Minor fix. (#7226) 2023-03-21 15:55:50 +00:00
Nicolo Maio
260caf0b49 Add top domain name dropdown menu and alert filter. (#7226) 2023-03-21 15:38:00 +00:00
Matteo Biscosi
00e25ccd46 Added direct download with clickhouse alerts (#6852) 2023-03-21 11:21:47 +00:00
Matteo Biscosi
9ccda97dc6 Fixes ja3 filter not correctly working 2023-03-07 16:25:38 +00:00
Nicolò Maio
8d5959b7d6
Adding JA3. (#6908) (#7285) 2023-03-07 16:15:55 +01:00
Matteo Biscosi
e7f9086165 Added community id column on historical flows and alerts (#6908) 2023-02-16 18:17:49 +01:00
MatteoBiscosi
0264fb8992 Removed ip resolution when formatting alerts (#7209) 2023-02-08 13:06:36 +01:00
Alfredo Cardigliano
d6e926e9c9 Improve interface report 2023-02-03 15:26:42 +01:00
MatteoBiscosi
254bf31d23 Fixes vlan not properly working 2023-02-03 10:51:25 +01:00
Alfredo Cardigliano
cbc7eadbd8 Fix engaged alerts reported in all tab 2023-02-02 11:00:47 +01:00
Alfredo Cardigliano
16748e5f03 Add global top alerts stats 2023-01-20 16:52:05 +01:00
Alfredo Cardigliano
8631013266 Restore check for engaged alerts to be displayed if started before the displayed interval 2023-01-13 18:26:42 +01:00
Luca Deri
15786b1a00 Changes required to support multiple ntopng instances dumping flows into the same ClickHouse database 2023-01-11 20:00:03 +01:00
Alfredo Cardigliano
a9f4463f8e Add Flow Risk (Bitmap) Filter in alerts (#7077) 2023-01-02 11:15:01 +01:00
Luca Deri
21101c43f1 Added detection of periodic flows and exported it as flow risk in both flows and alerts 2022-12-30 19:48:26 +01:00
Luca Deri
4f1451c021 Handled where clause in historical queries 2022-12-29 21:44:53 +01:00
Luca Deri
587cde6f27 Firxed alert store queries when group_by is used 2022-12-28 21:23:37 +01:00
Luca Deri
d596c5ee16 Improved alert analyser 2022-12-28 18:00:57 +01:00
Alfredo Cardigliano
4feb9ef4d9 Cleanup debug print 2022-12-23 18:57:09 +01:00
Alfredo Cardigliano
bc8fb50ce7 Improve Engaged Time Report in Chart (#7066) 2022-12-23 18:55:52 +01:00
MatteoBiscosi
e0b08d6878 Correctly formatted flow tuple with vlans 2022-12-19 10:38:30 +01:00
Alfredo Cardigliano
754e1dd7f4 Add top VLAN and Network flow alerts (#6999) 2022-12-05 06:39:38 -05:00
MatteoBiscosi
692ae0bfcc Added critical and emergency status to alerts 2022-10-19 10:18:51 +02:00
MatteoBiscosi
52c316d214 Removed non standard connotations (#6878) 2022-10-17 15:53:36 +02:00