GabrieleDeri
6d2f9213eb
Fixed assets links issues and last seen formatting ( #9052 )
2025-03-18 09:48:10 +01:00
Alfredo Cardigliano
b077895c01
Fix format
2025-03-18 09:05:55 +01:00
Alfredo Cardigliano
b1fb4322f9
Fix correlation of suricata alerts for dns flows
2025-03-18 08:59:46 +01:00
Alfredo Cardigliano
8690becceb
Parse query id from syslog alerts
2025-03-17 20:14:56 +01:00
Alfredo Cardigliano
0cff924bf8
Fix ext alert formatter
2025-03-17 18:34:04 +01:00
GabrieleDeri
acbd2d9635
Fixed syslog producers table not working #9039 ( #9044 )
...
* Fixed syslog producers table #9039
* Fixed syslog producers table #9039
2025-03-17 16:33:05 +01:00
Manuel Ceroni
f5ea2e1062
Updated scan alert to display network address instead of network ID ( #9043 )
2025-03-17 15:39:59 +01:00
GabrieleDeri
a1e077c6ac
Added Unknown manufacturer filter ( #9042 )
...
* Fixed dist and error codes in scss
* Moved network discovery to monitoring from dashboard
* Added unknown MAC manufacturer filter in assets page #9036
2025-03-17 15:36:15 +01:00
GabrieleDeri
1f99754da4
Moved network discovery to monitoring from dashboard ( #9041 )
...
* Fixed dist and error codes in scss
* Moved network discovery to monitoring from dashboard
2025-03-17 14:17:17 +01:00
Alfredo Cardigliano
e1632ed6ff
Fix syslog_producers.lua url
2025-03-17 12:20:34 +01:00
Alfredo Cardigliano
53dd563386
Fix syslog/producer/list.lua
2025-03-17 12:18:08 +01:00
Luca Deri
4c4f5d9468
Fixes cento flow collection
2025-03-14 23:08:54 +01:00
Matteo Biscosi
d5c82eec2b
Added lucide as internal library
2025-03-14 20:02:04 +01:00
Luca Deri
3d1eac8b1b
Fixes failure when opening (sometimes) the interface timeseries page
2025-03-14 15:40:04 +01:00
Manuel Ceroni
43ead976bb
Implemented QoE Issues Alert ( #9033 )
...
* Implemented QoE Issues Alert
* Fixed QoE Issue alert serializer
2025-03-14 11:41:25 +01:00
Matteo Biscosi
e649e8b8fb
Added comments and fixed ordering issue in assets
2025-03-14 10:34:45 +01:00
Luca Deri
361a6a3455
Reworked remot theroughput collection
2025-03-13 22:19:25 +01:00
Matteo Biscosi
ff7d2caafa
Fixes sql query
2025-03-13 16:28:56 +01:00
Matteo Biscosi
60c9c6d7fb
Small changes to assets page
2025-03-13 15:43:19 +01:00
Matteo Biscosi
77e811a415
Added responsive to apexcharts
2025-03-13 12:52:00 +01:00
Matteo Biscosi
b45df18ece
Reduced shorten string
2025-03-13 10:25:30 +01:00
Matteo Biscosi
0f7344c79a
Fixes issues with assets insert in clickhouse
2025-03-13 10:10:26 +01:00
Alfredo Cardigliano
86a35a1494
Fix filters from fingerprint custom queries
2025-03-12 18:17:28 +01:00
Matteo Biscosi
5f876167e5
Added assets dashboard
2025-03-12 17:08:46 +01:00
Alfredo Cardigliano
97ca40a349
Add ja4 client fingerprint and custom queries
2025-03-12 16:57:10 +01:00
Manuel Ceroni
69e91bd875
Updated service scan check and changed limits in Scan Alert ( #9026 )
2025-03-11 12:33:42 +01:00
Matteo Biscosi
3f4a25d6f5
Fixes active monitoring missing message
2025-03-11 10:17:47 +01:00
Manuel Ceroni
00c6efdce6
Implemented network and service scan checks, merging them with the port scan check into a single alert (Scan Alert) ( #9024 )
2025-03-10 21:19:05 +01:00
Alfredo Cardigliano
a29c7edb1f
Add configuration of dhcp options 114/160
2025-03-10 14:34:55 +01:00
Matteo Biscosi
1d6cfd2374
Possible fix for inactive hosts error ( #9011 )
2025-03-10 10:39:20 +01:00
Alfredo Cardigliano
57084e7259
Remove old reports
2025-03-10 10:26:17 +01:00
Matteo Biscosi
02eeb2c6c5
Possible fix for asset_utils error ( #9011 )
2025-03-07 10:20:07 +01:00
Matteo Biscosi
2ba9fcda17
Fixes suspicious DGA domain alert ( #8978 )
2025-03-06 15:45:20 +01:00
Luca
39c1df732b
QoE improvements
2025-03-06 11:13:20 +01:00
Matteo Biscosi
ba09b280cb
Added check for asset_utils fail
2025-03-05 11:53:05 +01:00
Matteo Biscosi
34b559e66d
Added attacker in port scan ( #9009 )
2025-03-05 11:52:56 +01:00
Manuel Ceroni
83d6fb24da
Port scan alert aggregation ( #9021 )
2025-03-04 16:12:13 +01:00
GabrieleDeri
4c1026f54d
Updated some REST documentation ( #9013 )
2025-03-03 10:31:37 +01:00
Alfredo Cardigliano
d884c9bc14
Add alert set_as_attacker / set_as_victim for lua alerts on hosts
2025-03-03 08:55:19 +01:00
Alfredo Cardigliano
d9266c0c92
Remove rest/v1 (obsolete)
2025-03-03 08:25:10 +01:00
Luca
a72491832f
Periodic flow check is now disabled by default
2025-02-28 18:58:34 +01:00
manuelceroni
bbbcd6510a
Changed interval size and priority for port scan alerts
2025-02-28 13:14:17 +01:00
Alfredo Cardigliano
ab9224d2ce
Extend lua alerts API with alert:set_require_attention()
2025-02-28 11:58:08 +01:00
Matteo Biscosi
a251974b21
Fixes misstyping
2025-02-28 11:18:23 +01:00
Matteo Biscosi
fb44f88f34
Fixes missing where and query not working ( #8999 )
2025-02-28 11:15:41 +01:00
GabrieleDeri
c45d7d3347
Fixed missing import of host pool and silence duplicate alerts ( #9008 )
...
* Fixed missing import of host pool and silence duplicate alerts in notification config import
* Removed debug print
2025-02-27 23:33:50 +01:00
Matteo Biscosi
acb437468d
Fixes issue with view interface changing ifid ( #8989 )
2025-02-27 15:02:48 +01:00
Matteo Biscosi
c9a95ded82
Fixes names not displayed ( #8994 )
2025-02-27 13:42:52 +01:00
Alfredo Cardigliano
ad1d684373
Fix reported retr/ooo/lost stats
2025-02-27 11:21:47 +01:00
Manuel Ceroni
d4b7a3d375
Implemented port scan alert (clickhouse) ( #9006 )
2025-02-27 10:44:18 +01:00