Alfredo Cardigliano
|
3f442f28b0
|
Rendering signature/severity for ids alerts
|
2019-04-04 16:31:13 +02:00 |
|
Alfredo Cardigliano
|
96954bdabb
|
new ids alert type and configuration
|
2019-04-04 11:02:01 +02:00 |
|
Simone Mainardi
|
5e5ad77cec
|
Implements broadcast domain too large alerts
|
2019-04-01 14:20:57 +02:00 |
|
emanuele-f
|
074fccb1b3
|
Use network alias in alerts
|
2019-03-25 17:01:39 +01:00 |
|
Simone Mainardi
|
5b667beadb
|
Fixes getAlertTimeBounds failing with enqueued flow alerts
|
2019-03-11 17:01:10 +01:00 |
|
Simone Mainardi
|
8613ffd7ee
|
Add link to active flow in flow alerts
|
2019-03-06 14:56:10 +01:00 |
|
Simone Mainardi
|
dcd1c61d78
|
Alert anomalies fixes
|
2019-03-06 12:43:45 +01:00 |
|
Simone Mainardi
|
f8b120a9ce
|
Implements alerts for ICMP anomalies
Partially addresses #2387
|
2019-03-05 18:02:34 +01:00 |
|
Simone Mainardi
|
de286daf9c
|
Implements alerts for DNS anomalies
Partially addresses #2387
|
2019-03-05 16:49:50 +01:00 |
|
Simone Mainardi
|
626677705b
|
Adds Application label to flow alerts
|
2019-02-28 19:10:53 +01:00 |
|
Simone Mainardi
|
7f7dea8d87
|
Additional ICMP details in flow alerts
Fixes #2414
|
2019-02-28 18:44:41 +01:00 |
|
Simone Mainardi
|
75abbd6181
|
Adds L7 protocol information to displayed flow alerts
|
2019-02-19 14:56:33 +01:00 |
|
Simone Mainardi
|
7c0d5b76bf
|
Adds information (type/code/port unreachable descr) to ICMP flow alerts
Fixes #2403
|
2019-02-19 14:18:51 +01:00 |
|
emanuele-f
|
2e92bcbd4e
|
Alert page improvements
|
2019-02-19 13:12:52 +01:00 |
|
emanuele-f
|
f007fbaaee
|
Make engaged/past alerts links point to historical flows
|
2019-02-15 11:25:04 +01:00 |
|
emanuele-f
|
50ee36c11a
|
Alert drilldown links now point to historical flows
|
2019-02-14 11:23:52 +01:00 |
|
emanuele-f
|
f801aa4902
|
Implement beta anomaly index alerts generation
Enable with "redis-cli set ntopng.prefs.beta_anomaly_index_alerts 1"
|
2019-02-13 15:57:32 +01:00 |
|
Simone Mainardi
|
be84653570
|
Fixes failing SYN-scan detection
|
2019-02-12 19:01:51 +01:00 |
|
Simone Mainardi
|
15200f7afc
|
Implements inactive hosts engaged alerts
|
2019-02-04 15:02:59 +01:00 |
|
Simone Mainardi
|
708fb332b4
|
Adds inactive hosts alerts (WIP)
|
2019-01-31 19:10:21 +01:00 |
|
emanuele-f
|
6113c692af
|
Unify Protocol/Application labels
L4 information is now referred to as "Protocol"
L7 information is now referred to as "Application"
Closes #2316
|
2019-01-28 16:59:27 +01:00 |
|
Simone Mainardi
|
5317d23fc2
|
Disables ZMQ flow collection drop alerts (waiting to make them engaged)
Revert "Implements ZMQ flow collection drops alerts"
This reverts commit d21e8d6f3e.
|
2019-01-24 15:02:22 +01:00 |
|
Simone Mainardi
|
d21e8d6f3e
|
Implements ZMQ flow collection drops alerts
|
2019-01-23 19:42:18 +01:00 |
|
Simone Mainardi
|
2fc083b50b
|
Adds testing facility for periodic checks
|
2019-01-17 16:13:39 +01:00 |
|
Alfredo Cardigliano
|
bb6937ca66
|
Interface Status Change Alerts and Interface Discards/Errors Alerts preferences
|
2019-01-11 12:53:19 +01:00 |
|
Alfredo Cardigliano
|
66e497ec01
|
new alert type alert_port_errors
|
2019-01-11 11:41:09 +01:00 |
|
Alfredo Cardigliano
|
00e528e3d7
|
new get_alerts_data.lua endpoint with non-formatted data, UI now uses get_alerts_table_data.lua
|
2019-01-10 10:20:27 +01:00 |
|
Alfredo Cardigliano
|
2002128eb4
|
Webhook export module for exporting alarms (implements #2251)
|
2019-01-07 22:09:15 +01:00 |
|
Simone Mainardi
|
fcc66a4b05
|
Updates ntopctl to handle service n2disk-ntopng
|
2019-01-02 15:49:16 +01:00 |
|
emanuele-f
|
11a99722e0
|
Implement network data delete
IPv4 network masks /24 to /32 are now supported.
Fix #2257
|
2019-01-02 13:09:48 +01:00 |
|
emanuele-f
|
f8c074bf03
|
Use cross platform ntop.msleep
|
2018-12-18 18:53:19 +01:00 |
|
emanuele-f
|
453f515feb
|
Windows fixes
|
2018-12-18 10:43:45 +01:00 |
|
Luca Deri
|
32c1bf8243
|
Removed old Lua leftover
|
2018-12-18 00:28:27 +01:00 |
|
emanuele-f
|
af02c76c8b
|
Implement scan detection alerts for remote hosts
Closes #2068
|
2018-12-14 12:28:23 +01:00 |
|
Alfredo Cardigliano
|
1ecbb2d72d
|
reworked delete_host logging to provide a link to the host
|
2018-12-07 12:16:23 +01:00 |
|
Alfredo Cardigliano
|
9833d392e6
|
Improved user activity logs with link to the host and ifid in the alert json
|
2018-12-07 11:11:37 +01:00 |
|
Alfredo Cardigliano
|
b67c3ef8b9
|
Improved visualization for live traffic capture activities
|
2018-12-07 10:45:25 +01:00 |
|
Alfredo Cardigliano
|
dca54aa8e4
|
Enabled tracking of alert endpoints settings changes
|
2018-12-06 22:59:17 +01:00 |
|
Alfredo Cardigliano
|
2ea6a5a3bc
|
Tracking SNMP device add/remove
|
2018-12-06 15:58:22 +01:00 |
|
Alfredo Cardigliano
|
f2e5f0b30d
|
Added details for unhandled activities
|
2018-12-06 12:35:13 +01:00 |
|
Alfredo Cardigliano
|
f249f0bbb9
|
restricted nIndexSelect logging to live_flows_extraction
|
2018-12-06 12:23:34 +01:00 |
|
Alfredo Cardigliano
|
48c20ec844
|
Tracking flows data download
|
2018-12-06 10:58:19 +01:00 |
|
Alfredo Cardigliano
|
9241a3c3e4
|
Added tracking of selected preferences (alerts settings)
|
2018-12-05 06:41:56 +01:00 |
|
Alfredo Cardigliano
|
bc7283ce3f
|
Tracking more user activities: alerts deleted, all/inactive/interface data deleted, host data deleted, all/host data exproted
|
2018-12-05 04:36:30 +01:00 |
|
Alfredo Cardigliano
|
a087fb3bc9
|
Added tracker.log(), tracking host_get_json
|
2018-12-05 01:56:15 +01:00 |
|
Alfredo Cardigliano
|
23402e7261
|
Tracking more user activities: downloaded pcaps, live capture, live extraction, added/deleted users, password changed
|
2018-12-05 00:55:34 +01:00 |
|
Alfredo Cardigliano
|
bec67745cf
|
tracking n2n/n2disk service stop/start
|
2018-12-04 23:22:08 +01:00 |
|
Alfredo Cardigliano
|
aab9e384ed
|
Logging user login via alerts, added 'user activity' alerts type
|
2018-12-04 20:55:21 +01:00 |
|
Simone Mainardi
|
e72fdc79fe
|
Lua 5.3 loadstring compat fix
|
2018-11-26 15:03:42 +01:00 |
|
Simone Mainardi
|
ddf49ef106
|
Implements remote-to-remote host alerts
Implements #2057
|
2018-10-10 12:16:59 +02:00 |
|