Commit graph

16971 commits

Author SHA1 Message Date
MatteoBiscosi
91c9b5d04d Moved host mac reassociation alert 2022-05-31 11:31:42 +02:00
Alfredo Cardigliano
4fe46f0e6d Support match on 'all' alert for alert exclusion 2022-05-31 11:31:30 +02:00
Luca Deri
930a2ac34d Added support for FlowRiskInfo via nProbe 2022-05-31 11:29:32 +02:00
Veronika Anistratova
dbbeaf67d9
checks description 2022-05-31 11:15:25 +02:00
Luca Deri
8e5cc88c8d Warning fix for #6578 2022-05-30 23:04:18 +02:00
Luca Deri
fb481d4f23 Added flow riskInfo field containing the nDPI-generated JSON 2022-05-30 23:02:00 +02:00
Luca Deri
b0919c9dba Added flow risk info 2022-05-30 22:30:05 +02:00
Veronika Anistratova
d8896b1f0c
checks description 2022-05-30 22:11:41 +02:00
Alfredo Cardigliano
a73d596503 Fix lookup for 'all' alert type exlusion 2022-05-30 19:04:16 +02:00
MatteoBiscosi
e4f5fae4e7 Removed empty protocol info 2022-05-30 18:05:55 +02:00
MatteoBiscosi
3867b03978 Added protocol information dumped even with no alerts (#6649) 2022-05-30 17:54:16 +02:00
MatteoBiscosi
44dc90f30c Generalized clickhouse json search 2022-05-30 16:50:05 +02:00
MatteoBiscosi
0b2589f616 Added error code filter to historical flow (#6610) 2022-05-30 15:22:45 +02:00
MatteoBiscosi
5f686624ab Added Error code filter to alerts (#6610) 2022-05-30 15:22:45 +02:00
Luca Deri
c58373f84c Updated alerts 2022-05-30 11:47:44 +02:00
Alfredo Cardigliano
f6cb982355 Fix alert_store housekeeping 2022-05-30 11:43:18 +02:00
Luca
f7417a6dfc Updated picture 2022-05-30 11:37:05 +02:00
Alfredo Cardigliano
21530068a9 Add get_table_name / get_write_table_name to alert store 2022-05-30 11:25:32 +02:00
Luca Deri
2265e8bc45 Added skeleton for checks 2022-05-30 11:18:42 +02:00
MatteoBiscosi
503f461b4a Fixed url in http flows (#6626) 2022-05-30 10:47:02 +02:00
MatteoBiscosi
7c03409e08 Updated mirrored traffic docs (#6600) 2022-05-30 10:47:02 +02:00
Veronika Anistratova
80cd03ad29
Checks description (#6645)
Starts from Unsafe protocol
2022-05-30 09:37:24 +02:00
Luca Deri
d94b848abb Code resolution cleanup 2022-05-29 21:50:17 +02:00
Luca Deri
1040007d21 Implements #6643 2022-05-28 17:01:34 +02:00
Alfredo Cardigliano
502f4cd106 Delete alerts matching domain when adding exception 2022-05-27 16:50:25 +02:00
Veronika Anistratova
4bfda4ceec
Mirror traffic
alert to notify Rx only
2022-05-27 16:47:17 +02:00
MatteoBiscosi
e2ad021161 Fixes external link (#6626) 2022-05-27 16:23:26 +02:00
Alfredo Cardigliano
32a520636b List exclusions for domains/certificates 2022-05-27 16:11:59 +02:00
Alfredo Cardigliano
83b3ae8bbc Add/remove domain/certificate exceptions 2022-05-27 15:32:50 +02:00
MatteoBiscosi
ee96f77bac Partially fixes external link prot in ntopng (#6626) 2022-05-27 13:04:59 +02:00
Alfredo Cardigliano
f7cf547a65 Rework alert_exclusions API 2022-05-27 12:55:30 +02:00
MatteoBiscosi
c2a5ffeca5 Fixes discovery network not working (#6637) 2022-05-27 11:20:33 +02:00
MatteoBiscosi
e9147aa37d Implemented connection failed alert (#6622) 2022-05-27 10:45:25 +02:00
Alfredo Cardigliano
957e0d777c Code cleanuip 2022-05-27 10:09:28 +02:00
MatteoBiscosi
401b74a319 Fixes network discovery (#6637) 2022-05-27 09:54:11 +02:00
Alfredo Cardigliano
ee7ef67ef7 Update preset 2022-05-27 09:19:25 +02:00
Luca Deri
95ba7d8c44 Further improved hostname protocol set 2022-05-26 23:53:14 +02:00
Luca Deri
90c983e106 Patch for avoid seting hostnames with invalid strings 2022-05-26 19:18:25 +02:00
Luca Deri
20ba464372 Indent 2022-05-26 19:18:25 +02:00
Luca Deri
6fb503ea75 Added sanity check for invalid recipient/endpoint configuration 2022-05-26 19:18:25 +02:00
Alfredo Cardigliano
7c2be78a36 Add alert_domain / alert_certificate 2022-05-26 17:57:53 +02:00
Luca Deri
b00c030711 Reduced string lenght 2022-05-26 16:53:48 +02:00
Alfredo Cardigliano
94b842284d Add safety check in flow_alert_store:insert with clickhouse 2022-05-26 16:34:13 +02:00
Alfredo Cardigliano
98ba752369 Move edit/check/filter.lua to add/alert/exclusion.lua 2022-05-26 15:07:34 +02:00
Luca Deri
f26ef05acb Fix for https://github.com/ntop/ntopng/issues/6578 (parameter 22) 2022-05-26 11:34:38 +02:00
Alfredo Cardigliano
48aee7d88f Fix string concatenation 2022-05-26 09:16:03 +02:00
Alfredo Cardigliano
b5934b802d Add dst2src and src2dst packets in flow, required by flow alerts 2022-05-25 18:26:22 +02:00
Alfredo Cardigliano
dec6a9192c Add custom query: Top Alerted Domains 2022-05-25 17:21:58 +02:00
MatteoBiscosi
332bbf3f3c Removed unwanted code 2022-05-25 16:02:55 +02:00
MatteoBiscosi
e884e7f86c Code test 2022-05-25 16:01:11 +02:00