MatteoBiscosi
|
a0b173c93b
|
Implements MS Teams endpoint (#6023)
|
2021-11-03 16:11:22 +01:00 |
|
MatteoBiscosi
|
c54a85d60f
|
Removed debug print
|
2021-10-19 10:14:49 +02:00 |
|
MatteoBiscosi
|
bdb4ceb7e0
|
Implements checkmk timeseries alert integration (#5269)
|
2021-10-19 10:12:27 +02:00 |
|
Simone Mainardi
|
1dd2b00988
|
Implements backend and frontend to show risks docs inline
Addresses #5857
|
2021-10-01 16:27:44 +02:00 |
|
MatteoBiscosi
|
8a359b8897
|
Fixes link error by adding new interface alert (#5711) and fixes top sites segv
|
2021-08-13 13:11:34 +02:00 |
|
Simone Mainardi
|
805b99f03c
|
Adds search by tcp flags in SYN scan alert
|
2021-08-02 18:43:08 +02:00 |
|
Simone Mainardi
|
813d93db16
|
Adds support to link flows from host alerts with VLANs
|
2021-07-30 17:37:50 +02:00 |
|
Simone Mainardi
|
820e497253
|
Unifies epoch-related variables in Lua and JS
|
2021-07-30 15:38:06 +02:00 |
|
Simone Mainardi
|
f2d9ee41be
|
Improves selection of epochs in alert flows drilldown
|
2021-07-30 14:56:33 +02:00 |
|
Simone Mainardi
|
af7b722510
|
Allows "ip" to search for client and server hosts
|
2021-07-30 12:51:46 +02:00 |
|
Simone Mainardi
|
41b23003a1
|
Implements generation of link from alerts to past flows
Addresses #5326
|
2021-07-29 16:54:15 +02:00 |
|
Simone Mainardi
|
50e3f40a8b
|
Fixes attempt to concat boolean value
Fixes #5722
|
2021-07-29 09:15:57 +02:00 |
|
Simone Mainardi
|
de576aa999
|
Implements historical floww search function for all host alerts
Addresses #5326
|
2021-07-28 18:16:32 +02:00 |
|
Simone Mainardi
|
0ccb7b2864
|
Removes a debug print
|
2021-07-28 17:22:49 +02:00 |
|
Simone Mainardi
|
b6913c946d
|
Implements skeleton to drilldown historical flows from alerts
Addresses #5326
|
2021-07-28 17:19:44 +02:00 |
|
Alfredo Cardigliano
|
aa072bef55
|
Fix flow alerts export (e.g. email)
|
2021-07-19 10:19:31 +02:00 |
|
Simone Mainardi
|
b117e8a23a
|
Adds new REST API v2/
Addresses #5269
|
2021-07-08 09:57:46 +02:00 |
|
Simone Mainardi
|
38b3c9ebdc
|
Shows acknowledged messages when present
Addresses #5600
|
2021-07-06 17:32:37 +02:00 |
|
Alfredo Cardigliano
|
ca6707c54a
|
Rename haveAdminPrivileges -> isAdministratorOrPrintErr (use meaningful names)
|
2021-07-02 16:51:40 +02:00 |
|
Simone Mainardi
|
e70c16be27
|
Adds cog icon to configure checks from the flow details page
Addresses #5606
|
2021-07-01 17:28:37 +02:00 |
|
MatteoBiscosi
|
be198c2a99
|
Added L7 iface proto behavior analysis and alert (#5499 #5474)
|
2021-06-29 16:50:56 +02:00 |
|
MatteoBiscosi
|
4620e5c72d
|
Fixes alert utils null indexing
|
2021-06-28 12:41:56 +02:00 |
|
MatteoBiscosi
|
c3a85560a7
|
Fixes wrongly formatter used for behavior anomaly alert
|
2021-06-28 11:38:39 +02:00 |
|
MatteoBiscosi
|
1ad608e905
|
Changed behavior alert family key into entities id
|
2021-06-25 15:06:21 +02:00 |
|
Simone Mainardi
|
63168f5ff2
|
Implements 'Subject' column for interface alerts
Addresses #5563
|
2021-06-24 15:51:17 +02:00 |
|
MatteoBiscosi
|
47497ca666
|
Fixes behavior anomaly alert key not found
|
2021-06-23 22:55:08 +02:00 |
|
MatteoBiscosi
|
fd40e51428
|
Changed alert behavior location
|
2021-06-23 17:58:30 +02:00 |
|
MatteoBiscosi
|
a6aa647624
|
Removed path and timeseries string from behavior alerts
|
2021-06-23 16:23:45 +02:00 |
|
MatteoBiscosi
|
462eaa384b
|
Fixes ASes and Networks alert behavior
|
2021-06-23 15:14:03 +02:00 |
|
MatteoBiscosi
|
f4d4543fab
|
Changed behavior anomaly alert (#5521)
|
2021-06-21 09:41:53 +02:00 |
|
MatteoBiscosi
|
5c4142fdcb
|
Implements behavioral alerts (#5500 #5501)
|
2021-06-17 17:10:02 +02:00 |
|
Simone Mainardi
|
76fd315d1b
|
Refactors user_scripts into checks (lua)
|
2021-06-16 18:02:22 +02:00 |
|
Simone Mainardi
|
ccb61a7444
|
Harmonizes remaining hardcoded Lua scores
|
2021-05-15 11:00:20 +02:00 |
|
Alfredo Cardigliano
|
064c20db29
|
Implement support for alert filters using a dialog (WIP)
|
2021-05-13 19:02:28 +02:00 |
|
Simone Mainardi
|
d45ab54934
|
Harmonizes scores for Lua-triggered alerts
Addresses #5315
|
2021-05-12 12:56:12 +02:00 |
|
Alfredo Cardigliano
|
41b72c1125
|
Cleanup alert description (move configset link as additional field). Add ellipsis to long descriptions, with tooltips.
|
2021-05-11 17:18:13 +02:00 |
|
Alfredo Cardigliano
|
16da9a3961
|
Cleanup unised alerts code
|
2021-05-10 11:10:35 +02:00 |
|
Alfredo Cardigliano
|
450b6c4575
|
Remove AlertsManager (no longer used). Add back entity value or 5-tuple to exported alerts (fix #5285)
|
2021-05-10 10:57:43 +02:00 |
|
Simone Mainardi
|
ec5a92514d
|
Fixes and simplifies getters of engaged alert counters
|
2021-05-07 15:06:55 +02:00 |
|
Simone Mainardi
|
228c85d850
|
Removes old inefficient alert functions
|
2021-05-07 11:40:07 +02:00 |
|
Alfredo Cardigliano
|
24e703ae20
|
Merge client and server in flow alerts (fix #5288)
|
2021-05-06 17:02:30 +02:00 |
|
Simone Mainardi
|
d44ce09da1
|
Adds the user script config wheel to flow alerts
|
2021-05-05 17:37:54 +02:00 |
|
Alfredo Cardigliano
|
c7fa2a458d
|
Remove alert name column, improve description
|
2021-05-05 14:34:03 +02:00 |
|
Simone Mainardi
|
ddc3c3de6b
|
Implements ability to disable all alerts
Implements #5283
|
2021-05-05 13:07:19 +02:00 |
|
Alfredo Cardigliano
|
24321cba24
|
Add mapScoreToSeverity call
|
2021-05-05 10:40:10 +02:00 |
|
Simone Mainardi
|
4cb19a1be8
|
Migrates severities to score in alert_utils
|
2021-05-05 10:38:04 +02:00 |
|
Simone Mainardi
|
602ea765e2
|
Fixes and updates for score and severity
|
2021-05-05 10:34:39 +02:00 |
|
Alfredo Cardigliano
|
ef65671794
|
Remove alert severity from Alerts. Always use score (convert to severity when required for UI or similar)
|
2021-05-05 09:54:14 +02:00 |
|
Simone Mainardi
|
83f0c38937
|
Massive cleanup of old alerts code
|
2021-05-03 18:16:46 +02:00 |
|
Alfredo Cardigliano
|
8dd0f903a1
|
Move host log alerts to host alerts. Fix syslog alerts.
|
2021-05-03 17:37:18 +02:00 |
|