Manuel Ceroni
|
4ad05ce8e5
|
Implemented an alert for anomalous Redis reads and writes number (#8969)
|
2025-02-19 17:48:47 +01:00 |
|
Alfredo Cardigliano
|
aebd8b459c
|
Add more info to login activities alerts
|
2025-02-14 16:48:43 +01:00 |
|
Alfredo Cardigliano
|
95ba6d19c6
|
Indent
|
2025-02-14 12:19:06 +01:00 |
|
Matteo Biscosi
|
2a47b8667f
|
Fixes mac addresses alerts
|
2024-12-02 17:32:55 +01:00 |
|
Matteo Biscosi
|
07ef54c7cc
|
Added ACL violation ARP alert (#8696)
|
2024-12-02 13:07:56 +01:00 |
|
Luca
|
1117e71d18
|
Removed SYN flood check that was partially overlapping with SYN scan
|
2024-10-22 15:46:50 +02:00 |
|
Luca Deri
|
1477437b7c
|
Improvements for no exporter/probe activity
|
2024-08-07 18:06:51 +02:00 |
|
Luca Deri
|
16b5a8ccc1
|
Implemented no exporter/probe activity (#8608)
|
2024-08-07 18:06:51 +02:00 |
|
Alfredo Cardigliano
|
b09688beee
|
Add new alert no_exporter_activity
|
2024-08-07 13:05:48 +02:00 |
|
Alfredo Cardigliano
|
47e293b2df
|
Difine new alert type snmp_trap. Add ability to trigger snmp_trap from C.
|
2024-07-25 08:16:33 +00:00 |
|
Luca Ferretti
|
7cceb656c0
|
fixed typo (#8565)
* added netbox documentation
* Update asset_inventory.rst
* added ndpi-protocols ipv6 rules
* updated ipv6 check for custom rule
* fix typo
* implemented mitre_table_info inside database
* fixed typo
* changed tecnique to technique typo
* Update host_alert_scan_detected.lua
|
2024-07-24 18:23:47 +02:00 |
|
Luca Ferretti
|
61628b55c0
|
fixed mitre_id typo (#8562)
* added netbox documentation
* Update asset_inventory.rst
* added ndpi-protocols ipv6 rules
* updated ipv6 check for custom rule
* fix typo
* implemented mitre_table_info inside database
* fixed typo
|
2024-07-24 16:19:33 +02:00 |
|
Matteo Biscosi
|
13287d609e
|
Added alert when dropping flows due to flow exporters limit exceeded
|
2024-07-15 18:58:36 +02:00 |
|
Alfredo Cardigliano
|
01de4b646f
|
Add missing return
|
2024-07-04 16:44:38 +00:00 |
|
Alfredo Cardigliano
|
39494e3002
|
Add cloud broker host in case of disconnection and reconnection
|
2024-07-04 16:42:46 +00:00 |
|
Alfredo Cardigliano
|
8d326f2718
|
Define new alert cloud_reconnected
|
2024-06-21 17:59:14 +02:00 |
|
Alfredo Cardigliano
|
dab5aeba99
|
Define new alert cloud_disconnected
|
2024-06-21 17:33:05 +02:00 |
|
Luca Deri
|
de0325d22a
|
Added SNMP alert in case of unresposive devices
Modifie InfluxDB 1.x -> 1.x/2.x string
|
2024-06-20 23:56:12 +02:00 |
|
Luca Ferretti
|
1b3a0ec19a
|
initial mitre att&ck standardization (#8446)
* added feature sorting flows by protocol
* changed protocols comparison order
* initial commit for bitmap of server ports
* bitmap added to redis
* added debug string, bitmap not working
* Update alerts_list_per_license.rst
* Update alerts_list_per_license.rst
* initial mitre att&ck standardization
* Update ServerPortsBitmap.h
* updated mitre standardization
|
2024-06-12 15:55:10 +02:00 |
|
Luca Deri
|
c53b79e302
|
Definition of SNMP polling error
|
2024-06-02 17:55:37 +02:00 |
|
Nicolo Maio
|
2caddb8b04
|
Add absolute percentage as a metric in SNMP rules.
|
2024-04-16 14:47:19 +02:00 |
|
Matteo Biscosi
|
0fecdee1e4
|
Reworked blacklists page
|
2024-04-11 12:48:59 -04:00 |
|
Nicolo Maio
|
4e9d324236
|
Add traffic profiles rules. (#7839)
|
2024-03-01 15:18:08 +01:00 |
|
Matteo Biscosi
|
88e5d26afe
|
Removed no more used checks (#8235)
|
2024-02-27 05:49:44 -05:00 |
|
Matteo Biscosi
|
e597e83e15
|
Removed and fixes some dependencies
|
2024-02-19 12:38:56 +00:00 |
|
Nicolo Maio
|
df2e4bd12a
|
Add VLAN rules. (#8193)
|
2024-02-06 17:47:15 +01:00 |
|
Nicolo Maio
|
d537a71781
|
Add usage metric in SNMP devices rules.
|
2024-01-19 11:15:19 +01:00 |
|
Nicolo Maio
|
b3c573498f
|
Reworked SNMP interfaces average usage and replaced the interface load alert with the interface average usage alert (#8168)
|
2024-01-17 12:41:59 +01:00 |
|
Luca Deri
|
55870e97b9
|
(C) Update
|
2024-01-12 11:44:18 +01:00 |
|
Matteo Biscosi
|
2b13cdc177
|
Fixes various issues on exporters rules
|
2023-12-21 18:30:33 +00:00 |
|
Nicolo Maio
|
418b37ffcd
|
Fix flow exporter ifname on local traffic rules. (#8099)
|
2023-12-15 13:02:08 +01:00 |
|
Nicolo Maio
|
98bea0a032
|
[VS] Fix in ipv4_netscan the host not detected case. (#8086)
|
2023-12-11 19:50:27 +01:00 |
|
Nicolo Maio
|
9d61a1f41e
|
[VS] Fix not configured alert description.
|
2023-12-05 19:03:26 +01:00 |
|
Nicolo Maio
|
3e5b3a8218
|
[VS] Add multiselect on ipv4_netscan.
|
2023-12-05 17:40:49 +01:00 |
|
Nicolo Maio
|
a5a2146cfb
|
Add isVSConfiguredHost and triggertHostNotConfiguredAlert. (#8051)
|
2023-11-30 09:36:48 +01:00 |
|
Nicolo Maio
|
fb0ff0850c
|
[VS] Add check on the host before TCP/UDP portscan. (#8050)
|
2023-11-23 14:58:37 +01:00 |
|
Matteo Biscosi
|
ed4ab2836f
|
Added system alert in case of ntopng failure (#8040)
|
2023-11-22 10:22:22 +00:00 |
|
Matteo Biscosi
|
da2c0ea972
|
Fixes interface alert subject not correctly formatted (#8036)
|
2023-11-21 11:55:04 +00:00 |
|
Nicolo Maio
|
34f7a42308
|
[VS] Add historical reports. (#8015) (#7950)
|
2023-11-20 17:06:23 +01:00 |
|
Nicolo Maio
|
8864c52fef
|
[VS] Fix alert url.
|
2023-11-20 12:16:31 +01:00 |
|
Nicolo Maio
|
672539ac9f
|
[VS] Disable alert triggers for port changes when conducting a CVE scan
|
2023-11-13 16:14:08 +01:00 |
|
Nicolo Maio
|
2083ea6cb9
|
[VS] Add IPv6 badge on alert description.
|
2023-11-13 14:51:34 +01:00 |
|
Alfredo Cardigliano
|
b24905747c
|
Add local_explorer flag to alert format callback
|
2023-11-13 13:02:07 +01:00 |
|
Nicolo Maio
|
6187ee30b8
|
[VS] Fix alert description.
|
2023-11-13 11:01:43 +01:00 |
|
Nicolo Maio
|
5ad7b64874
|
[VS] Add scan type in alert message (#7969)
|
2023-11-06 11:32:21 +01:00 |
|
Alfredo Cardigliano
|
5de25b0dfb
|
Improve VS alert description (#7969)
|
2023-11-02 15:05:41 +01:00 |
|
Matteo Biscosi
|
b970d0859e
|
Fixes shutting down doesn't insert alerts in CH (#7949)
|
2023-10-25 11:41:53 +00:00 |
|
Nicolo Maio
|
3aeab7041c
|
[VS] Fix nil check cases.
|
2023-10-18 12:38:47 +02:00 |
|
Nicolo Maio
|
200190d301
|
Fix host and iface rules with ndpi:protocol metrics. (#7912)
|
2023-10-16 18:33:37 +02:00 |
|
Matteo Biscosi
|
ec3545df2d
|
Fixes interface name (#7908)
|
2023-10-16 09:32:46 +00:00 |
|