Commit graph

431 commits

Author SHA1 Message Date
MatteoBiscosi
4a9a9feff1 Changed notification text and Http method #4269 2020-11-02 13:17:21 +01:00
gabryon99
cf16003826 add notification for unexpected plugins (#4659) 2020-11-02 11:42:30 +01:00
Luca Deri
cc2df1d66e Added emoji support in alert messages 2020-10-30 18:52:40 +01:00
Matteo Biscosi
5c6367e7bd
Added Telegram plugin (#4269) 2020-10-30 17:27:32 +01:00
Simone Mainardi
389f9c2beb Reworks TCP issues flow user script 2020-10-30 15:56:36 +01:00
Luca Deri
515704a040 Fixes #4634
Fixes bug introduced by 6d11a43ddd
2020-10-28 19:02:08 +01:00
gabryon99
bf258ab15a rework for ui nofitications (#4630, #4615) 2020-10-26 19:13:50 +01:00
Luca Deri
966b743e78 Retrasmissions are accunted only when 10 pkts per directions are observed
Tiny cosmetic changes
2020-10-25 18:56:00 +01:00
Luca Deri
82fab91a2e
Merge pull request #4604 from Wallace4/retry_project
Retransmissions Plugin updated
2020-10-25 18:18:57 +01:00
Simone Mainardi
2e29a8d246 Implements user script for ip reassociation alerts
Addresses #4614
2020-10-22 16:49:50 +02:00
Simone Mainardi
cbfd2c8025 Implements user script for remote to remote host alerts
Addresses #4614
2020-10-22 16:25:31 +02:00
Simone Mainardi
8ca7daf889 Implements user script for quota exceeded alerts
Addresses #4614
2020-10-22 15:02:47 +02:00
Simone Mainardi
4346b55734 Implements user script for host pool connection/disconnection alerts
Addresses #4614
2020-10-22 14:51:54 +02:00
Simone Mainardi
f65aa2bc19 Implements user script for device connection/disconnection alerts
Addresses #4614
2020-10-22 14:27:26 +02:00
Simone Mainardi
d7f1ce0d8c Reworks and optimizes flow alerted status 2020-10-19 16:50:22 +02:00
Wallace4
ca88369ef3 New version of retransmission plugin, fixed and tested 2020-10-19 16:40:22 +02:00
Alfredo Cardigliano
a5a8030e35 Cleanup trigger flow external alert 2020-10-19 13:12:31 +02:00
Simone Mainardi
00f1ae731a Keeps configured enabled/disabled flow risks into account inside plugin 2020-10-19 11:56:41 +02:00
Simone Mainardi
27c1318ab6 Fixes risk not shown in generated flow-risk alerts
Fixes #4594
2020-10-19 11:10:19 +02:00
Luca Deri
a5076c0d27 Implemented multiselect to be used in #4589 2020-10-16 22:29:12 +02:00
Simone Mainardi
d3dda0bb82 Unifies misbehaving with alerted flows
Implements #4596
2020-10-16 18:58:20 +02:00
Simone Mainardi
92ed28cf4c Prevents unidirectional traffic alerts from NoIP from being triggered
Fixes #4592 along with companion pro commit
2020-10-16 12:20:15 +02:00
Luca Deri
374b97c516 Unexpected protocol plugins default to disable 2020-10-15 21:44:24 +02:00
gabryon99
5db4ec7c5d gui improvments 2020-10-15 19:05:25 +02:00
Luca Deri
24a5b1f908 Added minimum number of packets transmitted before triggering a retransmision alert 2020-10-14 22:33:02 +02:00
Luca Deri
7d6daf6b1b Fixes for flow retransmission plugin 2020-10-14 00:02:25 +02:00
Luca Deri
d3d0924e73
Merge pull request #4578 from Wallace4/retry_project
Addedd Retransmissions plugin for flows
2020-10-13 23:32:30 +02:00
gabryon99
2ab08a282f fixed active monitoring navigation (#4566) 2020-10-13 19:09:13 +02:00
Simone Mainardi
ce4d69a273 Moves alert and status definitions under lua/modules/ 2020-10-12 15:03:39 +02:00
Daniele Zulberti
3b8ee0e9f0 Added use of local variables.
Used flow.getInfo() and srv.ip instead flow.getServerKey().
Now the for breaks when a match is found.
2020-10-11 18:09:47 +02:00
Simone Mainardi
735073f832 Reworks System Sidebar
Fixes #4565
2020-10-11 17:05:53 +02:00
Luca Deri
31a33b1b11 Removed MUD implementation obsoleted by the service map
Fixes #4326
Fixes 3499
2020-10-11 16:42:24 +02:00
Wallace4
24a9825e0a Changed status file title -> description 2020-10-11 16:32:27 +02:00
Wallace4
8fae098590 Changed some variables name and comments 2020-10-11 16:28:02 +02:00
Wallace4
238e01e111 Removed debug writes 2020-10-11 15:21:38 +02:00
Wallace4
d4f0dfef2d Added en.lua 2020-10-11 15:15:38 +02:00
Wallace4
e065f7b9de Status and Alert have now their own variable (not custom) 2020-10-11 15:12:37 +02:00
Wallace4
1837d65784 Added en.lua for lang 2020-10-11 13:44:55 +02:00
Wallace4
7358ce3ef0 Ticket #4425 and project 2020-10-11 13:10:17 +02:00
Daniele Zulberti
fedd1e3218 Added unexpected DHCP plugin 2020-10-10 20:22:06 +02:00
Luca Deri
4565f8af04 Added plugin for detecting unexpected NTP servers 2020-10-10 10:54:19 +02:00
Luca Deri
c323c6f351 Tiny change 2020-10-10 10:35:06 +02:00
Luca Deri
2093488db3 Minor fixe: when the list of DNS/SMTP servers is empty, no check is performed 2020-10-10 10:33:47 +02:00
Daniele Zulberti
d74caa9d2b Added unexpected SMTP plugin 2020-10-09 17:06:23 +02:00
Daniele Zulberti
cff77b49cf Added unexpected DNS plugin 2020-10-09 17:06:23 +02:00
Simone Mainardi
049bfdcf4a Implements bitmap-based limited privileges for non-admins
Implements #4489
2020-10-09 15:50:22 +02:00
Alfredo Cardigliano
bafccf2c06 Add malformed/dispatched syslog counters. Inc counters in the Suricata plugin. 2020-10-09 15:00:21 +02:00
gabryon99
ee80638073 fixed invalid graph unity (#4525) 2020-10-07 17:10:37 +02:00
gabryon99
026e191be8 improved am alert notifications 2020-10-06 11:16:38 +02:00
gabryon99
0a59f57125 fixed edit am 2020-10-06 10:12:07 +02:00