Commit graph

529 commits

Author SHA1 Message Date
Luca Deri
afda95c8d6 Added SSL certificate dissection 2019-03-25 23:54:02 +01:00
Luca Deri
e230c3a451 SSL cleanup 2019-03-25 18:54:45 +01:00
Simone Mainardi
aa85983c3c Updates host pool stats when hosts are located on LAN 2019-03-13 11:38:06 +01:00
Simone Mainardi
782f950b3a Removes debug instruction 2019-03-06 14:57:22 +01:00
Simone Mainardi
8613ffd7ee Add link to active flow in flow alerts 2019-03-06 14:56:10 +01:00
Simone Mainardi
6b5e65dfce Fixes ICMP unreachable counters 2019-03-06 10:16:45 +01:00
Luca Deri
468558ddb4 Adding a new timeseries: how to add number of unrecheable flows client/server per host. 2019-03-06 10:05:05 +01:00
Simone Mainardi
4f4548713e Fixes protocol detection for flows with a few packets 2019-03-05 12:21:00 +01:00
Luca Deri
e48fd7fa87 Added flow guess before export 2019-03-05 08:56:29 +01:00
Simone Mainardi
45283ae483 Fixes wrongly-classified low-goodput flows on ZMQ interfaces 2019-03-04 14:41:51 +01:00
Simone Mainardi
d6fea1f690 Fixes non-low-goodput flows always dumped as status_slow_tcp_connection 2019-03-04 14:30:56 +01:00
Simone Mainardi
2a55e2c507 Fixes status_slow_application_header status always set for HTTP 2019-03-04 14:29:17 +01:00
emanuele-f
0c238134b8 Fix invalid "not purged" status while reading from pcap files 2019-03-01 19:07:28 +01:00
Luca Deri
a1ab4188b2 Reworked MDNS discovery 2019-02-23 19:40:19 +01:00
Simone Mainardi
e7cebdcd98 Adds description to elephant flows and exclude data transfer protocols
Fixes #2402
2019-02-20 15:28:27 +01:00
Simone Mainardi
c3f58a0c4f Adds excess volume for elephant flow alerts 2019-02-19 15:21:54 +01:00
Simone Mainardi
87db0755e0 Endianness fix 2019-02-19 14:36:27 +01:00
Simone Mainardi
7c0d5b76bf Adds information (type/code/port unreachable descr) to ICMP flow alerts
Fixes #2403
2019-02-19 14:18:51 +01:00
Simone Mainardi
03e8a079cf Fixes certain wrong TCP states
Fixes #2380
2019-02-16 19:11:49 +01:00
Simone Mainardi
9a413a5d72 Implements TCP states filtering (est., connecting, closed and rst)
Implements #2385
2019-02-16 18:19:25 +01:00
Simone Mainardi
ae23ebcd1c Implements visibility of ICMP port-unreachable flows IPv4 2019-02-15 18:59:01 +01:00
Simone Mainardi
86e4157b16 Adds mark in Flow to count if it has been aggregated 2019-02-14 16:16:39 +01:00
emanuele-f
62eded2bfb Fix ZMQ host name match 2019-02-12 18:15:06 +01:00
emanuele-f
f267875fb8 Fix ZMQ host category detection 2019-02-12 17:29:14 +01:00
emanuele-f
8cc54ba80a Fix custom hosts and lists not being applied on non-packet interfaces 2019-02-12 17:17:51 +01:00
emanuele-f
a09e8efed0 Add hosts anomalous flows counter 2019-02-12 12:05:30 +01:00
Simone Mainardi
19a4b03478 ParserInterface sprobe cleanup 2019-02-11 15:15:48 +01:00
Simone Mainardi
e5eff5b30f Initial sprobe code cleanup 2019-02-11 14:22:36 +01:00
Simone Mainardi
a3b342219c Simplifies and improves handling of TCP flow states 2019-02-08 17:33:52 +01:00
Luca Deri
9329a25c83 COmpilation fix 2019-02-04 09:43:22 +01:00
Luca
509df6a1fc Improved counter monitoring algorithm 2019-02-03 23:30:07 +01:00
Simone Mainardi
9b336937df Properly handles host names with concurrency 2019-01-28 17:56:40 +01:00
Simone Mainardi
88e63e0428 Handles inline MDNS names dissection 2019-01-28 11:44:48 +01:00
Simone Mainardi
d187b82560 Properly handles Host os without shadows 2019-01-25 14:28:15 +01:00
Simone Mainardi
50e32be5a7 Properly handles Host ssdp and mdns without shadows 2019-01-25 12:39:43 +01:00
Simone Mainardi
4dd3f55d63 Properly handles Mac ssid without shadows 2019-01-25 10:09:03 +01:00
Simone Mainardi
9de158de8b Properly handles Mac model without shadows 2019-01-24 18:35:55 +01:00
Simone Mainardi
16cd644f4f Adds flow collection drops to the GUI when present 2019-01-23 15:40:31 +01:00
emanuele-f
2dbf1e9cb8 Rework host counters and implemtent host stats/data reset 2019-01-18 19:31:16 +01:00
Simone Mainardi
66783c91d5 Adds flow alert for flows that don't get purged 2019-01-17 17:04:47 +01:00
Simone Mainardi
5458ef8d0d Fixes nEdge flows expiration when missing from conntrack 2019-01-17 11:30:59 +01:00
emanuele-f
5a88ee91da Rework flow exporters API
Now ElasticSearch and LogStash are bind to a NetworkInterface instance

Closes #2312
2019-01-15 12:53:21 +01:00
Luca Deri
bedff2c8e2 Updated (C) 2019-01-07 19:28:49 +01:00
Alfredo Cardigliano
706bbf8558 Fixes missing flows on mysql after shutdown 2018-12-20 19:48:16 +01:00
Alfredo Cardigliano
479970c384 Implemented flows purging on shutdown (enabled with --shutdown-when-done only for now, it can be controlled with prefs->flushFlowsOnShutdown()), fixes #2229 2018-12-15 17:43:35 +01:00
emanuele-f
3fe08dfb5e Fix remote2remote alerts on broadcast/multicast/empty addresses 2018-12-12 10:31:23 +01:00
Luca Deri
e203cf1048 Merge branch 'dev' of https://github.com/ntop/ntopng into dev 2018-12-10 22:31:55 +01:00
Luca Deri
ac9f7e3c7a Updated eBPF support 2018-12-10 22:31:44 +01:00
Alfredo Cardigliano
4db4228d12 Implements Alert for long-lived flows (data exfiltration?) #2163 2018-12-10 18:58:51 +01:00
emanuele-f
d2b5913af7 Fix remote2remote alerts on non IP flows 2018-12-10 18:49:16 +01:00