DGabri
b13c3e3361
Removed old flow alert view
2024-08-05 16:18:43 +02:00
DGabri
7b6a12fbc3
Implemented mitre views. Ticket: #8592
2024-08-05 16:12:52 +02:00
Luca Ferretti
7cceb656c0
fixed typo ( #8565 )
...
* added netbox documentation
* Update asset_inventory.rst
* added ndpi-protocols ipv6 rules
* updated ipv6 check for custom rule
* fix typo
* implemented mitre_table_info inside database
* fixed typo
* changed tecnique to technique typo
* Update host_alert_scan_detected.lua
2024-07-24 18:23:47 +02:00
Matteo Biscosi
ba8027f103
Updated mitre table
2024-07-24 16:50:58 +02:00
Luca Ferretti
c2c33011b0
Implemented mitre_table_info inside database ( #8554 )
...
* added netbox documentation
* Update asset_inventory.rst
* added ndpi-protocols ipv6 rules
* updated ipv6 check for custom rule
* fix typo
* implemented mitre_table_info inside database
2024-07-24 15:50:07 +02:00
Matteo Biscosi
d795bf3474
Added NAT info in clickhouse ( #8384 )
2024-05-10 10:22:55 -04:00
Nicolò Maio
2d150103b7
Add TCP flow connection state ( #8210 )
...
* Add TCP flow connection state (#8140 )
* Add Major and Minor connection states (#8140 )
* Remove ZMQ connection state parsing. (#8140 )
* Update doc with major and minor conn states. (#8140 )
2024-02-28 14:45:49 +01:00
Nicolo Maio
c17db2e3b3
Add INTERFACE_ID in hourly_flows table. ( #8197 )
2024-02-01 12:38:06 +01:00
Alfredo Cardigliano
c0dcf3f83e
Fix end of statement in clickhouse schema
2024-01-17 09:36:40 +01:00
Matteo Biscosi
7f26e855b6
Fixes misstype error
2023-11-27 10:27:35 +00:00
Luca Deri
bb61ac57ad
SQL fixes
2023-11-27 10:56:15 +01:00
Nicolo Maio
7dc3ec89ec
[VS] Rename INFO and REPORT_INFO columns into JSON_INFO and REPORT_JSON_INFO.
2023-11-20 17:55:02 +01:00
Nicolo Maio
34f7a42308
[VS] Add historical reports. ( #8015 ) ( #7950 )
2023-11-20 17:06:23 +01:00
Alfredo Cardigliano
98504cc1b4
Add SRC_LABEL/DST_LABEL to hourly flows
2023-08-23 10:12:27 +02:00
Alfredo Cardigliano
2e31851f43
Fix all_alerts_view definition
2023-06-22 09:44:21 +02:00
Alfredo Cardigliano
246e5a5142
Add alert_category column
2023-06-20 17:25:54 +02:00
Luca Deri
2d90099c1e
Modified SNMP alerts table
2023-06-07 16:13:56 +02:00
Luca Deri
4c66ddebbf
Reworked clickhouse aggregated flows table
2023-06-05 12:21:05 +02:00
Luca Deri
2b5027e136
Updated table name
2023-05-19 16:37:13 +02:00
Luca Deri
dba12047e3
Added creation of clickhouse aggregated flows table
2023-05-19 16:17:09 +02:00
Matteo Biscosi
f6ce278e9e
Added Historical Flow fields when downloading ( #6851 )
2023-03-31 10:48:54 +00:00
Alfredo Cardigliano
e4404a291b
Fix view drop
2023-01-09 12:44:27 +01:00
Alfredo Cardigliano
039b842ce5
Fix where condition in all_alerts_view
2022-12-27 19:41:32 +01:00
Alfredo Cardigliano
416ca7b7fb
Add exporter and interface info to flow alerts schema ( #6808 )
2022-08-22 15:43:18 +02:00
Alfredo Cardigliano
61244379ea
Rename misleading file name (CH schema also includes flows)
2022-07-21 17:47:02 +02:00