Commit graph

10857 commits

Author SHA1 Message Date
YellowMan
dc24919182
fixed missing information in historical flow details (#8872) 2024-12-12 11:42:13 +01:00
Matteo Biscosi
c0c1773777 Added function to convert from flow to flow_alert 2024-12-12 11:06:12 +01:00
Matteo Biscosi
faa34b614c Fixes alert score not correctlt working (#8851) 2024-12-11 19:25:30 +01:00
Matteo Biscosi
e3487d445f Fixes alerts incorrectly displayed 2024-12-11 19:25:30 +01:00
YellowMan
c712750200
Remote to local insecure flow (#8871)
* Fixed domain names contact alert behaviour

* enanched remote to local insecure flow alert description

* minor fix
2024-12-11 16:54:01 +01:00
Matteo Biscosi
5d76ee3ec7 Fixes score calculation error (#8868) 2024-12-11 12:32:20 +01:00
Matteo Biscosi
4de05910dc Fixes incorrect flow alert message printed 2024-12-11 11:27:26 +01:00
Matteo Biscosi
715cc5ddd9 Fixes compatibility with new alert format 2024-12-10 18:05:47 +01:00
Alfredo Cardigliano
e1c385985c Fix backward compatibility 2024-12-10 14:40:32 +01:00
Alfredo Cardigliano
d8d7330f11 Rework alert serialization. Change alert info format (info for all triggered alerts are now generated) 2024-12-10 13:27:57 +01:00
Matteo Biscosi
c214ffca9a Fixes blacklists timeseries not correctly showing values (#8817) 2024-12-09 13:28:55 +01:00
Alfredo Cardigliano
027a4ebbf4 Add missing require 2024-12-09 09:24:45 +01:00
Alfredo Cardigliano
e03f4e1bf8 Fix return code 2024-12-06 18:22:08 +01:00
Alfredo Cardigliano
bf89143232 Fix failure (#8808) 2024-12-06 18:17:56 +01:00
Matteo Biscosi
cec956fa1b Reworked applications and categories tabs (#) 2024-12-06 17:44:15 +01:00
Matteo Biscosi
609b059745 Added networks policies (#8812) 2024-12-05 16:51:26 +01:00
Matteo Biscosi
b5c956e693 Fixes network configuration not correctly working 2024-12-05 16:51:26 +01:00
Alfredo Cardigliano
ae5128c620 Split protocol and alert info from ALERT_JSON: new PROTOCOL_INFO_JSON column 2024-12-05 15:13:16 +01:00
Matteo Biscosi
358660a56f Added startup delete on all radius keys 2024-12-05 13:15:49 +01:00
Luca Deri
76e47112e8 Fixes invalid format error 2024-12-05 12:22:23 +01:00
Luca Deri
a0ae0db7b5 Fixes flow confidence format 2024-12-05 12:21:50 +01:00
YellowMan
2ffe95845d
Added application latency in historical flow information (#8855) 2024-12-05 10:10:05 +01:00
Alfredo Cardigliano
fdbea19ad5 Remove unused require 2024-12-04 09:12:29 +01:00
Matteo Biscosi
0ebe2b9e88 Fixes missing blacklist (#8841) 2024-12-02 18:34:00 +01:00
Matteo Biscosi
2a47b8667f Fixes mac addresses alerts 2024-12-02 17:32:55 +01:00
Matteo Biscosi
07ef54c7cc Added ACL violation ARP alert (#8696) 2024-12-02 13:07:56 +01:00
Matteo Biscosi
b44e1599f7 Fixes incorrect link 2024-11-29 16:02:44 +01:00
Matteo Biscosi
f160e11007 Added is in memory parameter and removed port 0 (#8843) 2024-11-29 12:02:58 +01:00
Matteo Biscosi
9961d8996e Fixes missing http prefix (#8676 #8844) 2024-11-29 11:38:20 +01:00
Matteo Biscosi
178a4d32d7 Fixes alert description not working on flow details 2024-11-29 11:34:55 +01:00
Matteo Biscosi
819f39830b Added ACL Violation alert (#8696) 2024-11-28 18:02:53 +01:00
Matteo Biscosi
736932e977 Added error handling in case of edit/add/delete (#8696) 2024-11-28 11:23:18 +01:00
Matteo Biscosi
4b5e2cee3d Finalized ACL Gui handling (#8696) 2024-11-28 09:47:44 +01:00
Luca Deri
fb06400fe2 Changed alert serialization 2024-11-28 09:34:57 +01:00
Luca Deri
084e295af8 Minor fixes 2024-11-27 15:26:31 +01:00
Luca Deri
d0a2b5d119 Host operating system enhancements 2024-11-26 22:48:34 +01:00
Luca Deri
49506f3afa OS detection improvements 2024-11-26 18:06:43 +01:00
Luca Deri
6b4afa074a Removed OS stats 2024-11-26 10:23:04 +01:00
Luca Deri
05720cb9ce Fingerprint improvements 2024-11-25 23:38:34 +01:00
Matteo Biscosi
d50cce28d3 First implementation of acl (#8696) 2024-11-25 19:37:01 +01:00
Luca Deri
7ca00c8c64 Added fingerprint check 2024-11-25 15:54:31 +01:00
Luca Deri
6294343086 Reworked OS and hot fingerprint 2024-11-24 23:08:38 +01:00
Luca Deri
c72a6c530c Added message for hosts with unidirectional traffic 2024-11-22 13:51:26 +01:00
Luca Deri
d3e469a316 Mergec TCP Probing and Probin attempt 2024-11-20 22:08:07 +01:00
Matteo Biscosi
70f257d909 Added manufacturer to historical flows (#8534) 2024-11-20 15:20:40 +01:00
Matteo Biscosi
84d1fb2a8a Changed default blacklists page filtered to all status 2024-11-20 14:57:39 +01:00
Matteo Biscosi
170725e5eb Removed not used import 2024-11-20 14:56:51 +01:00
Matteo Biscosi
40bb18ebdc Fixes missing nDPI alerts description (#8570) 2024-11-20 13:59:58 +01:00
Alfredo Cardigliano
8c0094f354 Fix flow alerts lookup for non predominant alerts (alerts_map_h/alerts_map_l integer columns) 2024-11-20 11:44:06 +01:00
YellowMan
d396297985
Tcp Probing Attempt Alert (#8821)
* Implemented TCP Probing Attempt Alert

---------

Co-authored-by: DiPalmaGiuseppe <g.dipalma6@studenti.unipi.it>
2024-11-20 10:58:36 +01:00