Commit graph

5104 commits

Author SHA1 Message Date
Matteo Biscosi
e728518e36 Added network exclusion support to alerts (#6233) 2022-01-25 17:26:45 +01:00
Alfredo Cardigliano
cc81975441 Add get_top_limit and format_top_alerts to alert_store 2022-01-25 11:04:46 +01:00
Luca Deri
fd559d1859 Added further escape check in flow export 2022-01-24 22:06:59 +01:00
Alfredo Cardigliano
e9d79d9e1a Fix alert query 2022-01-24 17:02:30 +01:00
Matteo Biscosi
48ac194118 Moved ClickHouse monitor out of the plugins (#6224) 2022-01-24 15:56:23 +01:00
Luca Deri
68a4bcfa87 Fix for avoiding overlapping pings 2022-01-23 19:06:00 +01:00
Luca Deri
e8cdebf9ce Fixed URL 2022-01-22 08:47:27 +01:00
Luca Deri
d6a17682c2 Disabled trace 2022-01-22 07:20:49 +01:00
Luca Deri
f58c3bc129 Minor changes 2022-01-22 07:18:49 +01:00
Matteo Biscosi
da8609727f Removed half of the monitor plugins (#6224) 2022-01-21 19:21:58 +01:00
Alfredo Cardigliano
27090de5c7 Add processed records and performance for alerts. Fix processed stats for flows. 2022-01-21 18:11:33 +01:00
Luca Deri
cc04fd46e8 Cosmetic fixes 2022-01-21 16:56:07 +01:00
MatteoBiscosi
56bb22839d Changed active monitoring timeseries url 2022-01-21 13:11:18 +01:00
Simone Mainardi
823b4f5d91 Implements active monitoring with the new scheduler 2022-01-21 13:05:01 +01:00
Simone Mainardi
705807ad9d Reworks active monitoring plugin structure 2022-01-21 12:21:44 +01:00
Alfredo Cardigliano
5317445eda Fix ntopng version check in snmp checks 2022-01-21 12:15:59 +01:00
Luca Deri
47b04d557e Disabled JA3 checkas it leads to false positivies 2022-01-20 22:24:48 +01:00
Luca Deri
3b449e5580 Fixed invalid nProbe field mapping 2022-01-20 19:33:18 +01:00
Alfredo Cardigliano
a9a22d9f64 Fix i18n 2022-01-20 18:17:55 +01:00
Alfredo Cardigliano
c81c0fbda7 Add input/output SNMP tags 2022-01-20 16:59:25 +01:00
Matteo Biscosi
cf6358e2de Added Geomap to historical alerted page 2022-01-20 16:44:05 +01:00
Alfredo Cardigliano
02903c3577 Add packets and bytes tags 2022-01-20 16:15:50 +01:00
Luca Deri
d25dae664e Reworked script checks periodicity to make sure active monitoring is executed when it should be
Some extra cleanup is necessary (#6224)
2022-01-20 11:14:18 +01:00
Matteo Biscosi
795125c814 Added alert to network discovery (#6218) 2022-01-19 16:17:30 +01:00
Alfredo Cardigliano
bddcdda720 Add rest/v2/get/pcap/live_traffic.lua endpoint 2022-01-19 09:53:29 +01:00
Alfredo Cardigliano
d191d59d59 Set flow alert first seen 2022-01-18 15:35:21 +01:00
Alfredo Cardigliano
17d756c622 Fix require 2022-01-18 15:04:34 +01:00
Alfredo Cardigliano
695d52b397 Fix formatted date 2022-01-18 14:45:48 +01:00
Alfredo Cardigliano
e9db646642 Fix template usage 2022-01-18 13:02:31 +01:00
Matteo Biscosi
09a9fbcda5 Fixed SNMP checks started with community 2022-01-18 11:50:19 +01:00
Alfredo Cardigliano
5406eb004d Move pcap download dialog. Cleanup filter generation. 2022-01-18 11:28:35 +01:00
Alfredo Cardigliano
697988f6c1 Extend time range for alert pcap filter 2022-01-17 19:24:00 +01:00
Alfredo Cardigliano
2c561072ff Add download of pcap matching alert traffic 2022-01-17 17:56:14 +01:00
Alfredo Cardigliano
c51f779bc9 Add validation to live capture filters 2022-01-14 16:54:58 +01:00
Luca Deri
a5912438f8 Added epoch_begin and epoch_end in /lua/rest/v2/get/flow/alert/list.lua 2022-01-13 21:40:57 +01:00
Luca Deri
59f2c0d387 Removed alert trace 2022-01-13 15:52:19 +01:00
Luca Deri
326d54c3aa Fixe bug that caused to show wrong call-id 0 with RTP streams with no SIP stream associated 2022-01-13 15:48:20 +01:00
Alfredo Cardigliano
167d2c9d71 Update tests (l7 apps / cats) 2022-01-13 14:39:48 +01:00
Alfredo Cardigliano
7f5bba3fc4 Load conntrack in sys utils 2022-01-12 15:16:50 +01:00
Alfredo Cardigliano
dcb7c70684 Rework netplan handler 2022-01-12 14:36:52 +01:00
Alfredo Cardigliano
a3bce393ca Remove duplicated i18n tag fields. Add info tag definition. 2022-01-11 10:48:52 +01:00
Luca
bbcd1d011b Added fix for converting alerts_map with SQLite to a meaningful value
being it stored as BLOB
2022-01-10 12:40:45 +01:00
Luca
7bd1bc4185 Typo 2022-01-10 08:57:21 +01:00
MatteoBiscosi
f23a3f9c6e Fixes non working progress bar 2022-01-07 17:58:50 +01:00
MatteoBiscosi
147e77636b Added victim and client/server to threshold alert (#5997) 2022-01-07 16:28:05 +01:00
MatteoBiscosi
fbda39209a Added extra application info to alerts 2022-01-05 18:50:09 +01:00
Luca Deri
2992d6acd0 Fixed invalid name access on view interfaces 2022-01-05 09:38:12 +01:00
Luca Deri
2f049fcc4c Decreased number of loop checks when checking connectivity 2022-01-04 22:53:40 +01:00
Alfredo Cardigliano
c5d35d99f1 Cleanup old explorer 2022-01-04 16:38:25 +01:00
Alfredo Cardigliano
538eab6406 Restore historical_utils.lua 2022-01-04 15:03:48 +01:00