Commit graph

13 commits

Author SHA1 Message Date
Alfredo Cardigliano
f633292e83 Add cli/srv location to flow alerts 2022-06-09 10:40:33 +02:00
Alfredo Cardigliano
b5934b802d Add dst2src and src2dst packets in flow, required by flow alerts 2022-05-25 18:26:22 +02:00
Alfredo Cardigliano
86899d42f7 Fix IPv6 in flow alerts when using clickhouse view 2022-05-11 13:04:53 +02:00
Alfredo Cardigliano
addecb93e8 Move info field out of the json for flow alerts 2022-05-11 09:47:52 +02:00
Alfredo Cardigliano
8d5ddda7d4 Fix flow alert delete with clickhouse view (add IS_ALERT_DELETED flag) 2022-05-10 09:46:21 +02:00
Alfredo Cardigliano
0204d4734a Implement acknowledge for flow alerts using the historical flows table 2022-04-26 17:23:25 +02:00
Alfredo Cardigliano
fdce648cf2 Create flow alerts view in alert_store_schema_clickhouse.sql. All tables are now created in the same place, both for flows and alerts. 2022-04-21 15:13:40 +02:00
uccidibuti
e204bf01d4 Missing Network/Pool Alert Filter #6418 2022-03-30 19:58:26 +02:00
Alfredo Cardigliano
090fdc9b18 Add country to host alerts 2022-03-30 12:50:31 +02:00
Simone Mainardi
37fe090a28 Implements Clickhouse retention using partitioned alert tables
Addresses #6030
2021-11-11 12:28:41 +01:00
Alfredo Cardigliano
fb2ff7f2a4 Add rowid based on UUID to clickhouse (#6046) 2021-11-05 19:12:36 +01:00
Luca Deri
13407f6761 Fixes for dumping alerts into ClickHouse 2021-11-04 19:05:50 +01:00
Luca Deri
3dcd2b9e09 Code rework 2021-11-04 11:16:57 +01:00