Simone Mainardi
8d6dafc897
Unifies new alerts and flow alerts API
2020-12-04 17:03:23 +01:00
Alfredo Cardigliano
d19db6b678
Run ntopng on the bridge interface when running in bridge mode as appliance
2020-11-27 16:43:31 +01:00
gabryon99
15772bd0fe
refactor for endpoints and recipients ( #4707 )
2020-11-25 16:25:55 +01:00
Alfredo Cardigliano
9a26717a71
System config cleanup, add startup initialization, add more admin checks, move reset code to nf_config
2020-11-20 15:47:21 +01:00
Alfredo Cardigliano
8e62a71eee
Rename system_utils.lua -> cpu_utils.lua to avoid confusion
2020-11-17 12:41:06 +01:00
Alfredo Cardigliano
ba9c501c4d
Add support for system configuration (WIP)
2020-11-17 11:54:47 +01:00
Simone Mainardi
5c0c23feb6
Fixes execution of periodicUpdate flow callback
...
Fixes #4687
2020-11-06 18:17:54 +01:00
Luca Deri
216b1532da
IEC 60870 dissection improvements and hardening
2020-11-04 15:46:36 +01:00
Luca Deri
ea83944609
Cosmetic message changes
2020-10-29 09:46:29 +01:00
Simone Mainardi
d7f1ce0d8c
Reworks and optimizes flow alerted status
2020-10-19 16:50:22 +02:00
Alfredo Cardigliano
a5a8030e35
Cleanup trigger flow external alert
2020-10-19 13:12:31 +02:00
Simone Mainardi
d3dda0bb82
Unifies misbehaving with alerted flows
...
Implements #4596
2020-10-16 18:58:20 +02:00
Luca
3449593087
Reworked notifications and fixed a bug that caused them to be fetched too often putting pressure on the blog feed
2020-10-16 09:31:04 +02:00
Luca Deri
77ab1e3a8a
Added fix for #4534
...
- in case of startup crash and automtic restart, ntopng would reload lists resetting errors. This caused the storm of updates
- updated the URL to https://snort.org/downloads/ip-block-list
- in case of failure we retry the URL only once (it used to be twice) after one hour.
2020-10-15 17:17:35 +02:00
Simone Mainardi
6fc182412f
Reworks factory reset
2020-10-13 15:16:59 +02:00
Simone Mainardi
5b878a2a7a
Reworks reload of in-mem preferences and runtimeprefs.json dump
2020-10-13 12:49:48 +02:00
Simone Mainardi
efe6bcf691
Fixes notifications.lua running for too long
...
Fixes #4523
2020-10-05 13:14:55 +02:00
Simone Mainardi
b7bdd1edaf
Massive cleanup of alerts (disabled/suppressed)
...
Fixes #4504
2020-10-01 18:40:11 +02:00
Simone Mainardi
72e4382333
Reworks purging of idle entries without Lua periodic scripts
2020-10-01 16:08:21 +02:00
Simone Mainardi
0db456c0cf
Reworks flow user scripts execution in C++
2020-09-30 18:41:36 +02:00
Simone Mainardi
36aec9019a
Adds missing interface selection in purge_idle.lua
2020-09-29 19:16:50 +02:00
Simone Mainardi
8392e126f8
Simplifies and reduces the number of threads for purging idle entries
2020-09-29 18:51:44 +02:00
Simone Mainardi
5133af720f
Reworks view interfaces with queues; rework idling and flow hooks exec
2020-09-29 18:30:10 +02:00
Simone Mainardi
90a5a57b36
Implements user script queues (avoids 5-sec HT walk)
2020-09-28 11:45:00 +02:00
Simone Mainardi
814ee67cf9
Reworks nDPI Risks flow plugins to handle all risks and scores
...
Fixes #4432
2020-09-23 17:58:51 +02:00
Simone Mainardi
6c1280a8e5
Reworks recipients.lua as static rather than (useless) instance
2020-09-23 15:03:07 +02:00
Alfredo Cardigliano
7bda229e8f
Use score to filter flow alerts when supported (Enterprise)
2020-09-22 04:22:58 +02:00
Simone Mainardi
3ad4522e45
Implements additional plugin hooks
...
The following plugin hooks have been implemented
onEnable(hook, hook_config)
onDisable(hook, hook_config)
onUpdateConfig(hook, hook_config)
onLoad(hook, hook_config)
onUnload(hook, hook_config)
Documentation is part of the commit.
Implements #4451
Implements #4453
Implements #4454
Implements #4455
2020-09-21 18:25:14 +02:00
Simone Mainardi
db0d7730a8
Implements per-category host score
...
Implements #4413
2020-09-18 18:34:28 +02:00
Simone Mainardi
8b9038a70c
Waits plugins reload before initializing recipients
2020-09-17 14:13:30 +02:00
Simone Mainardi
33bd6bb1c9
Fixes callbacks last duration
...
Fixes #4436
2020-09-16 18:10:51 +02:00
Simone Mainardi
b7341506f7
Implements checks for script type and alert severity in dispatch_notification
2020-09-16 13:08:07 +02:00
Simone Mainardi
b1b90c13d6
Implements alert queues monitoring backend
...
Implements #4324
2020-09-15 18:05:56 +02:00
Simone Mainardi
6924651ec5
Refactors creation of builtin endpoints and recipients
...
Implements #4386
2020-09-10 12:01:23 +02:00
Simone Mainardi
5e7f2cfff4
Implements thread for notifications handling
2020-09-09 12:16:51 +02:00
Simone Mainardi
9e99fa1403
Uses new in-memory queues for alert recipients (avoid Redis)
2020-09-08 18:36:18 +02:00
Simone Mainardi
85f555a908
Removes intermediate alert queues - only leaves recipient queues
...
Implements #4366
2020-09-04 17:41:55 +02:00
Simone Mainardi
1a7ee97334
Reworks builtin SQLite alerts as a regular alert recipient
2020-09-04 10:33:10 +02:00
Simone Mainardi
1d4930fc13
Initial work to add the SQLite plugin and builtin recipient
2020-09-03 19:35:28 +02:00
Simone Mainardi
aeecbcce29
Initial implementation of OO recipients with SQLite
2020-08-28 13:19:58 +02:00
Simone Mainardi
7f241d71d5
Implements attack mitigation via SNMP
...
Implements #3833 along with companion pro commit
2020-08-24 15:05:35 +02:00
Luca Deri
f5e572cb5e
Split pruge of idled entries from hashtable ste transition
2020-08-13 10:21:59 +02:00
Luca Deri
f7bddc7e0a
Improved low-threshold script skip
2020-08-12 11:36:51 +02:00
Luca Deri
10b27b12c8
Added check for reducing load pressure when too many idle flow instances are present in the system
2020-08-12 10:54:57 +02:00
Simone Mainardi
dc980bef0a
Adds anti-stall checks on host user scripts
2020-08-05 11:18:10 +02:00
Simone Mainardi
330234e3f7
Optimized hosts scripts using direct pool_id to retrieve config
2020-07-30 19:57:16 +02:00
Simone Mainardi
73ac8af04f
Fixes recipients for SNMP device interfaces notifications
2020-07-30 16:06:46 +02:00
Simone Mainardi
516451aa6c
Uses actual host pool id when executing host scripts
2020-07-30 11:39:15 +02:00
Luca Deri
aa1dc0b31d
Implements #4217
2020-07-29 22:51:36 +02:00
Simone Mainardi
4e96ae7e26
Refactors user_scripts method names
2020-07-29 15:17:31 +02:00