Blog Entries

01. 06. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.29

General Authentication via request-header backend We fixed a bug that did not allow the role to be associated with a user who was part of an LDAP group when the user logged in via the request-header backend. Tornado Tornado Director retry loop We fixed a bug that triggered the Tornado Director in a retry loop…

Read More
03. 05. 2023 Davide Sbetti Anomaly Detection, ITOA, NetEye

A Simple Grafana Data Source for Outlier Detection (POC) – Part 2

In my previous post, we saw how it’s possible to build a simple Grafana Data Source Plugin, which we can use to read data from whatever source we’d like to use. In particular, we used it to read data from a simple web service we created so we could expose data containing some outliers. In…

Read More
27. 03. 2023 Davide Sbetti Anomaly Detection, ITOA, NetEye

A Simple Grafana Data Source for Outlier Detection (POC) – Part 1

In this article, I’d like to step through the development of a simple Proof of Concept (POC) Grafana data source with you where we retrieve data from an API, apply an outlier detection technique, and then visualize the end results in a dashboard. So… let’s begin! Note: All the code discussed in this blog post…

Read More
09. 03. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.28

We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.28 we updated the following packages:

Read More
09. 03. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.26

We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.26 we updated the following packages:

Read More
09. 03. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.27

We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.27 we updated the following packages:

Read More
03. 03. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.28

To tackle an issue preventing the start, under certain circumstances, of some Beats on Windows machines, we updated the version of the Elastic Stack shipped with the SIEM module to version 7.17.9. For NetEye 4.28 we updated the following packages:

Read More
07. 02. 2023 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.28

We fixed a bug in the Alyvix module for which, in case of an Alyvix node where the Alyvix service was not working properly, a long waiting time was necessary before being able to determined its unreachable state. The waiting time was decreased and is now configurable. For NetEye 4.28 we updated the following packages:

Read More
13. 12. 2022 Davide Sbetti Log-SIEM, Machine Learning

Building a Dashboard in Kibana to Keep Track of Your Smart Ingest Pipeline

In a previous article, we used NetEye and Elasticsearch to train a machine learning model able to classify documents about some collected radar signals, separating them into two categories (good vs bad), starting from an existing dataset. Afterwards, we applied it to new incoming documents using an Ingest Pipeline and the Inference Processor. Taking as…

Read More
02. 11. 2022 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.26

We fixed a bug in El Proxy, for which the automatic verification breaks when the retention of Elasticsearch is applied. The bug fix introduced the concept of blockchain state history and this, if the retention of Elasticsearch already deleted some logs, will throw a warning during the first verification after the update. For NetEye 4.26…

Read More
02. 11. 2022 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.25

We fixed a bug in El Proxy, for which the automatic verification breaks when the retention of Elasticsearch is applied. The bug fix introduced the concept of blockchain state history and this, if the retention of Elasticsearch already deleted some logs, will throw a warning during the first verification after the update. For NetEye 4.25…

Read More
27. 09. 2022 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.24

We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. For NetEye 4.24 we updated the following packages: httpd-neteye-config, httpd-neteye-config-autosetup to version 1.12.1-1 nginx-neteye-config, nginx-neteye-config-autosetup to version 1.7.1-1

Read More
27. 09. 2022 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.25

We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. Moreover, we fixed a bug in the Icingaweb2 module Director, which was causing Director deployments to remain blocked in case the automatic deployments done by the Director Jobs were encountering connection…

Read More
27. 09. 2022 Davide Sbetti Bug Fixes, NetEye

Bug Fixes for NetEye 4.23

We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. For NetEye 4.23 we updated the following packages: httpd-neteye-config, httpd-neteye-config-autosetup to version 1.11.1-1 nginx-neteye-config, nginx-neteye-config-autosetup to version 1.7.1-1

Read More
19. 09. 2022 Davide Sbetti Log-SIEM, Machine Learning

Elasticsearch ML Models and Inference: Real-Time Classification

In a previous article, we explored the Machine Learning capabilities of Elasticsearch, which allowed us to apply anomaly detection techniques to our data, and helped us discover some really interesting facts as a result of our analysis. But can we take that idea even further? For instance, could we use data we’ve already collected to…

Read More

Archive