Blog Entries

21. 06. 2022 Davide Sbetti Log Management, Log-SIEM

Elastic Transformations: How to Aggregate and Enrich Your Data

In a previous article I analyzed how you can create effective visualizations in Kibana, and how to apply machine learning jobs with the goal of extracting as much information as possible from our data. However, you can also think of data as a raw material, which sometimes needs to be transformed and manipulated before allowing…

Read More
21. 06. 2022 Mattia Codato Bug Fixes, NetEye

Bug Fixes for NetEye 4.24

We have fixed a problem of repository incompatibility that caused an error during the neteye update command. Note that the following command must be run on each node before running the neteye update command For NetEye 4.24 we updated the following packages: neteye-upgrade-manager to version 0.30.7-1 neteye-setup to version 1.86.2-1

Read More
21. 06. 2022 Mattia Codato Bug Fixes, NetEye

Bug Fixes for NetEye 4.22

We have fixed a problem of repository incompatibility that caused an error during the upgrade to version 4.23. For NetEye 4.22 we updated the following packages: neteye-upgrade-manager to version 0.12.25-1

Read More
21. 06. 2022 Mattia Codato Bug Fixes, NetEye

Bug Fixes for NetEye 4.23

We have fixed a problem of repository incompatibility that caused an error during the neteye update command. Note that the following command must be run on each node before running the neteye update command For NetEye 4.23 we updated the following packages: neteye-upgrade-manager to version 0.30.7-1 neteye-setup to version 1.85.5-1

Read More
15. 06. 2022 Giovanni Davide Saccá Unified Monitoring

Into the Flows: Collecting Data with nProbe and nTop

The role of these two components is pretty clear: nProbe has the role of collecting traffic data, while nTop makes that data visible and easily analyzable. There is something, however, that needs to be explicitly stated, which is to decide whether it’s ntopng that should contact nProbe or vice versa, and as we’re in a…

Read More
14. 06. 2022 Giovanni Davide Saccá NetEye, Unified Monitoring

nTop and nDPI: How to Increase Network Traffic Analysis

nTop now uses the nDPI (network deep packet inspection) library to classify packets within network traffic for those protocols that either do not use a standard port (defined as well known ports like https://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers and https://www.iana.org/assignments/service-names-port-numbers/service-names-port-numbers.xhtml) or that are dynamically assigned. In any case the need to classify not only the packet header but also…

Read More
14. 06. 2022 Mirko Ioris Red Team, SEC4U

How People Reacted to Follina, the New 0-day

Zero-day vulnerabilities pose a serious threat in the field of cybersecurity. These flaws are usually discovered and exploited by criminals before security researchers even know of their existence. Because of this, we call them 0-day. It indicates the amount of time the “good people” have had to study and solve the problem. So if this…

Read More
13. 06. 2022 Giovanni Davide Saccá NetEye, Unified Monitoring

NeDi:  Troubleshooting NeDi Discovery and Configuration File Backup

A customer with a NetEye installation to which I had added the NeDi module asked me if I could integrate the saved configuration files of “discovered” network devices with NeDi. NeDi, for those who are not yet familiar with it, is a Network Discovery tool based on many different network protocols. The first action NeDi…

Read More
13. 06. 2022 Giovanni Davide Saccá ITOA, NetEye, Unified Monitoring

Grafana for nTop: Realizing a Dashboard

A customer with a NetEye installation to which I had added the nTop module asked me if I could integrate nTop’s Grafana Dashboards, so they could view them by consulting NetEye’s ITOA Menu. The installation and configuration of nTop for this client, a task I had already conducted some time ago, was a matter of…

Read More
10. 06. 2022 Attilio Broglio Development, NetEye, Unified Monitoring

Monitor Cisco’s APIC FAULT (Application Policy Infrastructure Controller) in NetEye 4

Introduction As introduced in a previous post, Cisco’s APIC is a core component for several of our customers; it’s a complex solution that every user can employ to fully customize their configuration. There I explained how to monitor the APIC at a high level, summarizing the fault information tenant by tenant. Some customers needed to…

Read More
09. 06. 2022 Damiano Chini Bug Fixes, NetEye

Bug Fixes for NetEye 4.24

We fixed a bug for which the El Proxy blockchain verification command was taking a long time to complete. To speed up the verification, El Proxy now verifies batches of the blockchain in parallel and further optimizations were introduced inside the verify command itself. The verification is now 100% faster by default and fine-tuning the…

Read More
09. 06. 2022 Damiano Chini Bug Fixes, NetEye

Bug Fixes for NetEye 4.22

We fixed a bug for which the El Proxy blockchain verification command was taking a long time to complete. To speed up the verification, El Proxy now verifies batches of the blockchain in parallel and further optimizations were introduced inside the verify command itself. The verification is now 100% faster by default and fine-tuning the…

Read More
09. 06. 2022 Damiano Chini Bug Fixes, NetEye

Bug Fixes for NetEye 4.23

We fixed a bug for which the El Proxy blockchain verification command was taking a long time to complete. To speed up the verification, El Proxy now verifies batches of the blockchain in parallel and further optimizations were introduced inside the verify command itself. The verification is now 100% faster by default and fine-tuning the…

Read More
01. 06. 2022 Benjamin Gröber Downloads / Release Notes, NetEye, Unified Monitoring

NetEye 4.24 Release Notes

Welcome to version 4.24 of our NetEye v4 Unified Monitoring Solution. In this release, NetEye hiked over the Seceda mountain, placed in Val Gardena/Grödental, to admire a wonderful view of the Fermeda pinnacles at sunrise. The Fermeda pinnacles, the southernmost ridge of the Odle group, offers an ideal environment to climbers, especially for ascents on…

Read More
27. 05. 2022 Alessandro Romboli ITOA, NetEye

The Flux Language Inside ITOA

ITOA ITOA is the NetEye component which represents time series data using the Grafana graphics engine. Data is usually collected by Telegraf agents and stored into an InfluxDB specialized non-relational database. Flux In order to manipulate the time series data, Grafana usually adopted a relational language: InfluxQL. The relational approach has had a number of…

Read More

Archive