ntop / ntopng

Web-based Traffic and Security Network Traffic Monitoring
http://www.ntop.org
GNU General Public License v3.0
6.28k stars 656 forks source link

Behavioural Checks for Local Hosts #8697

Open infinitynet2011 opened 2 months ago

infinitynet2011 commented 2 months ago

Hello!

Can we have a filter for alerts that will be triggered only on local hosts, not interested in remote hosts?

image

Thank you, Gabriel

PS: Behavioral I think this is the correct one for USA English. "Behavioural" is UK English.

lucaderi commented 2 months ago

In essence, would you like NOT to trigger alerts for remote hosts? What if a remote host s attacking your network? Are you sure you do not want to see this issue?

infinitynet2011 commented 2 months ago

Hello Luca,

Good question!

But we, as users, can decide whether we want to be local, remote, or both as it is right now.

It would be best to let the users choose from something.. as peer needs.

Thank you, Gabriel

infinitynet2011 commented 2 months ago

Luca,

Or maybe you can do something about that to see if the triggers are local hots or remote hosts.

image

Thank you, Gabriel