暫無描述

alerts.html 19KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375
  1. {% extends "layouts/default.html" %}
  2. {% block title %} Alerts {% endblock title %}
  3. {% block stylesheets %}
  4. <link rel="stylesheet" href="/static/assets/css/suggestags.css">
  5. <link rel="stylesheet" href="/static/assets/css/alerts.css">
  6. <link rel="stylesheet" href="/static/assets/css/vis.graph.css">
  7. <link rel="stylesheet" href="/static/assets/css/vis.min.css">
  8. {% endblock stylesheets %}
  9. {% block content %}
  10. <div class="page-inner">
  11. <div class="">
  12. {{ form.csrf_token }}
  13. <div class="container-fluid">
  14. <div class="row justify-content-between align-items-center">
  15. <div class="card-title mb-2">
  16. <span id="alertsInfoFilter">Loading..</span>
  17. </div>
  18. </div>
  19. <div class="row justify-content-between align-items-center">
  20. <div class="col">
  21. <div class="card-subtitle mt-2">
  22. <div class="d-flex">
  23. <button class="btn btn-sm" href="#filterCardBody" title="Filter" data-toggle="collapse" role="button" aria-expanded="false" aria-controls="filterCardBody">Filter</button>
  24. <div class="preset-dropdown-container">
  25. <div id="savedFiltersDropdown" class="dropdown"></div>
  26. </div>
  27. <button type="button" class="btn btn-sm btn-outline-dark ml-2" id="resetFilters" style="display: none;">Clear Filters</button>
  28. </div>
  29. </div>
  30. </div>
  31. <div class="col-auto">
  32. <div class="card-subtitle mt-2">
  33. <div class="d-flex">
  34. <div id="alerts-batch-actions" style="display:none;" class="mr-4">
  35. <button type="button" class="btn btn-sm ml-2 btn-alert-primary" onclick="mergeMultipleAlertsModal();">Merge</button>
  36. <div class="dropdown ml-2 d-inline-block">
  37. <button type="button" class="btn btn-alert-primary btn-sm dropdown-toggle" data-toggle="dropdown" aria-haspopup="true" aria-expanded="false">
  38. Assign
  39. </button>
  40. <div class="dropdown-menu">
  41. <a class="dropdown-item" href="#" onclick="updateBatchAlerts({alert_owner_id: userWhoami.user_id});">Assign to me</a>
  42. <a class="dropdown-item" href="#" onclick="changeBatchAlertOwner();">Assign</a>
  43. </div>
  44. </div>
  45. <div class="dropdown ml-2 d-inline-block">
  46. <button type="button" class="btn btn-alert-primary btn-sm dropdown-toggle" data-toggle="dropdown" aria-haspopup="true" aria-expanded="false">
  47. Set status
  48. </button>
  49. <div class="dropdown-menu">
  50. <a class="dropdown-item" href="#" onclick="changeStatusBatchAlerts('New');">New</a>
  51. <a class="dropdown-item" href="#" onclick="changeStatusBatchAlerts('In progress');">In progress</a>
  52. <a class="dropdown-item" href="#" onclick="changeStatusBatchAlerts('Pending');">Pending</a>
  53. <a class="dropdown-item" href="#" onclick="changeStatusBatchAlerts('Closed');">Closed</a>
  54. <a class="dropdown-item" href="#" onclick="changeStatusBatchAlerts('Merged');">Merged</a>
  55. </div>
  56. </div>
  57. <button type="button" class="btn btn-alert-danger btn-sm ml-2" onclick="closeBatchAlerts();">Close with note</button>
  58. <button type="button" class="btn btn-alert-danger btn-sm ml-2" onclick="deleteBatchAlerts();"><i class="fa fa-trash mr-2"></i>Delete</button>
  59. </div>
  60. <button class="btn btn-sm mr-2" id="select-deselect-all" style="display:none;">Select all</button>
  61. <button class="btn btn-sm mr-2" id="toggle-selection-mode">Select</button>
  62. <button class="btn btn-sm mr-2" id="orderAlertsBtn"><i class="fas fa-arrow-up-short-wide"></i></button>
  63. <button id="toggleAllAlertsBtn" class="btn btn-sm mr-2" onclick="toggleCollapseAllAlerts()" data-is-expanded="false">Expand All</button>
  64. <div class="d-inline-block position-relative">
  65. <button class="btn btn-sm mr-2 ml-2" onclick="refreshAlerts();">Refresh</button>
  66. <span class="badge badge-pill badge-danger position-absolute" id="newAlertsBadge" style="top: -10px; right: -10px; display: none;">0</span>
  67. </div>
  68. <div class="pagination-dropdown-container ml-3 mt-1">
  69. <label for="alertsPerPage">Alerts per page:</label>
  70. <select id="alertsPerPage">
  71. <option value="5">5</option>
  72. <option value="10" selected>10</option>
  73. <option value="20">20</option>
  74. <option value="50">50</option>
  75. <option value="100">100</option>
  76. <option value="200">200</option>
  77. <option value="500">500</option>
  78. <option value="1000">1000</option>
  79. </select>
  80. </div>
  81. </div>
  82. </div>
  83. </div>
  84. </div>
  85. </div>
  86. <div class="collapse" id="filterCardBody">
  87. <form id="alertFilterForm" class="container mt-4">
  88. <div class="form-row">
  89. <div class="col-md-3 form-group">
  90. <label for="alert_title">Title</label>
  91. <input type="text" class="form-control" id="alert_title" name="alert_title">
  92. </div>
  93. <div class="col-md-3 form-group">
  94. <label for="alert_description">Description</label>
  95. <input type="text" class="form-control" id="alert_description" name="alert_description">
  96. </div>
  97. <div class="col-md-3 form-group">
  98. <label for="alert_source">Source</label>
  99. <input type="text" class="form-control" id="alert_source" name="alert_source">
  100. </div>
  101. <div class="col-md-3 form-group">
  102. <label for="alert_tags">Tags</label>
  103. <input type="text" class="form-control" id="alert_tags" name="alert_tags">
  104. </div>
  105. </div>
  106. <div class="form-row">
  107. <div class="col-md-3 form-group">
  108. <label for="alert_status_id">Status</label>
  109. <select class="form-control" id="alert_status_id" name="alert_status_id">
  110. </select>
  111. </div>
  112. <div class="col-md-3 form-group">
  113. <label for="alert_severity_id">Severity</label>
  114. <select class="form-control" id="alert_severity_id" name="alert_severity_id">
  115. </select>
  116. </div>
  117. <div class="col-md-3 form-group">
  118. <label for="alert_classification_id">Classification</label>
  119. <select class="form-control" id="alert_classification_id" name="alert_classification_id">
  120. </select>
  121. </div>
  122. <div class="col-md-3 form-group">
  123. <label for="alert_customer_id">Customer</label>
  124. <select class="form-control" id="alert_customer_id" name="alert_customer_id">
  125. </select>
  126. </div>
  127. </div>
  128. <div class="form-row">
  129. <div class="col-md-3 form-group">
  130. <label for="source_start_date">Source Start Date</label>
  131. <input type="date" class="form-control" id="source_start_date" name="source_start_date">
  132. </div>
  133. <div class="col-md-3 form-group">
  134. <label for="source_end_date">Source End Date</label>
  135. <input type="date" class="form-control" id="source_end_date" name="source_end_date">
  136. </div>
  137. <div class="col-md-3 form-group">
  138. <label for="source_start_date">Creation Start Date</label>
  139. <input type="date" class="form-control" id="creation_start_date" name="creation_start_date">
  140. </div>
  141. <div class="col-md-3 form-group">
  142. <label for="source_end_date">Creation End Date</label>
  143. <input type="date" class="form-control" id="creation_end_date" name="creation_end_date">
  144. </div>
  145. <div class="col-md-3 form-group">
  146. <label for="alert_assets">Asset(s) name</label>
  147. <input class="form-control" id="alert_assets" name="alert_assets">
  148. </div>
  149. <div class="col-md-3 form-group">
  150. <label for="alert_iocs">IOC(s)</label>
  151. <input class="form-control" id="alert_iocs" name="alert_iocs">
  152. </div>
  153. <div class="col-md-3 form-group">
  154. <label for="alert_ids">Alert(s) ID</label>
  155. <input class="form-control" id="alert_ids" name="alert_ids">
  156. </div>
  157. <div class="col-md-3 form-group">
  158. <label for="alert_ids">Source Reference</label>
  159. <input class="form-control" id="source_reference" name="source_reference">
  160. </div>
  161. <div class="col-md-3 form-group">
  162. <label for="case_id">Case ID</label>
  163. <input type="number" class="form-control" id="case_id" name="case_id">
  164. </div>
  165. <div class="col-md-3 form-group">
  166. <label for="alert_owner_id">Owner</label>
  167. <select class="form-control" id="alert_owner_id" name="alert_owner_id">
  168. </select>
  169. </div>
  170. <div class="col-md-3 form-group">
  171. <label for="alert_resolution_id">Resolution Status</label>
  172. <select class="form-control" id="alert_resolution_id" name="alert_resolution_id">
  173. </select>
  174. </div>
  175. </div>
  176. <div class="form-row mt-3">
  177. <div class="col-md-12">
  178. <button class="btn btn-sm btn-outline-dark" type="button" data-toggle="collapse" data-target="#customConditionsCollapse" aria-expanded="false" aria-controls="customConditionsCollapse">
  179. Custom Conditions
  180. </button>
  181. <a href="#" class="ml-2" data-toggle="collapse" data-target="#customConditionsExamples" aria-expanded="false" aria-controls="customConditionsExamples">
  182. Show Examples
  183. </a>
  184. </div>
  185. </div>
  186. <div class="collapse mt-3" id="customConditionsCollapse">
  187. <div class="form-row">
  188. <div class="col-md-12 form-group">
  189. <label for="custom_conditions">Custom Conditions</label>
  190. <div class="form-control" id="custom_conditions"></div>
  191. </div>
  192. </div>
  193. </div>
  194. <div class="collapse" id="customConditionsExamples">
  195. <div class="card card-body mt-2">
  196. <p>Here are two sample custom conditions:</p>
  197. <pre><code>
  198. [{
  199. "field": "alert_severity_id",
  200. "operator": "in",
  201. "value": [1, 2]
  202. },
  203. {
  204. "field": "alert_title",
  205. "operator": "like",
  206. "value": "phishing"
  207. }]</code></pre>
  208. <pre><code>
  209. [{
  210. "field": "severity.severity_name",
  211. "operator": "like",
  212. "value": "Critical"
  213. }]
  214. </code></pre>
  215. <p>Copy one of these conditions and paste it into the "Custom Conditions" field above, then adjust the values as needed.</p>
  216. </div>
  217. </div>
  218. <div class="form-row mt-3">
  219. <div class="col centered">
  220. <button type="submit" class="btn btn-sm btn-primary">Apply Filters</button>
  221. <button type="button" class="btn btn-sm btn-outline-success float-right" id="saveFilters">Save as filter</button>
  222. </div>
  223. </div>
  224. </form>
  225. </div>
  226. </div>
  227. <div class="row mt-4 mb-4 ml-1">
  228. <div class="col">
  229. <span id="alertsInfoFilterTags"></span>
  230. </div>
  231. </div>
  232. <div class="row mt-2">
  233. <div class="col">
  234. <nav class="mt-3 float-right">
  235. <ul class="pagination pagination-container">
  236. </ul>
  237. </nav>
  238. </div>
  239. </div>
  240. <div class="list-group alerts-container">
  241. </div>
  242. <nav class="mt-3 float-right">
  243. <ul class="pagination pagination-container">
  244. </ul>
  245. </nav>
  246. </div>
  247. <div class="dropdown-menu" id="context-menu-relationships" style="display: none;">
  248. <a id="view-alert" class="dropdown-item" style="cursor: pointer;" onclick="viewAlertGraph();">
  249. <i class="fas fa-eye mr-2"></i><span id="view-alert-text">View Alert</span></a>
  250. </div>
  251. <div class="modal" role="dialog" tabindex="-1" id="modal_comment" data-backdrop="false">
  252. <div class="modal-lg modal-dialog modal-comment" role="document">
  253. <div class="modal-content shadow-xl" id="modal_comment_content">
  254. </div>
  255. </div>
  256. </div>
  257. <div class="modal" role="dialog" tabindex="-1" id="modal_graph_options" data-backdrop="false">
  258. <div class="modal-lg modal-dialog modal-comment" role="document">
  259. <div class="modal-content shadow-xl" id="modal_graph_options_content">
  260. </div>
  261. </div>
  262. </div>
  263. <div class="modal" role="dialog" tabindex="-1" id="modal_alert_history">
  264. <div class="modal-lg modal-dialog" role="document">
  265. <div class="modal-content shadow-lg">
  266. <div class="modal-header">
  267. <h5 class="modal-title">Alert history</h5>
  268. <button type="button" class="close" data-dismiss="modal" aria-label="Close">
  269. <span aria-hidden="true">&times;</span>
  270. </button>
  271. </div>
  272. <div class="modal-body" id="modal_alert_history_content">
  273. </div>
  274. </div>
  275. </div>
  276. </div>
  277. <div class="modal" id="editAlertModal" tabindex="-1" role="dialog" aria-labelledby="closeAlertModalLabel" aria-hidden="true">
  278. <div class="modal-dialog modal-xl" role="document">
  279. <div class="modal-content">
  280. <div class="modal-header">
  281. <h5 class="modal-title" id="closeAlertModalLabel"></h5>
  282. <button type="button" class="close" data-dismiss="modal" aria-label="Close">
  283. <span aria-hidden="true">&times;</span>
  284. </button>
  285. </div>
  286. <div class="modal-body">
  287. <form>
  288. <div class="form-group ml-auto mr-auto">
  289. <label class="form-label">Resolution status</label><br>
  290. <div class="selectgroup ml-auto mr-auto">
  291. <label class="selectgroup-item">
  292. <input type="radio" name="resolutionStatus" value="not_applicable" class="selectgroup-input" checked="">
  293. <span class="selectgroup-button">Not applicable</span>
  294. </label>
  295. <label class="selectgroup-item">
  296. <input type="radio" name="resolutionStatus" value="false_positive" class="selectgroup-input">
  297. <span class="selectgroup-button">False positive</span>
  298. </label>
  299. <label class="selectgroup-item selectgroup-warning">
  300. <input type="radio" name="resolutionStatus" value="true_positive_without_impact" class="selectgroup-input">
  301. <span class="selectgroup-button">True positive without impact</span>
  302. </label>
  303. <label class="selectgroup-item">
  304. <input type="radio" name="resolutionStatus" value="true_positive_with_impact" class="selectgroup-input">
  305. <span class="selectgroup-button">True positive with impact</span>
  306. </label>
  307. <label class="selectgroup-item">
  308. <input type="radio" name="resolutionStatus" value="legitimate" class="selectgroup-input">
  309. <span class="selectgroup-button">Legitimate</span>
  310. </label>
  311. <label class="selectgroup-item">
  312. <input type="radio" name="resolutionStatus" value="unknown" class="selectgroup-input">
  313. <span class="selectgroup-button">Unknown</span>
  314. </label>
  315. </div>
  316. </div>
  317. <div class="form-group">
  318. <label for="editAlertNote">Note</label>
  319. <textarea class="form-control" id="editAlertNote" rows="3"></textarea>
  320. </div>
  321. <div class="form-group">
  322. <label for="editAlertTags">Tags</label>
  323. <input type="text" class="form-control" id="editAlertTags">
  324. </div>
  325. </form>
  326. <div class="form-group alert-edition-part">
  327. <label for="editAlertClassification">Classification</label>
  328. <select class="form-control" id="editAlertClassification">
  329. </select>
  330. </div>
  331. <div class="form-group alert-edition-part">
  332. <label for="editAlertSeverity">Severity</label>
  333. <select class="form-control" id="editAlertSeverity">
  334. </select>
  335. </div>
  336. <div class="mt-4">
  337. <button type="button" class="btn btn-primary float-right mr-2" id="confirmAlertEdition">Close Alert</button>
  338. <button type="button" class="btn btn-dark float-right mr-2" data-dismiss="modal">Cancel</button>
  339. </div>
  340. </div>
  341. </div>
  342. </div>
  343. </div>
  344. {% include 'modal_escalate.html' %}
  345. {% include 'modal_enrichment.html' %}
  346. {% include 'modal_new_alert_owner.html' %}
  347. {% endblock content %}
  348. {% block javascripts %}
  349. <script src="/static/assets/js/plugin/vis/vis.min.js"></script>
  350. <script src="/static/assets/js/plugin/vis/vis-network.min.js"></script>
  351. <script src="/static/assets/js/iris/alerts.js"></script>
  352. <script src="/static/assets/js/iris/comments.js"></script>
  353. <script src="/static/assets/js/core/socket.io.js"></script>
  354. {% endblock javascripts %}