Generated by All in One SEO v5.0.0.1, this is an llms.txt file, used by LLMs to index the site.
# www.neteye-blog.com
OSS Monitoring for IT Professionals
## Sitemaps
- [XML Sitemap](https://www.neteye-blog.com/sitemap.xml): Contains all public & indexable URLs for this website.
## Posts
- [The New .zip Domains do More Harm Than Good](https://www.neteye-blog.com/blog/2023/06/13/the-new-zip-domains-do-more-harm-than-good/) - In this article we'll discuss the security concerns caused by Google's introduction of .zip domains. First things first, let's understand what a domain is and how it's structured. What is a domain? A domain is a text string that allows a user to access the specified web site once typed into a browser. This string
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/06/20/bug-fixes-for-neteye-4-30-2/) - We fixed several bugs regarding the NetEye first installation on a cluster. It is now possible to successfully run the neteye_secure_install without worrying about possible problems and interruptions. In addition, we fixed the permissions of some configuration files. Updated packages For NetEye 4.30 we updated the following packages: httpd-neteye-config to version 1.13.1-1 elastic-stack to version
- [Monitoring, Collection of Metrics and Dashboard of the NetEye Database](https://www.neteye-blog.com/blog/2023/06/09/monitoring-metrics-collections-and-dashboard-for-neteye-database/) - As you all know NetEye uses MariaDB as its database. With the nep-monitoring-core module of the NetEye Extension Packs (NEP), the following aspects of MariaDB are monitored: connection-time open-files running-threads uptime total-threads These checks are performed with a default time interval (check_interval) of 180s. To have real time control of many aspects of the MariaDB
- [What We Know about the MOVEit Transfer 0-day](https://www.neteye-blog.com/blog/2023/06/13/what-we-know-about-the-moveit-transfer-0-day/) - 0-day vulnerabilities are predicted to grow more and more, posing new threats for the cybersecurity. It's hard to predict them and when their exploit occurs, since developers and vendors are unaware of the flaw until they are actually exploited. Hence, there is no ready patch available for a 0-day vulnerability. MOVEit Transfer 0-day On May
- [Meet the SOC Weekly Reports, a New Way to Inform Customers](https://www.neteye-blog.com/blog/2022/12/21/a-brief-journey-through-soc-weekly-reports/) - To keep customers informed about SOC activities, various reports are produced and delivered. Read the article to discover more about the SOC Weekly Reports!
- [Speeding up NetEye Updates with an RPM Mirror](https://www.neteye-blog.com/blog/2023/06/12/speeding-up-neteye-updates-with-an-rpm-mirror/) - When it comes to upgrading and updating NetEye, many users face a common challenge: the time required for downloading the new package versions. This process can be influenced by connection speed, the number of nodes to update, and sometimes even the number of NetEye systems to manage simultaneously. Fortunately, NetEye 4.30 introduces an effective solution:
- [HackInBo - talk "pompompurin & co. - stories of seizures!"](https://www.neteye-blog.com/blog/2023/06/11/hackinbo-talk-pompompurin-co-stories-of-seizures/) - On Friday 9 June 2023 I had the opportunity to participate as a speaker at the HackInBo Business event, one of the most important conferences on cyber security in Italy. During the talk I presented, I talked about the history of RaidForum, BreachForum and ExposedForum and the Genesis and Solomon marketplaces, recounting the seizures actions
- [About Set Theory, the N-queens Problem, and SQL](https://www.neteye-blog.com/blog/2023/06/05/about-set-theory-the-n-queens-problem-and-sql/) - The n-queens problem is a common exercise in computer science. Legend has it that a mathematician once declared that women are like the queens in chess, you can’t put eight of them in a room without them trying to kill each other. This obviously isn't true, and since I'm a feminist, but also a nerd,
- [SSSD for Active Directory Authentication](https://www.neteye-blog.com/blog/2023/06/06/sssd-for-active-directory-authentication/) - We all know that NetEye can grant access to its Web Interface through local users, or through the use of LDAP queries that can filter and grant GUI access to users or groups of a given Active Directory domain. What I would like to explore today is the possibility of granting SSH access and elevating
- [Cracking the Code: Unveiling Data Breach Secrets through OSINT-driven Scripts](https://www.neteye-blog.com/blog/2023/06/07/cracking-the-code-unveiling-data-breach-secrets-through-osint-driven-script/) - Welcome, today's blog is dedicated to data breach analyses and evaluating their reliability. In an increasingly data-centric digital landscape, it's crucial to delve into the complexities of data breaches and develop effective methods for determining the trustworthiness of the information they contain. In this blog, we'll explore a professional approach to data breach analysis using
- [Bug Fixes for NetEye 4.49](https://www.neteye-blog.com/blog/2026/08/12/bug-fixes-for-neteye-4-49/) - GLPI 11 install and upgrade issue We identified and fixed a bug that could cause the neteye install or neteye upgrade command to fail on clusters in case the service was not running on the same node as Icingaweb2 Keycloak install issue We identified and fixed a bug that could cause the neteye install command
- [Decentralized Identity Systems Concepts](https://www.neteye-blog.com/blog/2026/06/19/decentralized-identity-systems-concepts/) - Today, most digital identity systems are built around a Central Identity Provider. That provider signs users in, stores key identity data, and often sits in the middle of every trust relationship between people, applications, and organizations. This model works, but it also creates several growing problems: Extensive personal data is collected and retained by identity
- [Decentralized Identity Systems: Under the Hood](https://www.neteye-blog.com/blog/2026/08/11/decentralized-identity-systems-under-the-hood/) - This is the second part of a two-part series. Part one, Decentralized Identity Systems Concepts, introduced the why and the what. This article explains the how. Part one established the core idea: Instead of a central identity provider sitting in the middle of every trust relationship, users hold digitally signed credentials in a wallet, issuers
- [When Valid Check Results Stop Arriving: Investigating an Overdue Incident](https://www.neteye-blog.com/blog/2026/08/07/when-valid-check-results-stop-arriving-investigating-an-overdue-incident/) - How we investigated an unusual Icinga 2 performance issue with no obvious infrastructure cause. One of the more interesting investigations I've worked on recently started with a puzzling symptom: Normal check scheduling was delayed, but there was no apparent reason why. CPU, memory, and disk I/O looked fine. The incident had started shortly after some
- [Unmasking Geo-Fenced Threats: The Power of Residential Proxies in CTI](https://www.neteye-blog.com/blog/2026/08/04/unmasking-geo-fenced-threats-the-power-of-residential-proxies-in-cti/) - As threat analysts, we spend our days dissecting malicious code, tracking infrastructure, and reverse-engineering adversary tactics. But what happens when the threat actor refuses to even let us see the payload? In recent years, the Cyber Threat Intelligence (CTI) landscape has witnessed a massive shift. Adversaries have realized that the best way to protect their
- [The Hidden Threat of Subdomain Takeovers](https://www.neteye-blog.com/blog/2026/06/03/the-hidden-threat-of-subdomain-takeovers/) - As a Cyber Threat Intelligence (CTI) Analyst, my daily work often involves analyzing suspicious domains that look like our clients' brands. One of our goals is to prevent phishing campaigns and brand abuse. We usually hunt for external threats like typosquatting. However, sometimes the most dangerous threat comes directly from the legitimate infrastructure within the
- [Cloud-to-Cloud Migration: The 7 Challenges No One Tells You About](https://www.neteye-blog.com/blog/2026/06/29/cloud-to-cloud-migration-the-7-challenges-no-one-tells-you-about/) - Company mergers, acquisitions, internal reorganizations, tenant consolidation, or the need to centralize collaboration tools are just some of the reasons organizations undertake a Cloud-to-Cloud migration. When people talk about Atlassian migrations, they're almost always referring to moving from Server or Data Center to the Cloud. In recent years, however, another scenario has become increasingly common:
- [NetEye 4.49 Release Notes](https://www.neteye-blog.com/blog/2026/08/03/neteye-4-49-release-notes/) - Welcome to version 4.49 of our NetEye Unified Monitoring Platform. As you log in, you'll be greeted by the Stelvio Pass seen from above, where the road climbs the mountain in a series of tight hairpin bends that seem almost impossible from this height. Forty-eight of them, numbered one by one, twist their way up
- [NetEye 4.46 – Security Advisory (Icinga 2)](https://www.neteye-blog.com/blog/2026/07/28/neteye-4-security-advisory-icinga-2-3/) - Important: Icinga 2 security update Type/Severity NetEye Product Security has rated this update as having a critical security impact. Topic An update for the icinga package is now available for NetEye 4. Security Fix for NetEye 4.46 2.15.5_neteye1.64.3-1 Summary The vulnerabilities include an authentication bypass leading to privilege escalation via trusted CA impersonation, a stack-based buffer overflow, and
- [NetEye 4.47 – Security Advisory (Icinga 2)](https://www.neteye-blog.com/blog/2026/07/28/neteye-4-security-advisory-icinga-2-2/) - Important: Icinga 2 security update Type/Severity NetEye Product Security has rated this update as having a critical security impact. Topic An update for the icinga package is now available for NetEye 4. Security Fix for NetEye 4.47 2.15.5_neteye1.68.3-1 Summary The vulnerabilities include an authentication bypass leading to privilege escalation via trusted CA impersonation, a stack-based buffer overflow, and
- [NetEye 4.48 – Security Advisory (Icinga 2)](https://www.neteye-blog.com/blog/2026/07/07/neteye-4-security-advisory-icinga-2/) - Important: Icinga 2 security update Type/Severity NetEye Product Security has rated this update as having a critical security impact. Topic An update for the icinga package is now available for NetEye 4. Security Fix for NetEye 4.48 2.15.5_neteye1.71.2-1 Summary The vulnerabilities include an authentication bypass leading to privilege escalation via trusted CA impersonation, a stack-based buffer overflow, and
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/07/29/bug-fixes-for-neteye-4-47-6/) - Resolved issue affecting neteye update We identified and fixed a bug that could cause the neteye update command to fail under specific circumstances. List of updated packages To solve the issue mentioned above, the following packages have been updated for NetEye 4.47: neteye-upgrade-manager to version 0.78.4-1
- [NetEye 4 - Security Advisory (NagVis)](https://www.neteye-blog.com/blog/2026/07/28/neteye-4-security-advisory-nagvis/) - Important: NagVis security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the nagvis and icingaweb2-module-nagvis packages is now available for NetEye 4. Security Fix for NetEye 4.48 nagvis-1.9.49_neteye1.8.2-1 icingaweb2-module-nagvis-1.1.1_neteye1.10.1-1 Summary The vulnerabilities include two livestatus injections in dynmaps and a XSS via WYSIWYG editor. For details on
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/07/24/neteye-4-security-advisory-elastic-stack-7/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a Medium security impact. Topic Updates for the Elastic Stack packages are now available for NetEye 4. Security Fix for NetEye 4.48 9.4.4_neteye3.101.4-1 CVEs Elasticsearch CVE-2026-63263CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-63144CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-63140CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-56145CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-56144CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N Kibana CVE-2026-63262CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVE-2026-63261CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-63260CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-63259CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVE-2026-63145CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N CVE-2026-63143CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVE-2026-63142CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N CVE-2026-63141CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L CVE-2026-63139CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-42397CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Most of
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/07/23/bug-fixes-for-neteye-4-48-6/) - Fix Soft States Some checks that were actually failing showed up as green/OK in Icinga. The cause: two parts of the system stored the same status in different formats, so the web interface misread it and hid early-stage problems. A fix aligns the formats, List of updated packages To solve the issue mentioned above, the
- [What Cloud Security Posture Management Actually Checks, and What It Doesn't](https://www.neteye-blog.com/blog/2026/07/21/what-cloud-security-posture-management-actually-checks-and-what-it-doesnt/) - Cloud Security Posture Management describes a category of tools that inspect cloud environments for configuration problems like public storage, overly broad IAM permissions, disabled logging, and missing encryption. The category includes open-source projects like Prowler and ScoutSuite, as well as commercial platforms. Despite different pricing models and interfaces, they solve the same underlying problem in
- [Atlassian SSO Explained: How Authentication Really Works (Without the Confusion)](https://www.neteye-blog.com/blog/2026/03/21/atlassian-sso-explained-how-authentication-really-works-without-the-confusion/) - Single Sign-On (SSO) is often seen as a simple “log in once, access everything” solution. But when it comes to Atlassian Cloud, things can feel a bit more complex – especially when dealing with managed users, external collaborators, and different authentication policies. In this article, we’ll break down how SSO works in Atlassian in a
- [Inside Password Attacks: A SOC Perspective](https://www.neteye-blog.com/blog/2026/07/20/inside-password-attacks-a-soc-perspective/) - A SOC perspective on brute force, password spraying, credential stuffing, and the Elastic SIEM logic used to detect suspicious logins.
- [AI Can Write Your Code, But It Cannot Own It](https://www.neteye-blog.com/blog/2026/07/17/ai-can-write-your-code-but-it-cannot-own-it/) - If I start with a generic opening like "In the AI age" or "AI is changing software development," I'd have lost your interest already. You've likely read phrases like those a bazillion times in the last month alone. You probably also already have a strong opinion, either in favor of or against AI-generated code. And
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/07/16/bug-fixes-for-neteye-4-48-5/) - Fix Director self-service api We fixed the uncaught exception on bad Basic autm but in doing so we introduced a 302 redirect for API requests as well. Net result: a curl client expecting a 401 gets redirected to the login page instead, and the machine on the other end has no browser to follow it.
- [Implementing NetEye in a Disaster Recovery Environment](https://www.neteye-blog.com/blog/2026/07/13/implementing-neteye-in-a-disaster-recovery-environment/) - In this blog post, I'd like to share insights into the implementation of a NetEye disaster recovery (DR) environment that we recently successfully deployed for a customer. As many of you probably know, integrating IT applications into a disaster recovery environment is often not straightforward. Challenges can arise from various factors such as complex database
- [Creating Powerful and Effective Dashboards: Tips and Best Practices](https://www.neteye-blog.com/blog/2026/07/10/creating-powerful-and-effective-dashboards-tips-and-best-practices/) - Why Dashboards Are Important In the modern IT world, simply collecting data isn't enough: Real value comes when data can be quickly interpreted and transformed into useful information. Dashboards represent the final step of a process that starts with: Data collection Data import into the platform Analysis and processing Through charts, tables and interactive visualizations,
- [Announcing the New NetEye Extension Pack for Audiocodes Devices in NetEye 4.49](https://www.neteye-blog.com/blog/2026/07/10/announcing-the-new-neteye-extension-pack-for-audiocodes-devices-in-neteye-4-49/) - With the NetEye 4.49 release, we're extending the coverage of our NetEye Extension Packs (NEPs) by introducing a new package specifically focused on Audiocodes device monitoring, implemented through Centreon plugins over SNMP. This article explains: When the Audiocodes NEP will be available What it does and which aspects of Audiocodes devices it monitors How it's
- [Automating BIOS Password Management on Dell Laptops via SCCM (with 90-Day Rotation)](https://www.neteye-blog.com/blog/2026/07/07/automating-bios-password-management-on-dell-laptops-via-sccm-with-90-day-rotation/) - Why We Decided to Address This At some point while reviewing our endpoint security posture, we realized that BIOS protection was one of those areas we tend to take for granted rather than actually verify. This was the situation we encountered: • No BIOS password configured• Unrestricted access to BIOS settings• External boot still enabled
- [Building a Local AWS Dev Environment with Floci – Part 1: EKS and ECR](https://www.neteye-blog.com/blog/2026/07/03/building-a-local-aws-dev-environment-with-floci-part-1-eks-and-ecr/) - We're developing a software product whose production environments run entirely on AWS. Keeping local development as close as possible to those environments is important to us: It reduces surprises when deploying, shortens the feedback loop when debugging infrastructure-related issues, and means developers can work confidently without needing access to a shared cloud account. To achieve
- [The AI Cyber Attacks Explosion in 2026: Emerging Threats](https://www.neteye-blog.com/blog/2026/07/03/the-ai-cyber-attacks-explosion-in-2026-emerging-threats/) - The first half of 2026 sees both attacks exploiting inherent AI vulnerabilities and architectural boundaries, and attacks powered autonomously by AI tools.
- [Why AI Will Make Refactoring More Important, Not Less](https://www.neteye-blog.com/blog/2026/07/03/why-ai-will-make-refactoring-more-important-not-less/) - For a long time, software development has had a fairly comforting structure: You had a problem, you wrote some code, you shipped it, and then you moved on to the next problem while quietly pretending the previous one wouldn’t come back to haunt you at all. Mission accomplished. That model is starting to break, not
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/07/07/neteye-4-security-advisory-elastic-stack-6/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a Medium security impact. Topic An update for the Kibana package is now available for NetEye 4. Security Fix for NetEye 4.48 9.4.3_neteye3.101.2-1 CVEs CVE-2026-56148CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-56149CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-56151CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H All of the 3 CVEs are Denial of Service vulnerabilities that affect Kibana, within the Elastic
- [NetEye 4 - Security Advisory (GLPI)](https://www.neteye-blog.com/blog/2026/06/24/neteye-4-security-advisory-glpi-4/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the glpi packages is now available for NetEye 4. Security Fix for NetEye 4.48 10.0.26_neteye1.19.1-1 Summary The vulnerabilities include two SQL injections, an Arbitrary file deletion, a Privilege Escalation via authtype API manipulation, an Unauthorized debug
- [How I Migrated Grafana Dashboards to IcingaDB with AI](https://www.neteye-blog.com/blog/2026/07/03/how-i-migrated-grafana-dashboards-to-icingadb-with-ai/) - When our work on the NetEye 4.47 upgrade started, one technical dependency quickly became impossible to ignore: Grafana dashboards that still relied on the legacy IDO MySQL database had to be moved to IcingaDB first. That wasn't the interesting part, though. The interesting part was how to do it safely. These dashboards are part of
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/07/01/bug-fixes-for-neteye-4-48-4/) - Fix Geo Map layers and maps deletion. We have resolved an issue in the Geo Map module that prevented users from deleting maps and layers through the web interface. List of updated packages To solve the issue mentioned above, the following packages have been updated for NetEye 4.48: icingaweb2-module-geomap, icingaweb2-module-geomap-autosetup and icingaweb2-module-geomap-configurator to version 1.32.1-1
- [A Hybrid IT Operating Model: PMBOK® Guide (Eighth Edition), ITIL® , and Agile Working Together](https://www.neteye-blog.com/blog/2026/07/01/a-hybrid-it-operating-model-pmbok-guide-eighth-edition-itil-and-agile-working-together/) - One practical approach to how the IT function of a global enterprise can govern strategy, manage digital products and services, and deliver work continuously, using a coherent three-layer model based on a hybrid operating model. Building on What We Already Know Running IT in a global enterprise is not a single problem. It is at
- [What GLPI Can Really Add to NIS2 Compliance](https://www.neteye-blog.com/blog/2026/06/30/what-glpi-can-really-add-to-nis2-compliance/) - With NIS2, the focus moves toward how security is actually managed in day-to-day operations. An important part of NIS2 is operational discipline: Knowing which assets exist, who's responsible for them, how incidents are handled, how changes are controlled, and whether the necessary records are already available in the system. The question is whether existing tools
- [Simplifying Multi-cluster Kubernetes Monitoring with EDOT](https://www.neteye-blog.com/blog/2026/06/30/simplifying-multi-cluster-kubernetes-monitoring-with-edot/) - There’s a particular kind of irony in watching your observability stack become the thing you most need to observe...
- [K8s Secrets: Why We Migrated from SealedSecrets to ExternalSecrets](https://www.neteye-blog.com/blog/2026/06/30/k8s-secrets-why-we-migrated-from-sealedsecrets-to-externalsecrets/) - For a long time, Sealed Secrets was our go-to solution for managing confidential data like database credentials, tokens and private keys within Kubernetes. However, as our operations grew, the operational overhead of this approach led us to migrate to External Secrets. This transition has significantly streamlined our workflow, enhanced our security posture during credential rotations,
- [Load-balancing Requests to LLMs in Kubernetes: A KV-cache Approach with llm-d!](https://www.neteye-blog.com/blog/2026/06/30/load-balancing-requests-to-llms-in-kubernetes-a-kv-cache-approach-with-llm-d/) - Hi everyone 😃 Today I'd like to walk you through some experiments we ran about load-balancing requests to LLMs in Kubernetes. Let's dive deep into it! Why Deploy LLMs in Kubernetes? Well, Kubernetes has now established itself as a leading technology when it comes to workloads orchestration. And with time the increasing support for accelerators
- [New NEP Coming Soon: Monitor Your Office 365 Tenant Subscriptions with Confidence](https://www.neteye-blog.com/blog/2026/06/30/new-nep-coming-soon-monitor-your-office-365-tenant-subscriptions-with-confidence/) - Office 365 is a suite of online subscription services offered by Microsoft as part of the Microsoft 365 ecosystem. It includes capabilities for document creation and management, email, video conferencing, collaboration, and many other productivity services. The upcoming NetEye Extension Pack (NEP) is designed to monitor subscription-related information within your Office 365 tenant by leveraging
- [Smarter Confluence Notifications with Automation](https://www.neteye-blog.com/blog/2026/03/23/smarter-confluence-notifications-with-automation/) - Introduction As Confluence adoption expands across organizations, automated notifications tend to multiply rapidly. What initially helps collaboration can quickly become a source of frustration: Users feel overwhelmed, important alerts get buried, and attention slowly fades. This is the classic effect of notification fatigue. To tackle this challenge, we designed a more intentional and sustainable automation
- [Build a Readable List of Confluence Spaces with the REST API and an Auto-Generated Page](https://www.neteye-blog.com/blog/2026/06/30/build-a-readable-list-of-confluence-spaces-with-the-rest-api-and-an-auto-generated-page/) - Confluence Cloud does not provide a simple native view that lists all spaces with direct links that's in a format business users can easily consume. The REST API gives you the data, but you still need to filter, paginate, and present it. A practical workaround is to collect all spaces through the v2 Spaces endpoint,
- [Bypass ≠ Fix: Managing Admin Keys in Confluence Cloud](https://www.neteye-blog.com/blog/2025/09/23/bypass-≠-fix-managing-admin-key-in-confluence-cloud/) - In organizations using Confluence Cloud as a knowledge‑base, documentation hub or collaboration platform, you often see pages or spaces created with restrictions (i.e., visible only to certain users/groups). In these situations an administrator may need to access content they don’t have permission to view. To address this, Atlassian provides the admin key feature. But like any
- [Teleprompter Tips, Part 2](https://www.neteye-blog.com/blog/2026/06/30/teleprompter-tips-part-2/) - By now we know how to use a teleprompter from the point of view of a content creator in front of the camera. But remember, that's not all we do in our world of limited resources. We're also the audio engineer, cameraman, lighting director, and so many other roles. So today instead I want to
- [Exploiting the Matrix: Offensive Techniques for Attacking AI Models](https://www.neteye-blog.com/blog/2024/08/05/exploiting-the-matrix-offensive-techniques-for-attacking-ai-models/) - There's no way around it: Artificial Intelligence is reshaping our world in profound ways, and it's here to stay. In recent years we’ve entered a golden age for specialized hardware and algorithms suited to enhance machine learning models. These technologies are now bringing significant advances across various sectors, from finance to healthcare, from e-commerce to
- [Bring Your Own Model - Using Custom Models in Elasticsearch](https://www.neteye-blog.com/blog/2024/08/12/bring-your-own-model-using-custom-models-in-elasticsearch/) - Hey everyone! As you may remember, we took a look in the past at how it's possible to use a model (trained directly in Elasticsearch) to perform some real time classification by using an ingest pipeline. But... what if we wanted to use our own externally trained model? Well the good news is that, under
- [Atlassian AI and Data Security: A Delicate Balance](https://www.neteye-blog.com/blog/2024/12/18/atlassian-ai-and-data-security-a-delicate-balance/) - The integration of artificial intelligence (AI) into Atlassian tools, such as Jira and Confluence, undoubtedly offers countless benefits but has raised many concerns about data security. Why is data security so important for Atlassian? Atlassian tools often contain sensitive information, such as development plans, customer data, and project details. Imagine entrusting this information to a
- [The Evolving Security Landscape of MCP](https://www.neteye-blog.com/blog/2025/09/26/the-evolving-security-landscape-of-mcp/) - Introduction: What is MCP? The Model Context Protocol is an emerging open standard that defines how large language models and AI agents interact with external tools, services, and data sources. Instead of every AI provider building its own proprietary “tool calling” system, MCP provides a common protocol (typically over JSON-RPC) to expose capabilities such as
- [YES [AI] CAN Artificial Intelligence as Opportunity and Challenge](https://www.neteye-blog.com/blog/2018/09/19/yes-ai-can-the-artificial-intelligence-as-opportunity-and-challenge/) - The Cloud, Big Data and IoT are changing the way businesses operate: value can only be created by making effective use of data. This demand to deepen knowledge has increased the number of big data tools, new sharing platforms and smart objects. But how do these new technologies affect traditional methods of IT management? What
- [Real-time Observability Thanks to AI](https://www.neteye-blog.com/blog/2020/04/15/real-time-observability-thanks-to-ai/) - With the rapidly advancing digitalization of the economy, the availability of IT is becoming business-critical. Unplanned downtime is no longer acceptable, 24/7 operation is indispensable. For administrators, this means that they have to identify incidents before they lead to damaging behaviors in business processes. AIOps promises support in this direction. The digital transformation or our
- [👀 The AI is coming! The AI is coming!](https://www.neteye-blog.com/blog/2023/06/19/👀-the-ai-is-coming-the-ai-is-coming/) - A brief presentation of the brand new Atlassian Intelligence features and their potential in real use case scenarios. We don't need Chicken Little to tell us that our lives will be increasingly influenced by the Artificial Intelligence revolution – AI is transforming how we work, enhancing teamwork, and significantly accelerating team achievements. Machine learning is
- [Scaled Planning in Jira: Another Brick in the Wall](https://www.neteye-blog.com/blog/2023/08/22/scaled-planning-in-jira-another-brick-in-the-wall/) - The brand new "Top-level planning" template represents the puzzle pieces that guide us in effectively managing scaled planning in Jira Introduction: Why is "Scaling" fundamental? Do you know that feeling when you find the one puzzle piece that allows you to connect two larger sets of pieces you've already assembled? Well, that's similar to what
- [Reduce Your "Oh S***! It's Monday...!😓" Mood with Helpful Jira Automation](https://www.neteye-blog.com/blog/2023/12/19/reduce-your-oh-s-its-monday-mood-with-helpful-jira-automation/) - How to leverage some Jira features to lighten the workload through automation, replacing manual tasks of low added value that can be frustrating and tedious for those performing them Introduction: What's the idea behind how to live better Mondays? How many times have you had the feeling that most of the heaviness and stress when
- [Get Your Agile and Integrated Procurement Cycle](https://www.neteye-blog.com/blog/2023/12/30/get-your-agile-and-integrated-procurement-cycle/) - How to survive managing the IT asset purchase cycle in your company with just a few key elements that ensure a just-in-time approach and decreased waiting time What are the goals and benefits of automating the procurement process? Sooner or later, it's going to be time to change and evolve. It's usually better to choose
- [An XPerience: Discussing the Role of AI in the Agile World](https://www.neteye-blog.com/blog/2024/06/11/an-xperience-discussing-the-role-of-ai-in-the-agile-world/) - Between the 4th and 7th of June this year, Bolzano had the opportunity to host XP 2024, the 25th edition of the premier international conference on Agile software development. The scenario was NOI Techpark and, as Würth Phoenix, we were there and had the chance to participate in the conference with two talks about SecDevOps
- [Using AI to Create Tutorial Videos](https://www.neteye-blog.com/blog/2024/08/27/using-ai-to-create-tutorial-videos/) - Confession time. I can easily spend between 1 and 2 weeks creating a 5 minute long video. 3 weeks if I'm being a perfectionist. Of course, those videos are awesome, and are highly tailored to a specific audience. They say what I want to say. In this blog I'm always looking into efficiency and productivity
- [We Were All Wrong](https://www.neteye-blog.com/blog/2024/12/18/we-were-all-wrong/) - Why Generalists Will Rule the World (Even with AI) November 30, 2022 marked a turning point. The release of OpenAI's ChatGPT started a new era of AI-powered productivity, but also brought widespread uncertainty into the work environment. One of the most asked questions about AI is: "How will AI impact jobs in the future?" ...and
- [Will AI Take Over the World?](https://www.neteye-blog.com/blog/2025/02/05/will-ai-take-over-the-world/) - Ah, the age-old question of our modern era: Will AI take over the world? It’s a query that has fueled dystopian science fiction, late-night debates, and more than a few anxiety-fueled headlines. Let’s dive into it, shall we? The Rise of the Machines First, let’s get one thing straight: Artificial Intelligence is a tool. A
- [AI in the Service Desk: Beyond the Percentages](https://www.neteye-blog.com/blog/2025/09/30/artificial-intelligence-in-the-service-desk/) - Will AI really change the Service Desk? Anyone who works in an IT office knows this: between tickets, locked accounts, and last-minute requests, the service desk is the invisible heart of the company.Lately, though, everyone’s talking about one thing: artificial intelligence. And the question is always the same:How much will it really change the way
- [Atlassian Rovo Today: Architecture, Technologies, and Enterprise Trust](https://www.neteye-blog.com/blog/2025/12/30/atlassian-rovo-today-architecture-technologies-and-enterprise-trust/) - The current architecture and underlying technologies behind the Atlassian Rovo engine, in light of recent developments The last few months show the path forward If you've been following the evolution of AI in recent years, you know changes come fast and often, and even a single year can be much too long an interval to
- [Reflections on Running LLMs Locally: Why It's Worth Running Them on Your Own Infrastructure](https://www.neteye-blog.com/blog/2026/03/21/reflections-on-running-llms-locally-why-it-is-worth-running-them-on-your-own-infrastructure/) - Model selection, infrastructure sizing, vertical fine-tuning and MCP server integration. All explained without the fluff. Why Run AI on Your Own Infrastructure? Let's be honest: over the past two years, LLMs have evolved from a tool perceived as experimental and reserved for researchers into something companies use every day for concrete, practical tasks. And with
- [When Agile at Scale Meets Atlassian: Choosing the Right Scaling Model for Global IT Organizations](https://www.neteye-blog.com/blog/2026/03/31/when-agile-at-scale-meets-atlassian-choosing-the-right-scaling-model-for-global-it-organizations/) - A practical look at SAFe, LeSS, Scrum@Scale, Disciplined Agile, Nexus, and custom hybrid models for enterprise IT organizations using Jira, Jira Service Management, and Confluence Cloud. Scaling Agile in the Enterprise: The Question Nobody Really Wants to Answer For many organizations, Agile starts small and local. A few teams adopt Scrum, delivery improves, visibility increases,
- [Monitoring Ollama in NetEye with ollama-metrics and check_prometheus](https://www.neteye-blog.com/blog/2026/04/02/monitoring-ollama-in-neteye-with-ollama-metrics-and-check_prometheus/) - Running Ollama locally or on dedicated hardware is straightforward until you need to know whether a model is actually loaded in RAM, how fast it generates tokens under load, or when memory consumption reaches a threshold that affects other workloads. A simple TCP port check confirms the process is alive, nothing more. This tutorial shows
- [An AI Approach for Old SNMP Devices](https://www.neteye-blog.com/blog/2026/05/22/an-ai-approach-for-old-snmp-devices/) - During our consulting activities we frequently find ourselves having to collect data from SNMP devices that do not support SNMPv3 for data encryption. This type of traffic is readable on the network and can create security problems and noncompliance with company certifications, for example ISO27K. For this reason, you might have devices segregated on a
- [How to Build an LLM-Assisted Automation](https://www.neteye-blog.com/blog/2026/06/29/how-to-build-an-llm-assisted-automation/) - The code is the structure, the LLM is the glue at the joints. There's a widespread misconception about automations “powered by artificial intelligence”: People picture a model you give an order to, which then carries out a complex operation from start to finish all on its own. It's a seductive image, and almost always wrong.
- [Distribute Elastic Endpoint Artifacts via NetEye Satellites](https://www.neteye-blog.com/blog/2026/06/29/distribute-elastic-endpoint-artifacts-via-neteye-satellites/) - In this article, I want to focus on a practical implementation variant in NetEye-based installations: providing Elastic Endpoint artifacts locally.
- [Beyond Utilization: Understanding Pressure Stall Information](https://www.neteye-blog.com/blog/2026/06/29/beyond-utilization-understanding-pressure-stall-information/) - One of your servers is reporting moderate CPU usage, enough available memory, and storage that's busy but not saturated. The dashboard looks healthy, the application does not. Requests to it are slowing down, background jobs are taking longer, and latency is rising even though no resource appears fully exhausted. The problem here is that most
- [How to Migrate Issues and Tickets from One Project to Another](https://www.neteye-blog.com/blog/2026/06/29/how-to-migrate-issues-and-tickets-from-one-project-to-another/) - Issue migration between Jira projects can usually be handled in two ways: Same instance tendentially using Move or Bulk Move Different instances tendentially using export/import or API/script Migration Within the Same Instance Method 1 This is the simpler case. Main steps: Filter the issues to migrate Use Move or Bulk Change Select the target project
- [When Postfix Can No Longer Remain Invisible: More Transparent Debugging with Elastic](https://www.neteye-blog.com/blog/2026/06/27/when-postfix-can-no-longer-remain-invisible-more-transparent-debugging-with-elastic/) - Postfix is not typically the first component that comes to mind when talking about critical services. And yet it's through Postfix that all notifications, ticketing system-related correspondence, and monthly SLA reports are sent out from NetEye. As long as everything is working properly, Postfix is almost invisible. And that's exactly what it does: silently and
- [LOLDrivers Is More Than a Simple List: A New Approach to BYOVD Detection](https://www.neteye-blog.com/blog/2026/06/25/loldrivers-is-more-than-a-simple-list-a-new-approach-to-byovd-detection/) - 1. Introduction The abuse of vulnerable drivers has become an increasingly common technique adopted by attackers to bypass modern security controls. This attack pattern, commonly referred to as Bring Your Own Vulnerable Driver (BYOVD), consists of loading legitimately signed but vulnerable drivers into the operating system in order to gain kernel-level privileges, disable security products,
- [Purple Teaming as a Continuous Improvement Model](https://www.neteye-blog.com/blog/2026/06/04/purple-teaming-as-a-continuous-improvement-model/) - In cybersecurity, the gap between what we think we can detect and what we actually detect is often wider than we expect. Tools are configured, rules are written, playbooks are drafted, and yet, when a real attack unfolds, the telemetry is incomplete, the alerts are noisy, and the response is slower than it should be.
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/06/24/bug-fixes-for-neteye-4-48-3/) - Fix SLM Reports generation with Object Filter on service custom variables. We have resolved an issue that caused SLM Reports generation to fail when the report was based on a contract whose Object Filter contained expressions on service custom variables (e.g., service.vars.service_system_service~true). The error prevented users from generating or viewing SLM reports for contracts using
- [Customer Feedback in Jira Service Management: CSAT and Native Surveys Explained](https://www.neteye-blog.com/blog/2026/06/23/customer-feedback-in-jira-service-management-csat-and-native-surveys-explained/) - Customer feedback provides insights that operational metrics alone cannot capture. Jira Service Management has long offered built-in CSAT surveys, automatically collecting satisfaction ratings through a simple star-based mechanism when tickets are resolved. With the introduction of Native surveys, Atlassian extends these capabilities with a more flexible survey builder supporting multiple questions and richer feedback. While
- [How to Customize Your Grafana Theme](https://www.neteye-blog.com/blog/2017/12/07/how-to-customize-your-grafana-theme-2/) - Grafana is an open source dashboard tool that helps users to easily create and edit dashboards. Grafana uses Golang as a backend and Angular as the frontend. It's quite a large codebase and supports a large number of options for its components (data sources, options, panels, etc.). Grafana’s stylesheet is written using the Sass CSS
- [Keeping Microsoft Foundry EU Deployments Honest with eu-azfoundry-scout](https://www.neteye-blog.com/blog/2026/06/23/keeping-microsoft-foundry-eu-deployments-honest-with-eu-azfoundry-scout/) - TL;DR When designing GDPR-conscious AI workloads in Azure, the model name is not enough. The version matters, the region matters, the deprecation date matters, and the deployment type matters, too. For EU-bound workloads, the practical question is often this: which exact model versions can I deploy in European Azure regions using Data Zone Standard (DataZoneStandard)?
- [NetEye 4 - Security Advisory (Grafana)](https://www.neteye-blog.com/blog/2026/06/23/neteye-4-security-advisory-grafana-3/) - Important: Grafana security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the grafana packages is now available for NetEye 4. Security Fix for NetEye 4.48 grafana-12.4.3_neteye3.31.1-1 Summary A Grafana Editor can overwrite a dashboard not owned by them to acquire admin permission on that specific dashboard. The
- [Your GitHub Organization Is Infrastructure Too](https://www.neteye-blog.com/blog/2026/06/22/your-github-organization-is-infrastructure-too/) - In a previous post, I wrote about the challenges of building a public GitHub organization correctly: The need for structure, consistency, and enforcement rather than relying on memory. What I didn't cover was how we actually solved it. The short answer: We treat the organization as infrastructure. Repositories, teams, branch protection rules, labels, permissions, all
- [Alert Notifications: Making Automation More Reliable](https://www.neteye-blog.com/blog/2026/06/17/alert-notifications-making-automation-more-reliable/) - Automation is now part of everyday operations. It helps teams move faster, cut down on manual work, and keep processes consistent. But automation only works well if it can be trusted. When something breaks in the background and nobody notices, the consequences can spread quickly. That's why alert notifications matter. They add a layer of
- [UEFI Secure Boot Nightmare](https://www.neteye-blog.com/blog/2026/06/17/uefi-secure-boot-nightmare/) - Scenario Secure Boot was always a long bet on the idea that the PC boot chain could be made boring, predictable, and resistant to tampering. When UEFI replaced the old BIOS model, Microsoft and the PC industry moved toward a world where firmware would check signatures before handing control to bootloaders, option ROMs, and operating
- [Jira Operations Tips & Tricks for NetEye Users – Part 2](https://www.neteye-blog.com/blog/2026/06/15/jira-operations-tips-tricks-for-neteye-users-part-2/) - Practical lessons learned from real-world alert routing, automation, and integrations Introduction As mentioned at the end of Part 1, let's continue exploring practical use cases and real‑world solutions for Jira Operations alert handling and enrichment. NetEye, Icinga, and Jira Ops can significantly improve monitoring and incident response workflows – but the overall setup can become
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/06/11/bug-fixes-for-neteye-4-48-2/) - Improve visibility of Feature command state icons Feature command state icons and captions were difficult to see against the white background in the UI. To improve readability and accessibility, we updated the icon and caption colors to provide stronger contrast and better visibility. List of updated packages To solve the issue mentioned above, the following
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/06/12/bug-fixes-for-neteye-4-47-5/) - Fix: monitoring links from the Event Overview When opening a link from the Event Overview page, the monitoring URL was supposed to be translated into the corresponding IcingaDB link. The translation was only handled on a simple click, though, so opening the link in a new tab or window (middle-click, Ctrl/Cmd+click, context menu) left the
- [Grafana and Icinga Agent Version](https://www.neteye-blog.com/blog/2023/05/16/grafana-and-icinga-agent-version/) - Monitoring systems acquire information from various devices in different ways: API, SNMP, syslog, etc. One of the most important methods in Icinga-based systems like NetEye is the Icinga Agent. This agent is installed on each server and collects and sends information to the master NetEye node using secure protocols. When we work within a small
- [Transform Metrics into Alerts](https://www.neteye-blog.com/blog/2026/06/10/transform-metrics-into-alerts/) - Rarely has a title been more fitting: Transform metrics into alerts. It's not just a description of what the system does – it's also the exact name of the Elastic tool that makes it possible. Transforms, in their technical meaning, are the component we use to do precisely this: take a continuous stream of raw
- [NetEye 4 - Security Advisory (Keycloak)](https://www.neteye-blog.com/blog/2026/06/04/neteye-4-security-advisory-keycloak/) - Important: Keycloak security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the keycloak packages is now available for NetEye 4. Security Fix for NetEye 4.48 26.6.2_neteye1.40.0-1 Summary This vulnerability allows an attacker with a valid signed SAML assertion to inject a malicious encrypted assertion into an unsigned
- [GLPI: User Asset Confirmation in One Click](https://www.neteye-blog.com/blog/2026/06/01/glpi-user-asset-confirmation-in-one-click/) - Use Case Anyone who manages GLPI knows the situation: assets get assigned to users, but there is never a formal acknowledgement that the user is aware of what was handed to them and that the data is accurate. No signature, no date, no document. The problem is even more acute in companies with remote offices,
- [Bug Fixes for NetEye 4.48](https://www.neteye-blog.com/blog/2026/06/03/bug-fixes-for-neteye-4-48/) - Fix HEAD HTTP method not supported We resolved a compatibility issue affecting HEAD requests to NetEye endpoints. These requests could previously time out because the method was not fully supported by the underlying architecture. As a result, some procedures could fail, including the creation of connectors from the Kibana UI. List of updated packages To
- [NetEye 4.48 Release Notes](https://www.neteye-blog.com/blog/2026/06/01/neteye-4-48-release-notes/) - Welcome to version 4.48 of our NetEye v4 Unified Monitoring Platform. As you log in, you'll be greeted by the Earth Pyramids of Lengmoos, viewed from above as they rise from the forests of South Tyrol. These ancient terracotta-hued rock formations, shaped over thousands of years by erosion, spread across the landscape in a striking
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/05/27/bug-fixes-for-neteye-4-47-4/) - Fix IcingaDB password file sync on all cluster nodes. We have resolved an issue that caused an IcingaDB password file to be present only on one node in a cluster installation. This could lead to failures during NetEye updates and upgrades. List of updated packages To solve the issue mentioned above, the following packages have
- [NEP and Upgrading to NetEye 4.48](https://www.neteye-blog.com/blog/2026/05/22/nep-and-upgrading-to-neteye-4-48/) - As you should already know, with NetEye 4.45 we officially began the transition from Icinga IDO to IcingaDB (see NetEye 4.45 Release Notes | www.neteye-blog.com). This means that IDO has been deprecated on NetEye. We're now reaching the end of this transition: with NetEye 4.48 IDO will be officially removed from your NetEye without further
- [Building a Distributed DDoS Infrastructure for Red Teaming Campaigns](https://www.neteye-blog.com/blog/2025/02/22/building-a-distributed-ddos-infrastructure-for-red-teaming-campaigns/) - ⚠️ Warning: This article is intended for educational and ethical purposes only ⚠️ Red teamers don’t often engage in DDoS campaigns or stress testing against client systems, mainly for two reasons: Simulating a real attack in a credible manner is challenging If done well, these operations can have a significant impact However, there are cases
- [Observability on OpenShift: A Case Study with Red Hat OpenTelemetry and eBPF](https://www.neteye-blog.com/blog/2026/05/21/observability-on-openshift-a-case-study-with-red-hat-opentelemetry-and-ebpf/) - How we adapted our monitoring approach when the default choice didn't fitand what we learned along the way. You’ve probably been there. You walk into a new observability project, playbook in hand, only to realize that no two projects are ever really the same. Every team has its own tools, its own platform quirks, and
- [Device Isolation with SOAR](https://www.neteye-blog.com/blog/2026/05/20/device-isolation-with-soar/) - SOAR for Controlled Response SOAR is often described in broad terms: orchestration, automation, response, integration. That's true, but it can also feel vague. A simpler way to explain it is this: SOAR helps a SOC turn a decision into action without repeating the same manual steps every time. This matters most when the action is
- [ElastiFlow – Analysis and Visualization of Network Flows](https://www.neteye-blog.com/blog/2026/05/15/elastiflow-analysis-and-visualization-of-network-flows/) - ElastiFlow collects NetFlow data from networks, such as NetFlow, sFlow, or IPFIX. This data can be sent by routers, switches, probes and other devices. The ElastiFlow Engine then processes this data and optimizes its normalization before writing it to a database such as Elasticsearch. What makes ElastiFlow particularly interesting is that it is well suited
- [Teleprompter Tips, Part 1](https://www.neteye-blog.com/blog/2026/04/30/teleprompter-tips-part-1/) - Welcome back to our continuing series on budget-friendly methods for making video tutorials. With today's post I'm going to start a 3-parter on Teleprompters. I've previously described Teleprompter hardware and setup, but today I want to talk more about usage recommendations now that I've been using one for several years. Also remember that a teleprompter
- [From Elastic Observability to NetEye: Alerting with Tornado](https://www.neteye-blog.com/blog/2026/05/12/from-elastic-observability-to-neteye-alerting-with-tornado/) - With Elastic Observability we can create alerts on all data we collect, such as logs, metrics, application services and synthetic monitoring. However, NetEye represents the main operational console from which to monitor the entire infrastructure. By sending alarms from Elastic Observability to NetEye via Tornado, we can also bring this information into the NetEye console,
- [Bridging The Gap](https://www.neteye-blog.com/blog/2026/05/11/bridging-the-gap/) - Why a Purple Team Program Makes Cybersecurity More Effective In today’s cybersecurity landscape, having defensive tools in place is no longer enough. Firewalls, SIEM platforms, detection rules, playbooks, and threat intelligence feeds are all essential components, but the real question is this: how well do they actually perform under realistic attack conditions? This is where
- [NetEye 4 - Security Advisory (GLPI)](https://www.neteye-blog.com/blog/2026/04/30/neteye-4-security-advisory-glpi-3/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the glpi packages is now available for NetEye 4. Security Fix for NetEye 4.47 10.0.25_neteye1.18.0-1 Summary The vulnerabilities include two Stored XSS, an Arbitrary file deletion, an Arbitrary item deletion, Arbitrary files access and two unauthorized
- [The Ghost in the Kernel Machine](https://www.neteye-blog.com/blog/2026/04/22/the-ghost-in-the-kernel-machine/) - There is a technology inside modern Linux systems that: Can run inside the kernel Can extend kernel functionality Can observe almost anything Can modify runtime behavior Can enforce security policy Can rewrite networking Can collect telemetry It can do all of this (and much more) without the need of kernel modules;that technology is eBPF. The
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/04/24/bug-fixes-for-neteye-4-47-3/) - Node export in the Tornado Processing Tree was broken on Firefox The bug was caused by a divergence between Firefox and Chrome in blob handling with CSP. Issue resolved, behavior is now consistent across both browsers. List of updated packages To solve the issues mentioned above, the following packages have been updated: icingaweb2-module-tornado-3.2.3-1, icingaweb2-module-tornado-autosetup-3.2.3-1, icingaweb2-module-tornado-configurator-3.2.3-1
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/04/16/bug-fixes-for-neteye-4-47-2/) - Processing Tree Rendering Issue We shipped a fix for a rendering bug in the Tornado UI Processing Tree. Under specific conditions, navigating back to the dashboard after expanding tree nodes caused the tree to render incorrectly nodes would appear collapsed, misaligned, or in a broken state. List of updated packages To solve the issues mentioned
- [Bug Fixes for NetEye 4.42, 4.43, 4.44, 4.45, 4.46 and 4.47](https://www.neteye-blog.com/blog/2026/04/03/bug-fixes-for-neteye-4-42-4-43-4-44-4-45-4-46-and-4-47/) - Fix MariaDB restarts after mariadb-server-galera version 10.11.15 We have resolved an issue that caused MariaDB to fail during restart operations after Red Hat repositories published mariadb-server-galera version 10.11.15. The issue could occur in the following cases: Neteye Clusters: after machine reboots NetEye Single Nodes: during NetEye updates, manual MariaDB restarts, and machine reboots List of
- [Vue 3 PWAs Are Great, Until They Bite](https://www.neteye-blog.com/blog/2026/03/30/vue-3-pwas-are-great-until-they-bite/) - If you've ever built a Progressive Web App (PWA), you already know how the story usually goes. You add a manifest, generate a service worker, tick the installability boxes, and suddenly the app can sit on a phone home screen or launch in its own window on a desktop. Very nice. Very shiny. Teknologia! Then...
- [Bug Fixes for NetEye 4.47](https://www.neteye-blog.com/blog/2026/04/15/bug-fixes-for-neteye-4-47/) - Role Search Now Works in Access Control We've fixed the search functionality in the Roles view under Configuration - Access Control, so you can now find roles instantly without any errors. List of updated packages To solve the issues mentioned above, the following packages have been updated: icingaweb2-2.12.4_neteye1.155.2-1, icingaweb2-autosetup-2.12.4_neteye1.155.2-1 icingaweb2-configurator-2.12.4_neteye1.155.2-1
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/04/13/neteye-4-security-advisory-elastic-stack-5/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the elastic stack packages are now available for NetEye 4, with a special focus on Kibana and Logstash. Security Fix for NetEye 4.47 elastic-agent-9.3.3_neteye3.91.9-1 elastic-agent-autosetup-9.3.3_neteye3.91.9-1 elastic-agent-neteye-config-9.3.3_neteye3.91.9-1 elastic-stack-configurator-9.3.3_neteye3.91.9-1 elasticsearch-9.3.3_neteye3.91.9-1 elasticsearch-autosetup-9.3.3_neteye3.91.9-1 elasticsearch-neteye-config-9.3.3_neteye3.91.9-1 elasticsearch-xpack-license-9.3.3_neteye3.91.9-1 filebeat-9.3.3_neteye3.91.9-1 filebeat-autosetup-9.3.3_neteye3.91.9-1 filebeat-neteye-config-9.3.3_neteye3.91.9-1 kibana-9.3.3_neteye3.91.9-1
- [Improving the Process of Scheduling Downtimes by Introducing a New "Custom Actions" Module for Icinga Web 2](https://www.neteye-blog.com/blog/2021/04/16/improving-the-process-of-scheduling-downtimes-by-introducing-a-new-custom-actions-module-for-icinga-web-2/) - In my first blog I'd like to talk about a common process in the life of everyone who manages their monitoring system daily, along with an approach to improving it with a new module for Icinga Web 2 named Custom Actions, which we recently implemented for one of our clients. The process of scheduling downtimes
- [NEP Alyvix – Ready for Use](https://www.neteye-blog.com/blog/2021/12/10/nep-alyvix-ready-for-use/) - Together with the NetEye 4.21 release, we also released NEP (an abbreviation that stands for NetEye Extension Packs) and now it’s possible to install it using the RPM present in the Official NetEye Repositories. If you are interested in this topic, I invite you to look at how these NEPs have been set up. The
- [The Evolution of Multi-tenancy in NetEye](https://www.neteye-blog.com/blog/2023/04/05/the-evolution-of-multi-tenancy-in-neteye/) - A very important, fast-evolving area during the latest NetEye releases has been multi-tenancy. In a system with many tenants, the most complex aspect is probably the proper and orderly management of user permissions. To help administrators in this task, we have introduced the concept of tenant role in NetEye 4.29. The tenant role is a
- [Our Contribution to Mitre Att@ck](https://www.neteye-blog.com/blog/2024/11/01/our-contribution-to-mitre-attck/) - Many of you have probably already heard about the MITRE ATT&CK framework. This framework is an important point of reference at the international level and is used within thousands of projects, detection rules, platforms. The Adversarial Tactics, Techniques, and Common Knowledge is a guideline for classifying and describing cyberattacks and intrusions. It was created by
- [Migrating your NetEye Server to New Hardware (Part 1)](https://www.neteye-blog.com/blog/2026/04/09/migrating-your-neteye-server-to-new-hardware-part-1/) - Introduction Every few years (3-5) once your Hardware Guaranty expires, it's time again to migrate your productive NetEye Server from the old Hardware to the new. This is a procedure that has to be done regularly, but unfortunately no "How To" documentation can be found for it. So today I'll try to explain in a
- [Managing Customers in Jira Service Management: Identity, Access, and Control](https://www.neteye-blog.com/blog/2026/03/31/managing-customers-in-jira-service-management-identity-access-and-control/) - Introduction Customer management in Jira Service Management looks simple at first. Users are invited, access is granted, and requests start flowing. That simplicity does not last. As soon as external users increase, access control becomes the real problem, not onboarding. What matters is not how fast users can enter the system, but how clearly their
- [Abusing Trust Boundaries between TLS and HTTP](https://www.neteye-blog.com/blog/2026/03/31/abusing-trust-boundaries-between-tls-and-http/) - Sometimes we make assumptions that undermine our infrastructure security. Here's one of the most common mistakes that are done when setting up a reverse proxy.
- [Zero Glory, Massive Help: The Hidden Tools That Improve My Workflow](https://www.neteye-blog.com/blog/2026/03/31/zero-glory-massive-help-the-hidden-tools-that-improve-my-workflow/) - Most technical blog posts focus on frameworks, architectures, or specific implementation patterns. That makes sense, as those are the things we usually like to discuss, measure, and refine. But a lot of day-to-day efficiency doesn't come from the headline technology. It comes from the smaller utilities and extensions that quietly keep our work moving along.
- [NetEye 4 - Security Advisory (Grafana)](https://www.neteye-blog.com/blog/2026/02/06/neteye-4-security-advisory-grafana/) - Important: Grafana security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the Grafana packages is now available for NetEye 4. Security Fix for NetEye 4.46 12.0.9_neteye3.29.1-1 CVEs CVE-2026-21720CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H The CVE is about to a DoS vulnerability. For a detailed overview of the security issues, including the impact,
- [NetEye 4 - Security Advisory (Grafana)](https://www.neteye-blog.com/blog/2026/04/01/neteye-4-security-advisory-grafana-2/) - Important: Grafana security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the grafana packages is now available for NetEye 4. Security Fix for NetEye 4.46 grafana-12.4.2_neteye3.29.2-1 Summary There are several patched vulnerabilities. For details on how to apply this update, which includes the changes described in this
- [Automating Confluence Page Status at Scale: A Practical Workaround](https://www.neteye-blog.com/blog/2026/03/30/automating-confluence-page-status-at-scale-a-practical-workaround/) - I recently faced a challenge that many large organizations run into when scaling their use of Atlassian Confluence. I needed to create an automation that would automatically change the page status under specific conditions – for every page created or updated across more than 600 spaces. The Problem Out of the box, Confluence provides a
- [Announcing the New NetEye Extension Pack for pfSense Firewall in NetEye 4.47](https://www.neteye-blog.com/blog/2026/03/31/announcing-the-new-neteye-extension-pack-for-pfsense-firewall-in-neteye-4-47/) - With the NetEye 4.47 release, we will be extending the coverage of our NetEye Extension Packs (NEPs) by introducing a new package specifically focused on pfSense firewall monitoring, implemented through Centreon plugins. This article explains: When the pfSense NEP will be available What it does and which aspects of pfSense it monitors How it's integrated
- [Massive Near-Real-Time Monitoring with NetEye](https://www.neteye-blog.com/blog/2026/03/31/massive-near-real-time-monitoring-with-neteye/) - Hello to you all. It's been a while. Don't worry though, this won't be a long and technical post. It's just to let you know I'm doing (almost) well and to tell you about our latest news. The Metrics Challenge In the last year we've had a lot on our plate, but this hasn't affected
- [Immich – Choosing the Company's DAM](https://www.neteye-blog.com/blog/2026/03/31/immich-choosing-the-companys-dam/) - Preface In the landscape of self-hosted Digital Asset Management (DAM) solutions, more and more companies are choosing platforms that allow complete control of their corporate data. Among these, Immich is rapidly emerging as the best self-hosted replacement for Google Photos, thanks to its advanced AI capabilities, high performance, and modern architecture. A Comparison of the
- [GROUP-based Asset Permissions in GLPI 11: GLPI Rights Management Redefined](https://www.neteye-blog.com/blog/2026/03/31/group-based-asset-permissions-in-glpi-11-glpi-rights-management-redefined/) - TL;DR: In GLPI, access permissions for assets have traditionally been tied mainly to entities. That works well in clean structures, but in reality, responsibility, ownership, and organizational hierarchy do not always follow the same lines. With GLPI 11, group-based permissions are extended from Tickets to all asset types, and together with the new multi-select group
- [Automating Icinga 2 Agent Builds for IBM Power (ppc64le)](https://www.neteye-blog.com/blog/2026/03/31/automating-icinga-2-agent-builds-for-ibm-power-ppc64le/) - Not long ago, I received an interesting request from one of our client’s Unix teams: They wanted a URL where the latest version of the Icinga 2 agent is always available. An important requirement was that this version should stay in sync with the current NetEye server version, enabling fully automated installation and updates. I
- [Let's Repopulate the Community of "Pandas 🐼" Who are Happy with How Their Company Handles Documentation](https://www.neteye-blog.com/blog/2024/12/29/lets-repopulate-the-community-of-pandas-who-are-happy-with-how-their-company-handles-documentation/) - This post offers a simple and pragmatic way to manage your company's knowledge base with an SaaS product like Confluence. Why are we always here talking about the documentation problem? The title of this post references the Panda, an endangered animal that has become a symbol of the WWF since its founding in 1961.The panda
- [Be a "Whiteboard Blackbelt" to Unleash Effective Collaboration](https://www.neteye-blog.com/blog/2025/03/21/be-a-whiteboard-blackbelt-to-unleash-effective-collaboration/) - A brief introduction to Whiteboards, a new tool that facilitates a new form of collaboration between people. Why are we still talking about the documentation problem? In my previous post, we discussed the challenging topic of documentation management within a company, an aspect that's often underestimated, and not properly rationalized and engineered. Also in this
- [SNMP and Non-connected Interfaces](https://www.neteye-blog.com/blog/2026/03/30/snmp-and-not-connected-interfaces/) - SNMP monitoring is the standard method for obtaining information and metrics from network devices. Typically, we focus on extracting data from a single interface to monitor its status, traffic, or errors. But in many cases, we’re only interested in getting an overview of the interfaces, or, to avoid overloading our somewhat outdated devices, we limit
- [NetEye 4.47 Release Notes](https://www.neteye-blog.com/blog/2026/04/01/neteye-4-47-release-notes/) - Welcome to version 4.47 of our NetEye v4 Unified Monitoring Platform. As you log in, you’ll be greeted by the Rittner Horn at sunset, overlooking the valleys of South Tyrol as warm evening light settles across the landscape. The rugged silhouettes of the mountains are softened by gentle shades of pink and gold. Considered one
- [Our Forge App for Inventorying IT Assets](https://www.neteye-blog.com/blog/2026/03/31/our-forge-app-for-inventorying-it-assets/) - Today, there are many solutions available for IT asset inventory management, such as GLPI. However, these tools often lead to fragmented data spread across different databases that don't communicate with each other, except through custom-built interfaces. The Challenge The goal is to centralize data in a single place, increasing the value of the information collected
- [Rethinking Authentication and Authorization in a Multi-Component Platform with OIDC](https://www.neteye-blog.com/blog/2026/03/31/rethinking-authentication-and-authorization-in-a-multi-component-platform-with-oidc/) - Modern platforms rarely consist of a single application. Instead, they are ecosystems: monitoring, logging, visualization, ITSM, and a fair amount of glue holding everything together. In environments like NetEye, this translates into components such as Icinga 2 and Icinga Web 2 (along with all of their custom modules), Grafana, Elasticsearch/Kibana, GLPI, and more. Each of
- [Out Now - The New NetEye & EriZone Training Program](https://www.neteye-blog.com/blog/2018/03/13/out-now-the-new-neteye-erizone-training-program/) - Ready to take your IT process skills beyond the traditional? Our new training offerings will help you acquire, maintain and improve your knowledge and skills around our solutions. This year’s training program contains courses for NetEye, EriZone or Alyvix customers and partners, each lasting between 2 and 4 working days. The main focus will be
- [NSClient++ 0.4.1 released!](https://www.neteye-blog.com/blog/2012/12/21/nsclient-0-4-1-released-2/) - With the new version (0.4.1) we are now moving steadily from "just a windows agent" to become versatile tool to help you simplify your monitoring by adding protocol independence platform independence as well as modern monitoring paradigms such as state full scripting and real-time monitoring...
- [NetEye & EriZone User Group: il programma](https://www.neteye-blog.com/blog/2017/09/25/neteye-erizone-user-group-il-programma-2/) - NetEye & EriZone User Group Sfide e opportunità per l'IT Management 4.0 Connectbay, Mantova, Giovedì 19 ottobre 11:00 – 17:00 Vi aspettiamo il 19 ottobre al NetEye & EriZone User Group. L'evento offrirà un'occasione unica a tutti i nostri clienti per scoprire le ultime novità nell'IT System & Service Management, individuare i requisiti necessari per adeguarsi al
- [AS400 Monitoring with the NRPE Protocol](https://www.neteye-blog.com/blog/2016/06/27/as400-monitoring-with-the-nrpe-protocol-2/) - Everyone who is administering an IBM AS400 server has also the responsibility to monitor it. If the used monitoring software is based on a Nagios solution like our NeteEye, the best known monitoring plugin for as400 is the check_as400.
- [Style Consistency thanks to Component Library](https://www.neteye-blog.com/blog/2016/09/08/style-consistency-thanks-to-component-library/) - Improve communication, knowledge distribution and provide consistency in the way the design process is being handled. This is where the Component Library comes in handy.
- [Why does my local network latency increase during working hours?](https://www.neteye-blog.com/blog/2016/09/22/why-does-my-local-network-latency-increase-during-working-hours/) - Sometimes you get a higher network latency during certain periods of the day. It may seem trivial, but maybe it is useful to underline, that this indication can help identifying overloaded network devices.
- [New NetEye Release for 2015!](https://www.neteye-blog.com/blog/2015/03/02/new-neteye-release-for-2015/) - The newly released NetEye version 3.5 represents an important milestone for the development of the IT-System Management solution.
- [Sending OTel Data to Elasticsearch: Tenant Segregation through OAuth](https://www.neteye-blog.com/blog/2026/03/30/sending-otel-data-to-elasticsearch-tenant-segregation-through-oauth/) - Hi everyone! Today I'd like to share with you an investigation we undertook related to ingesting Open Telemetry data in Elasticsearch, while maintaining tenant segregation from start to end. The Scenario Let's imagine we have multiple customers, where in this case "multiple" may be well in the order of hundreds, who would like to send
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/03/30/bug-fixes-for-neteye-4-46-7/) - In the ITOA module we fixed a bug that prevented the Performance Graphs to be shown in the Monitoring host and service page. List of updated packages grafana, grafana-autosetup, grafana-configurator and grafana-neteye-config to version 12.4.1_neteye3.29.2-1
- [Taking Inventory of Cisco Phones in GLPI with curl and glpi-injector](https://www.neteye-blog.com/blog/2026/03/28/inventorying-cisco-phones-in-glpi-with-curl-and-glpi-injector/) - In recent days I came across an interesting case: inventorying a fleet of Cisco phones… without SNMP. The devices only exposed a web UI, so no classic polling was possible. The solution was simple: query the phones’ HTTP pages, extract useful information, and send it to GLPI. The Idea The approach is intentionally minimal: Maintain
- [From Private to Public: Building a Secure GitHub Organization](https://www.neteye-blog.com/blog/2026/03/27/from-private-to-public-building-a-secure-github-organization/) - Creating a GitHub organization is easy. Creating a public one that is actually well-structured, secure, and maintainable over time… not so much. At the beginning, it feels like a simple task: create the org, push some repositories, maybe define a couple of teams, and you’re done. But as soon as things become public, the whole
- [Global Secure Access with Microsoft Entra](https://www.neteye-blog.com/blog/2026/03/25/global-secure-access-with-microsoft-entra/) - This article expands on the topic introduced in my earlier blog post Secure Access to Applications with Azure, which focused on securing access to an on-premises web application using Microsoft Entra Application Proxy. Global Secure Access is Microsoft's unified framework for securing access to private resources, Microsoft 365 services, and internet destinations through identity-aware controls.
- [Preview EriZone 3.6: Follow-up Agent Notifications](https://www.neteye-blog.com/blog/2016/12/22/preview-erizone-3-6-follow-up-agent-notifications/) - In many cases, agents who are working on a certain ticket need to discuss about the actual issue with other colleagues. EriZone 3.6 allows adding private notes to a ticket.
- [How to Integrate NetEye 4 with Jira](https://www.neteye-blog.com/blog/2020/07/17/how-to-integrate-neteye-4-with-jira/) - Jira Module for Icinga Web 2 As many of you are aware, at the end of 2019 Icinga released the first version of a Jira module for Icinga Web 2. This module gives Icinga Web 2 the ability to query Atlassian Jira Service Desk for issues related to Hosts or Services and, of course, to
- [Jira Operations Tips & Tricks for NetEye Users – Part 1](https://www.neteye-blog.com/blog/2026/03/25/jira-operations-tips-tricks-for-neteye-users-part-1/) - Practical lessons learned from real-world alert routing, automation, and integrations
- [How to Collect Cloudwatch AWS Logs in NetEye](https://www.neteye-blog.com/blog/2026/03/23/how-to-collect-cloudwatch-aws-logs-in-neteye/) - Recently we had to monitor an EKS cluster and several other resources using NetEye. AWS already provides solid dashboards out of the box, but log analysis isn't as flexible as in Elasticsearch, and costs can easily grow out of control. Our goals were to: Monitor application logs generated inside the cluster Monitor the cluster itself
- [Writing High Quality Pentesting Reports](https://www.neteye-blog.com/blog/2026/03/23/writing-high-quality-pentesting-reports/) - A pentest is only as valuable as the report that comes out of it. You can find critical vulnerabilities, chain exploits creatively, and demonstrate full infrastructure compromise, but if your report is unclear, overly technical, or poorly structured, its impact will be limited. A strong pentesting report bridges the gap between technical discovery and business
- [Inside Elastic Security Detection Rules: Internal Structure & Upgrade Mechanics](https://www.neteye-blog.com/blog/2026/03/23/inside-elastic-security-detection-rules-internal-structure-upgrade-mechanics/) - A Rule Is More Than a Query In modern detection engineering, a rule is often misunderstood as just a query that triggers alerts. In reality, within Elastic Security, a detection rule is a structured, versioned, and lifecycle-managed object that goes far beyond simple query logic. Understanding this structure is essential for anyone operating in a
- [Thanks EU: LinkedIn Finally Gave Me My CV Data](https://www.neteye-blog.com/blog/2026/03/18/thanks-eu-linkedin-finally-gave-me-my-cv-data/) - TL;DR Before the DMA, getting structured access to your own LinkedIn data for personal automation was effectively impractical The EU forced gatekeepers such as Microsoft and LinkedIn to provide machine-readable, programmatic portability APIs for user data (Microsoft implements DMA compliance measures - EU Policy Blog) LinkedIn's Member Data Portability API gives EU/EEA and Swiss users
- [How to Build Your First Forge App for Jira](https://www.neteye-blog.com/blog/2026/03/24/how-to-build-your-first-forge-app-for-jira/) - In the last few months I've been delving ever deeper into the Atlassian Forge ecosystem, the serverless platform that allows you to develop apps integrated into Jira, Confluence and other Atlassian cloud products without having to deal with infrastructure, authentication or hosting. The goal? Creating my first Forge app from scratch and understanding its complete
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/03/19/bug-fixes-for-neteye-4-46-6/) - We addressed the following issues in the Alyvix module UI: In the General tab of a node, retention policy values only showed two digits, even when the numbers were higher than 99. Tooltips for the different retention settings (Successful, Failed, and Log) were unclear and not very informative. They are now better explained. Translations for
- [Inside Elastic Certifications: My Experience Between Preparation and Exams](https://www.neteye-blog.com/blog/2026/03/16/inside-elastic-certifications-my-experience-between-preparation-and-exams/) - In this article I'd like to share my experience with Elastic certifications. Recently, I had the opportunity to take the Elastic Certified Engineer and Elastic Certified Observability Engineer exams and I'd like to describe my preparation, experience and finally share some useful tips for anyone else who wants to follow the same path. Overview of
- [Bringing OpenTelemetry to Flutter Android for Client-side Observability](https://www.neteye-blog.com/blog/2026/03/16/bringing-opentelemetry-to-flutter-android-for-client-side-observability/) - Because "it works on my machine" is not an observability strategy. How It Started As an observability engineer, my workflow when starting a new project is pretty consistent: find the OpenTelemetry SDK for the language or framework in use, understand its quirks and limitations, and build from there. So when I picked up a Flutter
- [From Static Lists to Threat Intelligence: Better Domain Detection in Elastic](https://www.neteye-blog.com/blog/2026/03/11/from-static-lists-to-threat-intelligence-better-domain-detection-in-elastic/) - A scalable approach to detecting malicious domains using Threat Intelligence and Indicator Match Rules One of the most common techniques used in phishing and initial access campaigns is the creation of domains that closely resemble legitimate ones. Attackers exploit typosquatting, homograph attacks, and brand impersonation to deceive users and steal credentials. For a Security Operations
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/03/13/bug-fixes-for-neteye-4-46-5/) - Error during GLPI inventory task execution We have fixed a bug related to the Asset Management module and in particular in the usage of the GLPI inventory plugin to gather the inventory. List of updated packages To solve the issue mentioned above, the following packages have been updated for NetEye 4.46: glpi-plugin-icingaweb2sso and glpi-plugin-icingaweb2sso-autosetup to
- [Elastic AutoOps in NetEye: Simplifying Elasticsearch Operations with Real-Time Intelligence](https://www.neteye-blog.com/blog/2026/03/10/elastic-autoops-in-neteye-simplifying-elasticsearch-operations-with-real-time-intelligence/) - Introduction Managing Elasticsearch effectively – especially as environments grow in size and complexity – can quickly become a challenging task. Performance tuning, identifying the true root cause behind slowdowns, and optimizing resource allocation often demand specialized expertise and a significant investment in time. In enterprise ecosystems, where observability underpins critical services and reliability expectations are
- [A Future-ready Knowledge Base](https://www.neteye-blog.com/blog/2026/03/05/a-future-ready-knowledge-base/) - Once upon a time, humanity passed down epic stories and religious texts by memory alone. Entire civilizations relied on oral tradition to preserve their most important knowledge. Fast‑forward a few thousand years, and some companies are still doing the same thing with their procedures and information: trusting that Bob from Accounting… would "just remember it."
- [One Elastic Fleet Policy, Multiple Behaviors: Selective Agent Configuration with Agent Providers](https://www.neteye-blog.com/blog/2026/03/06/one-elastic-fleet-policy-multiple-behaviors-selective-agent-configuration-with-agent-providers/) - In many Elastic deployments, the natural approach every time you encounter a server with different needs is to create a new Fleet policy. Each group seems to require its own small set of tweaks or additional integrations. But the more policies you create, the harder it becomes to maintain and scale your configuration. In reality
- [NetEye 4 - Security Advisory (GLPI)](https://www.neteye-blog.com/blog/2026/03/05/neteye-4-security-advisory-glpi-2/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the glpi packages is now available for NetEye 4. Security Fix for NetEye 4.46 10.0.24_neteye1.17.5-1 Summary The vulnerability is about a Stored XSS and an Authenticated SQL Injection. For details on how to apply this update,
- [Elastic Integration: Which New Features Can Be Activated?](https://www.neteye-blog.com/blog/2026/02/27/elastic-integration-which-new-feature-can-be-activated/) - From a Technical Consultant’s Perspective “How can I tell if a new Elastic Integration feature or PR is already included in my NetEye version?” Elastic adds new features quite often. However, these features do not always appear in NetEye right away. That's because each integration requires a specific Kibana version. If NetEye doesn't yet ship
- [Veeam Backup ADFS Integration](https://www.neteye-blog.com/blog/2026/03/03/veeam-backup-adfs-integration/) - Scenario Veeam Backup is widely used as backup software, especially on virtual VMware vSphere infrastructure. Together with the new version 13 of the product, the SAML Single Sign On (SSO) feature was introduced, which can be used to protect administrative access to the Veeam Backup console by delegating the admin authentication to an external Identity
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/03/04/neteye-4-security-advisory-elastic-stack-4/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a Medium security impact. Topic An update for the Kibana package is now available for NetEye 4. Security Fix for NetEye 4.46 9.2.6_neteye3.90.8-1 CVEs CVE-2026-26934CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-26935CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-26936CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H CVE-2026-26937CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H All of the 4 CVEs are Denial of Service vulnerabilities that affect Kibana, within the
- [NetEye 4 - Security Advisory (Lampo)](https://www.neteye-blog.com/blog/2026/03/04/neteye-4-security-advisory-lampo/) - Important: Lampo security update Type/Severity NetEye Product Security has rated this update as having a medium security impact. Topic An update for the lampod packages is now available for NetEye 4. Security Fix for NetEye 4.46 1.1.3-1 Summary The vulnerability is about sensitive information exposure due to improper error handling. For details on how to apply this update,
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/03/02/bug-fixes-for-neteye-4-46-4/) - Error during generation of SLA reports We have fixed a bug that was causing an error during the generation of SLA reports. List of updated packages To solve the issue mentioned above, the following packages have been updated for NetEye 4.46: icingadb-web, icingadb-web-autosetup, icingadb-web-configurator version 1.1.4_neteye1.9.4-1
- [Making Your Own Video Tutorials, Part 20: Recording a Good Task-based Screencast](https://www.neteye-blog.com/blog/2026/02/25/making-your-own-video-tutorials-part-20-recording-a-good-task-based-screencast/) - Welcome to part 20 in our series on creating effective tutorial-style videos on a budget. Today: Screencasts! Let's start off with just our basic assumptions: We want to show people how to navigate around the GUI of a particular piece of software, and what its functionality is by actually interacting with the buttons and text
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/02/19/bug-fixes-for-neteye-4-46-3/) - Fix NagVis navigation using IcingaDB Web URLs When clicking on a host or service from a NagVis map, you were redirected to the legacy Monitoring module. The links have been updated to correctly point to the IcingaDB Web module. List of updated packages To solve the issue mentioned above, the following packages have been updated
- [OpenShift Monitoring in NetEye](https://www.neteye-blog.com/blog/2026/02/16/openshift-monitoring-in-neteye/) - Recently, it's become noticeable that the use of OpenShift environments is spreading more and more, and has now firmly established itself within many companies. This naturally leads to the need to integrate these environments into monitoring in a sensible and purposeful way. Some of my colleagues have already written blog posts in the last few
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/02/11/bug-fixes-for-neteye-4-46-2/) - Fixing Misplaced Plugin Output in Icinga Web Interface When plugin output contained HTML content (like links), it was incorrectly displayed near the service name instead of in the Plugin Output section. The plugin output section now correctly renders all content. List of updated packages To solve the issue mentioned above, the following packages have been
- [SQLX's WHERE-IN queries: The Good, the Bad and the Ugly](https://www.neteye-blog.com/blog/2026/01/10/sqlxs-where-in-queries-the-good-the-bad-and-the-ugly/) - I love SQLX for many reasons, but one in particular is the possibility to validate syntax and return types at compile-time with the query! macros. At least that’s what I used to think... For a recent project I wanted to perform a query to get some role data from from an OAUTH 2.0 custom role
- [Bug Fixes for NetEye 4.46](https://www.neteye-blog.com/blog/2026/02/10/bug-fixes-for-neteye-4-46/) - Icinga Director Now Responsive During Configuration Deployments Previously, users were unable to interact with Icinga Director while configuration deployments were running. Any attempt to access the interface or API would be blocked until the deployment completed, causing unnecessary delays in daily operations. This fix resolves the blocking issue, allowing users to continue working with Director
- [NetEye Conference Nürnberg ](https://www.neteye-blog.com/blog/2026/02/04/neteye-conference-dach-2025/) - On September 18th, we hosted the NetEye Conference DACH 2025 at the Ofenwerk Nuremberg – a key event for NetEye users across the DACH region. The conference centered on the three pillars of modern IT – Observability, Cybersecurity, and Service Management – highlighting how closely these disciplines are intertwined in building resilient, data-driven IT operations.
- ["Gonna keep on MONITORING 'til MY TEAM reaches the highest ground" - A Jira Dashboard to monitor Support teams' performance and service quality level](https://www.neteye-blog.com/blog/2022/04/21/gonna-keep-on-monitoring-til-my-team-reaches-the-highest-ground-jira-dashboard-to-monitor-support-teams-performances-and-service-quality-level/) - This post aims to drive you in creating a Jira Dashboard, within an existing Jira Service Management Cloud, designed for both Support teams and managers to monitor the number of issues/tickets trends within a given Support project. After following these simple instructions, in just 10 steps you'll have: 📌 A Dashboard ready to be used
- [From RAMP to RehubCom?](https://www.neteye-blog.com/blog/2026/02/04/from-ramp-to-rehubcom/) - There's been a lot of talk in recent days about the seizure of the underground forum RAMP. There's little to add to this issue, which has already been extensively written about. An excellent summary is available in this BleepingComputer article. What I'd like to highlight in this article, however, is how the main players in
- [NetEye 4 - Security Advisory (GLPI)](https://www.neteye-blog.com/blog/2026/02/05/neteye-4-security-advisory-glpi/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the GLPI packages is now available for NetEye 4. Security Fix for NetEye 4.46 10.0.23_neteye1.17.5-1 CVEs CVE-2026-22044CVSS:Reserved CVE-2026-23624CVSS:Reserved The CVEs include an authenticated SQL injection and a session stealing on externally authenticated user change. For a
- [NetEye 4.46 Release Notes](https://www.neteye-blog.com/blog/2026/02/02/neteye-4-46-release-notes/) - Welcome to version 4.46 of our NetEye v4 Unified Monitoring Platform. As you log in, you’ll be greeted by the iconic bell tower of Curon rising from the frozen surface of Lake Resia (Reschensee). The tower stands alone amid the wide expanse of winter ice, where fine cracks and muted textures hint at the water
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2026/01/30/bug-fixes-for-neteye-4-45-10/) - Fix unnecessary action retries in Tornado's Smart Monitoring component We fixed a bug affecting Tornado in NetEye 4.45 for a specific edge case in Tornado's Smart Monitoring component that was causing unnecessary system overhead and log bloat. Specifically, when Tornado attempted to perform a "check result" in Icinga2 for a host that had been disabled
- [PHP - Migrating from Icinga 2's Monitoring Database to IcingaDB](https://www.neteye-blog.com/blog/2026/01/19/php-migrating-from-icinga-2s-monitoring-to-icingad/) - NetEye SLM migration guide explaining how to replace legacy Icinga MonitoringBackend PHP queries with clear, modern IcingaDB model-based queries.
- [Architecting a Portable Red Team Engine](https://www.neteye-blog.com/blog/2026/01/27/architecting-a-portable-red-team-engine/) - This is the first article in the RTO series The Problem Red team and penetration testing activities are full of repetition: the network scans, reconnaissance, OSINT collection, and routine validation tasks are all necessary, but they're also time-consuming and error-prone when executed manually. Over time, most teams end up with a zoo of scripts, half-maintained
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2026/01/23/bug-fixes-for-neteye-4-45-9/) - Fix contract list option wrongly disabled in SLM reports We fixed a bug affecting the SLM reporting in NetEye 4.45. The issue occurred during the modification of a report, when one of the contracts in the list could not be selected because the corresponding report would have been empty. In that case, the selection of
- [Ransomware Double Extortion Attack: 2025 Overview](https://www.neteye-blog.com/blog/2026/01/02/ransomware-double-extortion-attack-2025-overview/) - As 2025 comes to a close, we can make some observations regarding the evolution of the double-extortion ransomware attack landscape. The data shown is the result of the enrichment performed within SATAYO starting from the data made available by the Ransomfeed project. The URLs of the Data Leak Sites (DLS) of the various ransomware gangs
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2026/01/20/bug-fixes-for-neteye-4-45-8/) - Bug Fix We updated the version of GLPI in order to fix some relevant vulnerabilities. List of updated packages The following packages have been updated for NetEye 4.45: glpi, glpi-autosetup, glpi-configurator, glpi-neteye-config to version 10.0.22_neteye1.17.5-1.
- [Notes on Vue 2 to Vue 3 Migration](https://www.neteye-blog.com/blog/2026/01/16/notes-on-vue-2-to-vue-3-migration/) - If you've been in the Vue ecosystem for a while, you know that the jump from Vue 2 to Vue 3 is more than just a version bump – it's a significant architectural evolution. It promises better performance, a more powerful Composition API, and a first-class TypeScript experience. Getting there from an old Vue 2
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/01/16/neteye-4-security-advisory-elastic-stack-3/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the elastic-stack packages (elasticsearch, kibana, filebeat, logstash and elastic-agent) is now available for NetEye 4. Security Fix for NetEye 4.45 9.2.4_neteye3.88.10-1 CVEs CVE-2025-66566CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N CVE-2026-0532CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N CVE-2026-0543CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-0531CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-0530CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2026-0529CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2026-0528CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H The CVEs include an Information Disclosure
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2026/01/17/bug-fixes-for-neteye-4-45-7/) - Bug Fix in Tornado Module We solved an issue in Tornado's rule configuration where the action_name field in director actions was being cleared after saving and deploying. When users created a rule with a director action and filled in both action_name and action_payload, the action_name value would disappear upon returning to the rule configuration. This
- [Hunting Silent Kerberoasting: Detecting RC4 TGS Floods with Elastic](https://www.neteye-blog.com/blog/2025/12/15/hunting-silent-kerberoasting-detecting-rc4-tgs-floods-with-elastic/) - Introduction Kerberoasting remains one of the most popular techniques for attackers attempting to escalate privileges inside a Windows domain. By requesting service tickets (TGS - Ticket Granting Service) encrypted with weak algorithms, an attacker can extract hashes and crack them offline to recover service account passwords. It should be mentioned that a Kerberos ticket request
- [Azure DNS Private Resolver](https://www.neteye-blog.com/blog/2025/12/05/azure-dns-private-resolver/) - Azure DNS Private Resolver is a managed service that enables you to resolve DNS queries for private DNS zones across Azure and on-premises networks, simplifying hybrid network architectures and removing the need for custom DNS servers or DNS forwarders hosted on virtual machines. This service reduces operational complexity and provides scalable, secure name resolution for
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2026/01/05/bug-fixes-for-neteye-4-45-6/) - Elastic Enterprise license renewal Previously, the Elastic Enterprise license was scheduled to expire on February 28, 2026.With this update, the Elastic Enterprise license has been renewed and will now expire on December 31, 2026. In the case the health-check light/01004_elastic_license_check.sh is preventing you from updating your NetEye Installation you can run the following command: neteye update --skip-tags check_health.
- [Purple Teaming is a MUST, not a PLUS](https://www.neteye-blog.com/blog/2026/01/11/purple-teaming-is-a-must-not-a-plus/) - In modern security programs the silos between offensive and defensive teams is no longer sustainable: attackers iterate faster, tooling evolves daily, and detection gaps are exploited in minutes, not months. In this environment purple teaming is not an optional maturity enhancement, but it becomes a foundational requirement for organizations that take risk management seriously. Purple
- [Exposure Assessment: How to Identify Infrastructure Vulnerabilities](https://www.neteye-blog.com/blog/2023/09/26/exposure-assessment-how-to-identify-infrastructure-vulnerabilities/) - In our previous post about Exposure Assessment, we described how we outline a target's infrastructure using SATAYO, our Cyber Threat Intelligence (CTI) platform. This means that we collected the identifiers of all the target's machines, i.e., their host names and IP addresses. Now it's time to understand which machines could allow an attacker to gain
- [Exposure Assessment: The Best Way to Easily Discover a Target's Infrastructure](https://www.neteye-blog.com/blog/2023/06/09/exposure-assessment-the-best-way-to-easily-discover-targets-infrastructure/) - Overview of discovering hostnames and IP addresses using OSINT techniques.
- [Shortening the Development Loop on OpenShift with Telepresence](https://www.neteye-blog.com/blog/2026/01/01/shortening-the-development-loop-on-openshift-with-telepresence/) - The year has just come to an end, and after a long stretch of work I could really use some rest. But before closing everything out completely, there's one last thing I wan to share, and it needs a bit of context about the project. We’re currently building a distributed application consisting of several components
- [Jira Service Management: The Great Architect’s Dilemma, Single Project vs Multiple Projects](https://www.neteye-blog.com/blog/2025/12/30/jira-service-management-the-great-architects-dilemma-single-project-vs-multiple-projects/) - When setting up Jira Service Management (JSM), one of the most fundamental questions administrators face is, “Should we consolidate everything into one giant project, or split our teams into separate projects?”, this choice impacts agent productivity, reporting clarity, portal experience, permission management, SLA differentiation, and workflow control. There is no perfect universal configuration, the right
- [Optimizing Rolling Restarts in Elasticsearch Clusters](https://www.neteye-blog.com/blog/2025/12/30/optimizing-elasticsearch-cluster-rolling-restart/) - Introduction For on-premise Elasticsearch installations, performing a rolling restart across a cluster can be a time-consuming task, especially when dealing with large clusters. Rolling restarts are typically required when changing node configurations or upgrading the cluster to a new version. Elastic provides an official procedure to ensure service continuity during this process. However, after analyzing
- [Planning, Building, and Testing a Kubernetes Operator](https://www.neteye-blog.com/blog/2025/12/29/planning-building-and-testing-a-kubernetes-operator/) - Kubernetes Operators are one of those ideas that feel magical when they work: you declare an intent/goal in YAML, and software continuously makes the cluster match it – handling upgrades, failures, drift, and lifecycle cleanup: like a purpose-built SRE on autopilot. Although in theory it looks like sci-fi fiction, in practice Operators are just code
- [Stockroom Survival Guide: Manage Consumables in GLPI](https://www.neteye-blog.com/blog/2025/12/29/stockroom-survival-guide-manage-consumables-in-glpi/) - Every IT department has it: the mythical stockroom with all those small parts, cables, plugs, adapters… and mice everywhere (each one with a long cable 😉). Once perfectly organized, it’s now the place where “things we might need someday” go to disappear – and no one remembers the rules for handing something out to the
- [Dynamics 365 Finance & Operations (On-Premises) Certificate Rotation](https://www.neteye-blog.com/blog/2025/01/24/dynamics-365-finance-operations-on-premises-certificate-rotation/) - Introduction In this post I'll describe how to update the certificate used by the Dynamics 365 Finance & Operations on-premises system (which I'll call D365). This activity is called "certificate rotation" and it was necessary to do on our internal system in December 2024, following the imminent expiration of the company's wildcard certificate (*.mycompanydomain.com). It's
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2026/01/02/neteye-4-security-advisory-elastic-stack-2/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the elastic-stack packages (elasticsearch, kibana, filebeat, logstash and elastic-agent) is now available for NetEye 4. Security Fix for NetEye 4.45 9.2.3_neteye3.88.8-1 CVEs CVE-2025-68381 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2025-68382CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2025-68383CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2025-68384CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2025-68385CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N CVE-2025-68386CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N CVE-2025-68387CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N CVE-2025-68388CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVE-2025-68389CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2025-68390CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H The CVEs affect
- [What Tests Can Tell You About Your Codebase](https://www.neteye-blog.com/blog/2025/12/31/what-tests-can-tell-you-about-your-codebase/) - Even they usually meant as a "safety net", tests can tell you a lot about the structure, health, and long-term maintainability of your codebase...
- [Automating Notifications in NetEye](https://www.neteye-blog.com/blog/2025/12/28/notifications-automation-on-neteye/) - # How to automate the notifications creation on NetEye with Icinga2 Director alerting groups or users
- [The Model Context Protocol (MCP): Hands-on with NetEye!](https://www.neteye-blog.com/blog/2025/12/26/the-model-context-protocol-mcp-hands-on-with-neteye/) - Hi! Today I'd like to discuss a bit a quite hot topic in this world newly full of LLMs, namely MCP Servers! We'll first see what MCP is and why it was created, moving then to a short hands-on with NetEye and in particular, the Elastic Stack feature module. Wait, what? MCP? What are we
- [Root Cause Analysis with Elastic ML and Alyvix](https://www.neteye-blog.com/blog/2025/12/24/root-cause-analysis-with-elastic-ml-and-alyvix/) - When performance degradation occurs within a complex system, understanding the root cause can be extremely challenging. If the issue happens sporadically, this difficulty increases even more. This is because modern systems involve numerous components that interact in complex ways. For example, if your application’s Web UI becomes slow, the underlying cause could be anywhere in
- [Say Goodbye to Blank Jira Fields: Pre-fill Your Way to Efficiency!](https://www.neteye-blog.com/blog/2025/12/23/say-goodbye-to-blank-jira-field-pre-fill-your-way-to-efficiency/) - Are you and your team tired of staring at empty fields every time you create a new Jira work item? Do you wish you had a more structured and faster way to collect essential information right from the start? What if you could guide users with predefined text, including tables, ensuring that crucial details are
- [Meet The CDC! Our Innovative Concept For A Modern SOC](https://www.neteye-blog.com/blog/2025/12/22/meet-the-cdc-our-innovative-concept-for-a-modern-soc/) - Introduction If you work in the Cyber Security field, you probably know how a traditional Security Operations Center (SOC) operates. It's often characterized by a demanding workload, extended night shifts, and high personnel turnover. These factors can lead to alert fatigue among analysts and lower morale. The stressful nature of such environments can also result
- [Infection Chain – Behind the Scenes](https://www.neteye-blog.com/blog/2025/12/20/infection-chain-behind-the-scene/) - The year is almost over and there's one thing that always marks this period: the end of one of our biggest and most hyped events. You probably already know what I'm talking about… but just in case you don't (or even worse, have no idea what the most awaited event of the year is) let
- [Infection Chain – Feedback and Improvement](https://www.neteye-blog.com/blog/2025/12/21/infection-chain-feedback-and-improvment/) - This is the second part of my series about a challenge I developed for the WPCTF. In the first article (Infection Chain - Behind the Scenes), I talked about my experience participating in the WPCTF from a different perspective: not as a player, but as a challenge creator. I introduced the idea behind my challenge
- [API Contracts Don’t Protect Vue 3 Frontends... Integration Tests Do](https://www.neteye-blog.com/blog/2025/12/18/api-contracts-dont-protect-vue-3-frontends-integration-tests-do/) - In a previous article, we looked at Vue 3 reactivity and how something elegant and powerful can occasionally work against us. This time, we move slightly higher in the stack and focus on a different illusion, one that is deeply rooted in modern frontend and backend collaboration. The idea that an API contract that passes
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2025/12/23/bug-fixes-for-neteye-4-45-5/) - Fix upgrade 4.45 migration error We solved an issue that affected the upgrade to NetEye 4.45. The issue occurred during the migration of the monitoring role permissions to Icinga DB, due to the order in which packages were updated. List of updated packages To solve the issues mentioned above, the following packages have been updated
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2025/12/23/bug-fixes-for-neteye-4-45-4/) - Fix NetEye web UI exception We solved an issue that affected the NetEye web UI, when the SLM feature module is not installed, causing an exception to be thrown. List of updated packages To solve the issues mentioned above, the following packages have been updated for NetEye 4.45: icingaweb2-module-neteye, icingaweb2-module-neteye-autosetup, icingaweb2-module-neteye-configurator to version 1.176.3-1 icingaweb2-module-slm,
- [Jira Service Management Customer Detail Fields: A Practical Use Case](https://www.neteye-blog.com/blog/2025/12/19/jira-service-management-customer-detail-fields-a-practical-use-case/) - In this post I want to share a real use case I recently worked on with a client using Jira Service Management. The requirement was simple to explain, but not that trivial to implement properly: they wanted to report on tickets by DepartmentNumber for their internal users (the same department structure already defined in Active
- [Optimizing Galera: Safe Backups via Asynchronous Replication](https://www.neteye-blog.com/blog/2025/12/19/optimizing-galera-safe-backups-via-asynchronous-replication/) - If a database goes down unexpectedly, it causes a domino effect on the systems that depend on it: the web shop won’t load, CRM freezes, and business processes get disrupted. NetEye is no different – if MariaDB fails, we lose access to WebUI, logins, Grafana dashboards, Assets management, and all other related functions. That’s why
- [A Complete, Mobile, and Quick-Setup Video Recording Platform](https://www.neteye-blog.com/blog/2025/12/19/a-fast-complete-mobile-recording-platform/) - If you make a lot of videos, and you don't have a single dedicated space where you can keep all of your gear permanently set up, connected and oriented properly, you most likely spend a lot of time setting up and tearing down before and after a shoot. Of course, "a lot of time" is
- [Automating Report Sharing with Microsoft Graph API](https://www.neteye-blog.com/blog/2025/12/19/automating-report-sharing-with-microsoft-graph-api/) - When periodic reports need to be shared in dedicated spaces, managing documents manually can quickly become a significant burden. Every reporting cycle involves generating and uploading files to multiple SharePoint folders, a time-consuming process that's also prone to human error. The main challenge lies in handling SharePoint tasks manually, which affects efficiency, consistency, and makes
- [Enabling Self-Service InfluxDB Metrics Migration](https://www.neteye-blog.com/blog/2025/12/17/enabling-self-service-influxdb-metrics-migration/) - Moving time-series data between two NetEye systems is a common, but often underestimated, challenge. Whether driven by infrastructure migrations, platform refactoring, customer onboarding/offboarding, or environment consolidation, the need to relocate InfluxDB metrics reliably and selectively comes up again and again. We created this repository to address that need from a high-level, operational perspective: enabling self-service
- [Atlassian: Feature Focus](https://www.neteye-blog.com/blog/2025/12/18/atlassian-feature-focus/) - December 2025: What's New from Atlassian As we wrap up 2025, the Atlassian ecosystem is undergoing a massive transformation! 🚀 From groundbreaking new features to updates designed to streamline every workflow, the latest news is officially here, promising to empower teams with even greater agility and collaborative power. If you haven't had the time to
- [The New .slnx Format for dotnet Solutions](https://www.neteye-blog.com/blog/2025/12/19/the-new-slnx-format-for-dotnet-solution/) - .sln Is Dead, Long Live .slnx: Why This Tiny Change Matters for Your Pipelines Some months ago here I used file-based apps and dotnet run app.cs as an excuse to question when C# might realistically replace PowerShell in day-to-day operations. This time the trigger is less flashy, but just as impactful: the new .slnx solution
- [From Patch to Package: How a Small Fix Becomes a Trusted RPM](https://www.neteye-blog.com/blog/2025/12/18/from-patch-to-package-how-a-small-fix-becomes-a-trusted-rpm/) - At first glance, rebuilding an RPM may sound like a purely mechanical task: take a patch, rebuild the package, ship it. In reality, that small fix goes through a much longer journey that touches reliability, security, trust, and long-term maintainability. In this article, we’ll walk through what really happens when a tiny upstream patch needs
- [Bug Fixes for NetEye 4.44 and 4.45](https://www.neteye-blog.com/blog/2025/12/17/bug-fixes-for-neteye-4-44-and-4-45/) - Fix for memory corruption in icinga2 We solved an issue that affected icinga2. If the cleanup of the http sessions in the execute-script endpoint ran during a request, the re-balance in the internal datastructure would corrupt the requests memory, resulting in erroneous behaviors or crashes of icinga2. List of updated packages To solve the issues
- [Strange Query Results in Kibana: Understanding the Behavior of event.original and Similar Fields](https://www.neteye-blog.com/blog/2025/12/15/strange-query-results-in-kibana-understanding-the-behavior-of-event-original-and-similar-fields/) - While working with Kibana, we recently encountered a puzzling situation: queries involving the field event.original returned unexpected results. Let’s break down what happened, why it occurs, and how to identify other fields with similar behavior. The observed "strange behavior" no filter on event.original: there are some documents with values in event.original and some without values
- [Jira Forms vs JSM Forms: The Magic of Forms](https://www.neteye-blog.com/blog/2025/12/15/jira-forms-vs-jsm-forms-the-magic-of-forms/) - When people talk about “Forms” in the Atlassian ecosystem, things can get confusing fast because Jira offers two types of forms, and though they look similar, they work very differently. Here’s the real difference, explained clearly. JSM Forms: The Magic Portal for Your Users JSM Forms are forms that appear on the Jira Service Management
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2025/12/16/bug-fixes-for-neteye-4-45-3/) - Fix El Proxy Kibana plugin activity We solved an issue that affected the El Proxy Kibana plugin which, in case many Fleet agent policies were associated with an integration, caused a large number of index template updates, possibly resulting in a temporary cluster slowdown. List of updated packages To solve the issues mentioned above, the
- [Monitoring Your NetApp S3 Object Storage](https://www.neteye-blog.com/blog/2025/12/15/monitoring-your-netapp-s3-object-storage/) - Introduction to NetApp and S3 NetApp offers a unified data storage system. NetApp's ONTAP operating system supports a combination of file, block, and object protocols. We can use common storage (disk array), such as NetApp AFF or FAS, and operate it as file, object, and block storage. On an existing ONTAP cluster, we can enable
- [Boosting Atlassian Integrations with the atlassian-python-api Library](https://www.neteye-blog.com/blog/2025/12/11/boosting-atlassian-integrations-with-the-atlassian-python-api-library/) - As Atlassian experts, our work doesn’t stop at configuring environments or tailoring Jira, Confluence, and Bitbucket to match a customer’s processes. In many projects, we go a step further: we develop custom integrations that automate workflows, bridge systems, or provide unique capabilities that add real value to a customer’s day-to-day business. These integrations are typically
- [A K3s Cluster Based on Raspberry Pi's – The Hardware Adventure](https://www.neteye-blog.com/blog/2025/12/17/a-k3s-cluster-based-on-raspberry-pi-the-hardware-adventure/) - When I got back from my last trip to Japan, I quickly bumped into a small but annoying problem: I had finally reached my free storage limit on Google Photos. Instead of just buying more space for a few euros a year, I saw it as the perfect excuse to try something I've been considering
- [Running the Icinga Agent as SYSTEM? No Thanks.](https://www.neteye-blog.com/blog/2025/12/01/running-the-icinga-agent-as-system-no-thanks/) - A safer way to run privileged Windows checks with SystemRunner If you’ve been monitoring Windows for a while, you’ve probably seen this pattern: some checks must run as LocalSystem (S-1-5-18), and the “quick fix” is to run the Icinga Agent itself as SYSTEM. It works. It’s also a really bad idea. Why? You throw the
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2025/12/09/bug-fixes-for-neteye-4-45-2/) - Fix support for Alyvix Nodes with older versions We solved an issue that could cause Test Cases to be not shown in the Alyvix UI if the Alyvix Nodes supported only API version 3 (i.e. Alyvix Service version
- [Introducing a New Monitoring Interface: A Fresh, Flexible Experience](https://www.neteye-blog.com/blog/2025/12/03/introducing-new-monitoring-interface-a-fresh-flexible-experience/) - With the release of NetEye 4.45, we’re excited to present a fresh and improved monitoring experience through the integration of the IcingaDB Web interface. This update brings a modern, faster, and more intuitive way to explore and interact with your monitoring data. A Change That Brings New Opportunities We know that changes to familiar tools
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/12/05/bug-fixes-for-neteye-4-43-8/) - Passive Checks Stuck in Pending During Director Deployments A race condition during Director deployments caused some passive checks to remain in a pending state instead of updating properly. This behavior has now been corrected. With the fix in place, passive checks will transition to the correct state without requiring manual intervention. List of updated packages
- [Bug Fixes for NetEye 4.44](https://www.neteye-blog.com/blog/2025/12/05/bug-fixes-for-neteye-4-44/) - Passive Checks Stuck in Pending During Director Deployments A race condition during Director deployments caused some passive checks to remain in a pending state instead of updating properly. This behavior has now been corrected. With the fix in place, passive checks will transition to the correct state without requiring manual intervention. List of updated packages
- [Bug Fixes for NetEye 4.45](https://www.neteye-blog.com/blog/2025/12/05/bug-fixes-for-neteye-4-45/) - Fix for Broken Links in the Icinga Web 2 Business Process Module We have resolved an issue that caused broken links within the Business Process module. In certain cases, links pointing to monitoring objects were generated incorrectly, resulting in users being unable to navigate to the relevant monitoring details. This has now been fixed, and
- [Microsoft LAPS on Windows Server 2016: From Introduction to Installation](https://www.neteye-blog.com/blog/2025/12/04/microsoft-laps-on-windows-server-2016-from-introduction-to-installation/) - Preface Cybersecurity is one of the biggest challenges for IT systems engineers. In many companies, local administrator accounts on PCs share the same password during installation.Imagine a real-world scenario: malware enters the network, steals the local administrator password, and uses it to spread to dozens of machines. Within hours, every last bit of infrastructure is
- [Single Sign-On for Power BI Report Server](https://www.neteye-blog.com/blog/2025/12/03/single-sign-on-for-power-bi-report-server/) - Scenario Power BI Report Server is widely used in company environments, where typically several Windows servers with different roles are deployed in an OnPremise Active Directory domain. In this blog, I'll describe how to configure user single sign-on access to a Power BI Report Server: the underlying protocol for authentication will be Kerberos and its
- [Who Does What? A Useful Guide to User Roles](https://www.neteye-blog.com/blog/2025/09/29/who-does-what-a-useful-guide-to-user-roles/) - If you’ve ever opened Jira or Confluence and thought, “Wait, what’s my role here?”, don’t worry, you’re not alone! In the Atlassian world, there are several roles, each with their own powers (and responsibilities). Understanding them can make the difference between a well-organized project and... chaos worthy of a sci-fi movie. Let’s go through them
- [Confused by Atlassian Teams, Groups, and Managed Teams? Here’s the Difference](https://www.neteye-blog.com/blog/2025/06/26/confused-by-atlassian-teams-groups-and-managed-teams-heres-the-difference/) - If your company uses Atlassian tools like Jira or Confluence, you've likely encountered the terms Teams and Groups. At first glance, Teams and Groups might seem like the same thing – just different ways to organize people. But take a closer look, and you'll quickly realize they serve very different purposes. Understanding how Teams and
- [See What Outsiders See: The External Attack Surface Management Report](https://www.neteye-blog.com/blog/2025/11/27/see-what-outsiders-see-the-external-attack-surface-management-report/) - Organizations often struggle to understand how they truly appear from the outside. Security teams work hard to protect internal systems, yet the real exposure visible to potential attackers often remains unclear. That’s why we created the External Attack Surface Management (EASM) report. By delivering this report we want to provide a clear overview of the
- [Deploying a Podman Container for NetEye Plugin Execution](https://www.neteye-blog.com/blog/2025/11/27/deploying-a-podman-container-for-neteye-plugin-execution/) - This document describes the steps required to build, configure, and operate a Podman container based on php:8.2-cli, with the SNMP extension enabled, intended for executing monitoring plugins within a NetEye/Icinga environment. Pulling the base image podman pull docker.io/php:8.2-cli Containerfile for the custom image build Create a Containerfile with the following contents: FROM docker.io/php:8.2-cliRUN apt-get update
- [You've Got a New Message! Oh No... It's Malware!](https://www.neteye-blog.com/blog/2025/11/26/youve-got-a-new-message-oh-no-its-a-malware/) - On October 1, 2025, Würth Group employees were targeted by a WhatsApp-based cyberattack. A few users fell for it and some devices got infected. The attack was promptly detected by our Cyber Defense Center, and was stopped before it could spread further. Investigating the threat more deeply, we discovered it was part of a wider
- [Monitoring Access Points behind a Fortinet Firewall](https://www.neteye-blog.com/blog/2025/12/01/monitoring-access-point-by-firewall-fortinet/) - A customer recently asked me to monitor their access points. Currently, they had no monitoring system for their 100+ access points other than a firewall view showing the status of individual access points. The firewall in question was a Fortigate 660e. I checked, and we already have an NEP that performs monitoring for Fortinet, which
- [Secure Access to Applications with Azure](https://www.neteye-blog.com/blog/2025/09/29/secure-access-to-applications-with-azure/) - One overarching goal in the IT industry is to enable authorized users to securely access company resources. The implementation that fulfills this general requirement will depend on several factors, some of which will become clear as the topic unfolds. This article gives a logical and historical overview of what Secure Access is, the use cases
- [NetEye 4.45 Release Notes](https://www.neteye-blog.com/blog/2025/12/01/neteye-4-45-release-notes/) - Welcome to version 4.45 of our NetEye v4 Unified Monitoring Platform. As you log in, you’ll be welcomed by the serene winter landscape of St. Magdalena/Santa Maddalena in Villnösser Tal/Val di Funes. The small village rests quietly beneath the dramatic Geisler peaks, blanketed in fresh snow that softens every contour. Morning light brushes the slopes,
- [Project Managers Are rAIsing the Bar: Redefining the Rules of the AI Game](https://www.neteye-blog.com/blog/2025/10/01/project-managers-are-raising-the-bar/) - Insights into how project managers perceive AI reshaping the project management. At the Threshold of a New Project Management Era Over a decade ago, when I first read about how AI could reshape jobs, my main question was how it would affect the role I held then: Project Manager. Years later, after experimenting with the
- [From Noisy Detections to Precision: Moving from KQL to ESQL in Elastic Security](https://www.neteye-blog.com/blog/2025/10/03/from-noisy-detections-to-precision-moving-from-kql-to-esql-in-elastic-security/) - Introduction In modern SOC environments, detection rules are the cornerstone of identifying malicious activity. However, the effectiveness of a rule depends not only on what it looks for but also on how precisely it defines suspicious behavior. Many analysts have experienced the pain of rules that are “noisy” – generating countless false positives (FPs) that
- [Vulnerability Trends & Metrics: Monthly Company Report](https://www.neteye-blog.com/blog/2025/10/06/vulnerability-trends-metrics-monthly-company-report/) - Effective Vulnerability Management doesn't end with detection, it ends with action. And to take the right action, you need clear, accurate, and timely reports. In today’s fast-moving threat landscape, reporting is not just a formality, it’s a critical bridge between scan data and strategic security decisions. This article explores the role of reporting within the
- [Massive Clean-up of the Icinga custom_var (Services)](https://www.neteye-blog.com/blog/2025/10/10/massive-clean-up-of-the-icinga-custom_var-services/) - During one of my last sessions with a customer I had to deal with a very particular use case, where I couldn't use the solution presented in my previous blog post (https://www.neteye-blog.com/2025/08/massive-update-of-the-icinga-custom_var-host-services/). In this new scenario, the customer wanted to clean up a custom_var linked to a service, whose value, inherited from the host, had
- [Elastic Defend: Experiences](https://www.neteye-blog.com/blog/2025/10/13/elastic-defend-experiences/) - Around this time last year, I wrote a blog post about improving cybersecurity with Elastic Defend. Now, one year later, we've gained a lot of practical experience with it, which I'd like to share. Elastic Defend is an EDR (Endpoint Detection and Response). Unlike a traditional antivirus solution that relies on signature patterns that need
- [Control the Update Status of Your NagVis Maps](https://www.neteye-blog.com/blog/2025/10/16/control-the-update-status-of-your-nagvis-maps/) - Suppose you're using lots of maps to make the navigation of your IT infrastructure more user friendly for your (management) user who's not at all technically minded. That person wants to see the IT status of their systems in graphical form, but there's a problem in that the IT assets change over time, and it
- [From Checklist to Mindset: Why Compliance ≠ Security](https://www.neteye-blog.com/blog/2025/10/28/from-checklist-to-mindset-why-compliance-≠-security/) - When organizations think about cybersecurity, the conversation often starts with compliance. ISO 27001, PCI-DSS, HIPAA, GDPR, NIS2… frameworks and regulations designed to protect sensitive data and establish minimum standards for risk management. Achieving compliance is often seen as the ultimate milestone: once the certificate is obtained or the audit is passed, the company is considered
- [Grafana – Node Graph and Icinga](https://www.neteye-blog.com/blog/2025/10/28/grafana-node-graph-and-icinga/) - Among the several plugins that Grafana provides is Node Graph, a useful plugin for visualizing elements and relationships between them. This plugin, as described in the article: https://grafana.com/docs/grafana/latest/panels-visualizations/visualizations/node-graph/ , can be used to represent: Solution topologies Networks Infrastructure Organizational charts Critical path diagrams ... To verify its usefulness within NetEye, we adapt it to the
- [Reconstructing Protected or Hidden Custom Variables in Icinga DB Web](https://www.neteye-blog.com/blog/2025/11/04/reconstructing-protected-or-hidden-custom-variables-in-icinga-db-web/) - Recently Icinga DB Web had a new security release, fixing a vulnerability where protected or hidden custom variables could be inferred by any user with object visibility by abusing comparative filters on those hidden variables.
- [SANS 504 - A New Experience in London](https://www.neteye-blog.com/blog/2025/11/17/sans-504-a-new-experience-in-london/) - My SANS Course in London – April 2025 Back in April, I had the opportunity to attend a SANS course in London. More precisely, SANS 504: Hacker Tools, Techniques, and Incident Handling. The course ran from April 7th to April 12th, and those six days were intense, exciting, and surprisingly fun in ways I didn’t
- [How to Fix Transformation Problems After Upgrading to Elasticsearch 9.0](https://www.neteye-blog.com/blog/2025/11/24/how-to-fix-transformation-problems-after-upgrading-to-elasticsearch-9-0/) - With the upgrade to NetEye 4.44, we've added a lot of new features (https://www.neteye-blog.com/2025/10/neteye-4-44-release-notes/) and, from my point of view, one of the most relevant is the introduction of Elastic Stack 9. This Elasticsearch major release (https://www.elastic.co/guide/en/elastic-stack/9.0/elastic-stack-release-notes.html) includes some new functionalities such as: ESQL Lookup Joins , LogsDB Index Mode Optimizations, etc. During various migrations
- [Understanding the Huffman Table Optimization](https://www.neteye-blog.com/blog/2025/11/25/understanding-the-huffman-table-optimization/) - A while ago I was studying the webp image format by Google out of curiosity. I had written a .png parser in the past and was interested in seeing how the lossless VP8L encoding in particular was working in that library. While I was using a external Rust library to decode the actual image data
- [Real User Experience Monitoring: How to handle a load balancer](https://www.neteye-blog.com/blog/2012/04/22/real-user-experience-2/) - He a simple hint on how to configure the load balancer and avoid to lose level of details...
- [Highlights from the NetEye Conference 2025: When Intelligent Operations Become Reality ](https://www.neteye-blog.com/blog/2025/11/12/neteye_conference_2025/) - The NetEye Conference 2025 in Verona offered a full day of deep-dive sessions, live use cases, and peer-to-peer learning – all centered around one guiding theme: Intelligent Operations in Action. Our community explored how observability, cybersecurity, and service management converge to create smarter, more resilient IT ecosystems. Keynotes by Sebastiano Barisoni and Matteo Meucci set
- [Monitoraggio hardware con sistemi Supermicro](https://www.neteye-blog.com/blog/2009/05/13/monitoraggio-hardware-con-sistemi-supermicro/) - Tutorial sul monitoraggio hardware Supermicro
- [Do you want to prevent cyber-attacks? NetEye and Kibana can help.](https://www.neteye-blog.com/blog/2017/09/19/do-you-want-to-prevent-cyber-attacks-kibana-can-help-2/) - IT security is one of the highest priorities for every CIO. Cyber-attacks are now a reality that we must deal with on a daily basis. More and more organizations have been the victims of so-called cybercrimes that are the cause of financial losses, operational problems and consequences to the company’s reputation. That is why trying
- [From Software Inventory to Vulnerabilities!](https://www.neteye-blog.com/blog/2018/01/29/from-software-inventory-to-vulnerabilities/) - Now that your company has invested time and resources in gathering information about your entire installed base of software and equipment, how can we analyze and measure its level of security protection? Can we identify the vulnerabilities in your company’s software? Can we create a scoring function that measures security and how it changes over
- [What’s Happening Right Now in My Active Directory?](https://www.neteye-blog.com/blog/2021/02/26/whats-happening-right-now-in-my-active-directory/) - We recently integrated two dashboards into NetEye SIEM to check what is happening within Active Directory, a component that is present in the vast majority of our customer environments. These two dashboards start from the collection of security events that are gathered across the various Windows servers that make up the infrastructure, and are then
- [GDPR and AS400: Collecting Administrator Logs](https://www.neteye-blog.com/blog/2021/08/12/gdpr-and-as400-collecting-administrator-logs/) - We have several customers using IBM AS400 whom we’ve helped in the past collect logs of system administrators under NetEye 3. Now with NetEye 4 we’ve improved log collection, making it compliant with the ECS standard and configuring a special internal port (5514) for NetEye to process these logs and syslog logs in general. Let's
- [RomHack CTF 2021: Table of Contents Writeup](https://www.neteye-blog.com/blog/2021/09/20/romhack-ctf-2021-table-of-contents-writeup/) - At Wuerth Phoenix, we recently introduced a security-focused guild, and decided to attend our first security CTF (Capture The Flag) challenge: RomHack CTF 2021. After panicking initially (there were really difficult challenges!) we stayed calm, and managed to solve the table of contents challenge in the 'pwn' category, which made our team finish in 21st
- [Content Security Policy (CSP) + NetEye 4.42](https://www.neteye-blog.com/blog/2025/06/02/content-security-policy-csp-neteye-4-42/) - NetEye 4.42 introduces support for Content-Security-Policy to boost web security and prepare for mandatory enforcement in upcoming releases.
- [Embedding Threat Intelligence into Your Security Operations](https://www.neteye-blog.com/blog/2025/11/05/embedding-threat-intelligence-into-your-security-operations/) - Producing actionable intelligence must be the mindset that every Threat Intelligence analyst must set as their primary objective. The problem of properly integrating Threat Intelligence into Security Operations processes is a recurring one. In this article, I aim to describe the integration process we, at Würth IT, have implemented, which allows us to produce actionable
- [Tutorial Video Editing Technical Tips, Part 2: No Country for Boring Men (or Women)](https://www.neteye-blog.com/blog/2025/10/30/tutorial-video-editing-technical-tips-part-2-no-country-for-boring-men-or-women/) - If you've followed this thread for awhile, then I hope by now you're making great videos. Let's assume your content is instructive, interesting and well-written, all of your equipment is working the way you want, and you have a good on-camera presence. It's still possible though that you're making boring videos. The main reason is
- [Envisioning Satellite-Distributed Management with Kubernetes and Argo CD for NetEye.cloud](https://www.neteye-blog.com/blog/2025/09/30/envisioning-satellite-distributed-management-with-kubernetes-and-argo-cd-for-neteye-cloud/) - As our company’s NetEye cloud solution NetEye.cloud expands, we’re deploying compute nodes not only in our own data centers but, on customer premises across the globe – connected through satellite links. This hybrid, geo-distributed model creates a very tough challenge: How can we manage configuration across hundreds of remote machines reliably, and at scale? Why
- [My OpenShift Journey #4: Run Unprivileged Containers with systemd in OpenShift: Part 1 - Deployment](https://www.neteye-blog.com/blog/2022/10/06/my-openshift-journey-4-run-unprivileged-containers-with-systemd-in-openshift-part-1-deployment/) - For our ongoing transition from Jenkins to OpenShift, we're currently working on porting our testing infrastructure to OpenShift. Our tests involve installing and running our product, NetEye, in a container. The installation requires a working systemd environment inside the container, and systemd needs to run with PID 1 and as root user (UID 0). Until
- [Unleashing Elastic APM: Containerized Scalability Explored](https://www.neteye-blog.com/blog/2024/03/15/unleashing-elastic-apm-containerized-scalability-explored/) - Introduction: Unveiling Elastic APM in Containerized Environments In today's dynamic digital landscape, where every interaction matters, understanding the intricacies of application performance has become paramount. Elastic APM is a powerful toolset within the Elastic Stack included in the NetEye SIEM Module, and designed to provide unparalleled insights into the performance of your applications. As organizations
- [Podman Quadlet: Simplifying Container Management with systemd](https://www.neteye-blog.com/blog/2025/02/11/podman-quadlet-simplifying-container-management-with-systemd/) - Just like last year, we had the wonderful opportunity to attend FOSDEM, the most important open source conference in Europe. This year was no exception, and among the many exciting talks, one that particularly caught my attention was Alex Stefanini’s presentation on Podman Quadlet. Integrated with Podman since version 4.4, Quadlet has emerged as a
- [NetEye 4 - Security Advisory (Icinga 2)](https://www.neteye-blog.com/blog/2025/10/23/neteye-4-security-advisory-icinga2/) - Important: Icinga2 security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the icinga2 packages is now available for NetEye 4. Security Fix for NetEye 4.44 2.15.1_neteye1.61.3-1 CVEs CVE-2025-61907: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:L/SI:N/SA:N CVE-2025-61908: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N CVE-2025-61909: CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:H The CVEs include three different vulnerabilities: an Information Disclosure, a Denial of Service and
- [NetEye Conference 2025: The Correct Analysis for Some Use Cases](https://www.neteye-blog.com/blog/2025/10/10/neteye-conference-2025-the-correct-analysis-for-some-use-cases/) - During the NetEye Conference 2025, I discussed several analysis use cases where integrating threat intelligence information can help build a useful framework for further alert analysis. Below, I'll share a possible analysis approach for each use case. Case 1 – Alert about scan attempts from an AWS IP SOC Analyst’s decision: "Ouch, this IP is
- [NetEye 4 - Security Advisory (Elastic Stack)](https://www.neteye-blog.com/blog/2025/10/08/neteye-4-security-advisory-elastic-stack/) - Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the elasticsearch and kibana packages is now available for NetEye 4. Security Fix for NetEye 4.44 9.0.8_neteye3.85.1-1 CVEs CVE-2025-25009: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N CVE-2025-25018: CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N CVE-2025-25017: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:N CVE-2025-37728: CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N CVE-2025-37727: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Note that this vulnerability is not exploitable
- [Segregating APM Data in Elastic: A Practical Guide to a Not-So-Obvious Challenge](https://www.neteye-blog.com/blog/2025/09/30/segregating-apm-data-in-elastic-a-practical-guide-to-a-not-so-obvious-challenge/) - If you've worked with Elastic APM, you're probably familiar with the APM Server: a component that collects telemetry data from APM Agents deployed across your infrastructure. But what happens when you need to segregate that data by tenant, especially in complex network zones? Let’s walk through a real-world scenario and how we tackled it. The
- [Business Process Automation on NetEye](https://www.neteye-blog.com/blog/2025/09/30/business-process-automation-on-neteye/) - In NetEye, 'business processes' is a module used to model and monitor the business process hierarchy to obtain a high-level view of the status of critical applications. In short, they allow monitoring controls of individual components to be aggregated into a single screen, creating customized dashboards and generating notifications at the process level, rather than
- [A GitOps Path from Code to OpenShift Cluster](https://www.neteye-blog.com/blog/2025/09/30/a-gitops-path-from-code-to-openshift-cluster/) - A modern web app isn’t one single big monolith: it’s made of quite a lot of pieces!For instance, we relied on a setup such as this one for a recent one we are developing: An API that generates its own OpenAPI spec A frontend that builds a typed client from that spec Database migrations Optional
- [How to Set Up Safe, Automatic Dependency Updates in Your Projects](https://www.neteye-blog.com/blog/2025/09/30/how-to-set-up-safe-automatic-dependency-updates-in-your-projects/) - Dependencies (frameworks, modules, plugins, etc.) are the lifeblood of modern software libraries. But managing them manually is a burden. By automating dependency updates (in a controlled, smart way), you can stay ahead of security issues, reduce technical debt, and make upgrades less painful. Below I’ll walk you through why automatic updates matter, what to watch
- [NetEye 4.44 Release Notes](https://www.neteye-blog.com/blog/2025/10/01/neteye-4-44-release-notes/) - Welcome to version 4.44 of our NetEye v4 Unified Monitoring Platform. As you log in, you’ll be greeted by a crisp view of Lago di Braies, where summer’s warmth yields to autumn. The larches are turning brilliant shades of yellow and burnt orange, forming a vivid contrast with the deep green of the pines and
- [Streamlining Service Request Management with ITIL4 and Jira Service Management](https://www.neteye-blog.com/blog/2025/09/29/streamlining-service-request-management-with-itil4-and-jira-service-management/) - Introduction In every IT team, service requests are the everyday heartbeat of operations. From resetting a password, granting access to a tool, setting up new equipment, or answering a simple “how do I?” question, these are routine, predictable tasks. But if handled poorly, they can quickly lead to frustration, inefficiency, and higher costs. Service Request
- [Getting the M(u)st out of GLPI](https://www.neteye-blog.com/blog/2025/09/29/getting-the-must-out-of-glpi/) - TLTR1: Did you pick all the sweet grapes that grew in your vineyard? They’re sweet, but they degrade faster than you think. Now, to give them long-lasting value, get the must out of it and put a lot of knowledge, time and effort to create a high-value wine! TLTR2: Do you have an automatically fed
- [Migration from Windows 10 to Windows 11 for Enterprise Clients](https://www.neteye-blog.com/blog/2025/09/29/migration-from-windows-10-to-windows-11-for-enterprise-clients/) - Introduction With the End of Support (EOS) date for Windows 10 approaching (it's set in fact for October 14, 2025), companies must urgently plan their transition to Windows 11, as Windows 10 will no longer receive security updates after that date. This means non-updated devices will be exposed to vulnerabilities and thus be non-compliant with
- [Syncing Entra ID Groups and Members to Jira CMDB via Atlassian SCIM API: Key Lessons Learned](https://www.neteye-blog.com/blog/2025/09/29/syncing-entra-id-groups-and-members-to-jira-cmdb-via-atlassian-scim-api-key-lessons-learned/) - In a recent project, I was tasked with enabling the synchronization of Entra ID (formerly Azure AD) security groups and their members into an ITSM CMDB hosted on Jira. The objective was to ensure accurate visibility of group-to-user relationships, leveraging Atlassian’s SCIM 2.0 API capabilities. While the goal sounds straightforward – syncing groups and users
- [Summoning Orval: Binding Backend and Frontend by Magic](https://www.neteye-blog.com/blog/2025/09/29/summoning-orval-binding-backend-and-frontend-by-magic/) - When building modern web applications, type safety and API consistency are essential. Instead of manually writing API clients and models (and risking drift between backend and frontend), you can automate the process using OpenAPI and Orval. In this post, we’ll focus on how to generate TypeScript functions and interfaces using Orval, starting from an openapi.json
- [ICT Security - Protecting Business in the Digital Age](https://www.neteye-blog.com/blog/2023/01/31/ict-security-protecting-business-in-the-digital-age/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [Risepro: A New Infostealer Malware](https://www.neteye-blog.com/blog/2022/12/20/risepro-a-new-info-stealer-malware/) - The daily monitoring activities that we carry out within our Security Operation Center Attacker Centric have allowed us to identify the spread of a new infostealer type malware. Log (or information) stealer malware is a type of Trojan that gathers data in order to send it to the attacker. Typical targets are credentials saved in
- [Research & Development – Backlog (Part 2)](https://www.neteye-blog.com/blog/2018/12/05/research-development-backlog-part-2/) - The Research & Development team has adopted a full Agile approach, in recent years new challenges have arisen that require improvements in our methodologies.
- [Don’t Go without EPSS: Vulnerability Prioritization](https://www.neteye-blog.com/blog/2023/11/16/dont-do-without-epss-vulnerability-prioritization/) - During a Vulnerability Remediation process, understanding which vulnerabilities pose a real and significant risk for an organization is not so obvious, and most of the time it involves several different aspects. It takes into consideration several factors related to available resources and time, company assets, severity, compatibility with fix methodologies, and others. There is no
- [Preparing for WP CTF 2025](https://www.neteye-blog.com/blog/2025/09/25/preparing-for-wp-ctf-2025/) - Summer is over, autumn is here – and so is the most anticipated event of the year for cybersecurity students: WP CTF 2025. Every year, the WP CTF draws cybersecurity students hungry to learn, compete, and put their skills to the test. Our marketing team has been working for months to organize an incredible event,
- [Cluster NetEye - failover anche sui canali di notifica GSM](https://www.neteye-blog.com/blog/2010/02/08/cluster-neteye-failover-anche-sui-canali-di-notifica-gsm/) - logica di failover del cluster NetEye a seguito di problemi sul modem GSM ( nofifiche sms )
- [Support for Elasticsearch-only Nodes](https://www.neteye-blog.com/blog/2020/01/09/support-for-elasticsearch-only-nodes/) - Until NetEye 4.8, customers who needed to expand the capacity of their Elasticsearch cluster running alongside their Red Hat cluster could add new standard nodes to NetEye clusters. This meant, however, that the new nodes would dedicate their resources not just to improving the capacity of the Elasticsearch cluster, but also to maintaining all services
- [NetEye Voting-only Node](https://www.neteye-blog.com/blog/2020/03/26/neteye-voting-only-node/) - NetEye Voting-only configuration to add quorum to PCS, DRBD and Elasticsearch
- [Configuring Fencing on Dell Servers](https://www.neteye-blog.com/blog/2020/06/25/configuring-fencing-on-dell-servers/) - As a NetEye User I want to handle node failures when they happen in my cluster. When a node becomes unresponsive, it might still be accessing your data: the only way to ensure that a node is truly offline is to shut it down. This procedure is called fencing. NetEye 4 relies on Corosync/Pacemaker, also
- [Consultant for a Day (or Three)](https://www.neteye-blog.com/blog/2022/09/24/consultant-for-a-day-or-three/) - In August I had the opportunity to assist an experienced consultant who was upgrading a NetEye cluster. Now, I'm a software developer, and while I know the consultants here who work with clients, I've always worked at the Würth Phoenix offices. I've never actually gone out in the field. So my goal was to try
- [Hosts and NetEye Upgrade](https://www.neteye-blog.com/blog/2021/10/01/hosts-and-neteye-upgrade/) - NetEye installation topology can fluctuate over time, with hosts of various types that can be, for example, added or removed from a cluster in response to changes in business demand or customer requirements. In a cluster environment, hosts are manually mapped in a file called /etc/neteye-cluster, a sort of static inventory solution that is the
- [NetEye Cluster management of OTRS and syslog search](https://www.neteye-blog.com/blog/2011/02/08/neteye-cluster-management-of-otrs-and-syslog-search-2/) - Release of neteye clustering version 1.1.3 Features: - integration of netraphandler daemon and OTRS service into cluster handling logic - Handling of cluster file unmount in case of force resource lock. Include logic to free system from locked NSCA processes of passive Nagios check results Supported NetEye Versions: 3.2
- [Minimizing Downtime: NetEye MariaDB Database Rebuild with Containers and Logical Backup](https://www.neteye-blog.com/blog/2025/09/23/minimized-downtime-neteye-mariadb-database-rebuild-with-container-and-logical-backup/) - Familiar with the feeling when a critical system's backup and recovery time is measured in hours? Operations teams rely heavily on the availability of monitoring data, so scheduling long periods of downtime is simply not an option. We recently faced this exact challenge: we had to schedule a multi-hour downtime because our MariaDB database had
- [Backing up a MariaDB Galera Cluster](https://www.neteye-blog.com/blog/2025/09/09/backup-mariadb-galera-cluster/) - With NetEye version 4.42, we're excited to introduce a clustered solution for MariaDB – MariaDB Galera – designed to enhance the high availability of all NetEye services. This improvement significantly increases the reliability of services that depend on the database, such as Icinga 2, Icinga Web 2, Grafana, Keycloak, and others. Thanks to this new
- [Native Monitoring of the Logstash Dead Letter Queue](https://www.neteye-blog.com/blog/2025/09/19/native-monitoring-of-logstash-dead-letter-queue/) - When working with Logstash in production, one of the often-overlooked areas is the Dead Letter Queue (DLQ). This queue stores events that Logstash cannot process, usually due to parsing errors, mapping conflicts, or pipeline misconfigurations. While the DLQ is useful for troubleshooting, leaving it unmonitored can be dangerous: if it grows unnoticed, critical data might
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/09/23/bug-fixes-for-neteye-4-43-7/) - Satellite config creation in HA mode using zone names with whitespaces We've addressed an issue where running the neteye satellite config create for a satellite configured in HA mode having whitespaces in the Zone name prevented the procedure to successfully execute. List of updated packages To solve the issues mentioned above, the following packages have
- [How to Debug Your Kernel Calls](https://www.neteye-blog.com/blog/2025/09/19/how-to-debug-your-kernel-calls/) - The right tool at the right time can save you hours of frustration and lead you to the root cause faster than you’d expect.
- [Monitoring DBs through PMM: a Migration to OpenShift](https://www.neteye-blog.com/blog/2025/09/16/monitoring-dbs-through-pmm-a-migration-to-openshift/) - Hi 😀 Today I'd like to explore with you a migration that we performed to a service that's used internally to monitor the performance of various DBs, gathering data that's especially useful for troubleshooting. This tool is the Percona Monitoring and Management (PMM) platform, which combines agents or direct access to various supported DBMS (MySQL,
- [Bulk-assigning Power Apps to Flow Owners](https://www.neteye-blog.com/blog/2025/09/12/bulk-assigning-power-apps-flow-owners/) - TL;DR. Owner assignment on the Power Platform via the UI requires a lot of clicks. I use a small, idempotent PowerShell 7+ script that assigns co-owners to many cloud flows across many environments using az tokens and Flow Admin REST APIs. It filters by name prefix, checks existing permissions, retries on throttling, and runs on
- [Want to Manage a Large Elastic Agent Fleet?](https://www.neteye-blog.com/blog/2025/09/15/want-to-manage-a-big-elastic-agents-fleet/) - Managing a large fleet of Elastic Agents efficiently requires careful planning and proactive strategies to ensure stability, scalability, and security. As a technical consultant, I'd like to present some key considerations to help organizations avoid common pitfalls and streamline their operations. 1. Avoid Trust Issues One of the most critical aspects of managing an extensive
- [NetEye 4.43 Release Notes](https://www.neteye-blog.com/blog/2025/08/01/neteye-4-43-release-notes/) - Welcome to version 4.43 of our NetEye v4 Unified Monitoring Platform. As you log in, you’ll be greeted by a sunlit glimpse of Chiusa (Klausen), where pastel‑hued houses cling to the steep valley walls and the ancient cathedral bell tower stands sentinel over the winding streets. Below, the Eisack River threads its way through the
- [SOC News | May 16 – Highly sensitive SYNLAB data has been exposed on the Dark Web](https://www.neteye-blog.com/blog/2024/05/16/soc-news-may-20-data-stolen-from-synlab-published-on-the-dark-web/) - SYNLAB, European leader in medical diagnostic services, was the victim of a cyber attack last April. The compromised infrastructure is the one that runs Italians clinics only, other countries were not affected. In early May, ransomware group BlackBasta claimed responsibility for the attack, saying it had stolen 1.5TB of sensitive medical data from Italian citizens.
- [SOC News | Mar 28 - New Vulnerabilities Added in KEV Catalog](https://www.neteye-blog.com/blog/2024/03/28/soc-news-mar-28-new-vulnerabilities-added-to-the-kev/) - On March 25, 2024, the Cybersecurity & Infrastructure Security Agency (CISA) added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. The catalog is updated regularly and contains those vulnerabilities most likely to be used in attacks. Organizations should monitor and review it periodically, and prioritize their patching efforts based on it. I'll provide a
- [A Practical Guide to Working with Windows Authentication Logs – Part 2](https://www.neteye-blog.com/blog/2025/09/13/a-practical-guide-to-working-with-windows-authentication-logs-part-2/) - Welcome back for the second and last part of our journey into the jungle of Windows logs! In the first part we set out our goal – tracking admin authentications – and learned more about Windows, how authentication events are logged, and where can we focus to isolate the most accurate events. Today we're going
- [File Sharing System Migration (from Wing FTP to Nextcloud)](https://www.neteye-blog.com/blog/2025/06/30/file-sharing-system-migration-from-wing-ftp-to-nextcloud/) - Import it into your virtual infrastructure Initial steps After import is complete and it's turned on, the start-up script launches and you can decide which IP to assign to it, the hostname and various other values. Next, connect to the shell with the following credentials: user: admin password: nextcloud Change the password immediately: passwd ncadmin
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/09/11/bug-fixes-for-neteye-4-43-6/) - Dashboard Graphs Now Use Full Width We've addressed an issue where service and host graphs on dashboards were not utilizing the full available width. This fix ensures the charts now expand to fill the space, providing a better and clearer data visualization. List of updated packages To solve the issues mentioned above, the following packages
- [When Less is More: NetEye Update and Upgrade Checkpoints](https://www.neteye-blog.com/blog/2024/12/20/when-less-is-more-neteye-update-and-upgrade-checkpoints/) - Hello everyone! Today, I'd like to briefly discuss an improvement to the update and upgrade procedures that we've started to adopt with NetEye 4.39! What we wanted to improve One aspect that made quite an impact was that whenever the update or upgrade procedure stopped, even for legitimate reasons such as rpmnew or rpmsave files,
- [Using Keycloak to Secure Web Pages and Virtual Directories](https://www.neteye-blog.com/blog/2025/09/11/using-keycloak-to-secure-web-pages-and-virtual-directories/) - While working on some internal tools, I needed secure access to a few PHP pages and virtual directories resources that, by default, didn’t have any built-in access control. Since NetEye already uses Keycloak as its authentication system, I decided to leverage it to handle login and user validation. This way I could avoid reinventing the
- [Monitoring Nagios Performance Graphs](https://www.neteye-blog.com/blog/2011/01/04/monitoring-nagios-performance-graphs-2/) - Actively monitoring the freshness of Nagios Performance Graphs
- [OSSM Conference - WORKSHOPS](https://www.neteye-blog.com/blog/2015/03/10/ossm-conference-workshops/) - To further deepen the topics covered during the Open Source System Management Conference, Würth Phoenix organizes four different workshops.
- [Continuously rising demand for the NetEye Shutdown Management solution](https://www.neteye-blog.com/blog/2016/09/15/continuously-rising-demand-for-the-neteye-shutdown-management-solution/) - With the NetEye Shutdown Management module, it is possible to create shutdown procedures for multiple datacenters, using different shutdown criteria.
- [Creating Effective Dashboards](https://www.neteye-blog.com/blog/2019/05/13/creating-effective-dashboards/) - While working with Alyvix and NetEye as a Project manager for several companies, I have found that very often simplicity can make the difference, and in my opinion this is especially true for Dashboards. It is definitely a good idea to rely on dashboards in order to make sense out of your company's data, but
- [Making Your Own Video Tutorials, Part 4: Editing and Compositing](https://www.neteye-blog.com/blog/2021/04/20/making-your-own-video-tutorials-part-4-editing-and-compositing/) - In my previous blog post we looked at how to use a green screen to add an extra touch to the tutorial videos you upload to YouTube, particularly focusing on the ambient space for filming, the lighting (both the screen itself and the subject), and the necessary audio and video equipment. The goal of using
- [VMware ESXi Transparent Page Sharing](https://www.neteye-blog.com/blog/2025/09/08/vmware-esxi-transparent-page-sharing/) - Scenario TPS (Transparent Page Sharing) is a proprietary functionality in VMware ESX(i) which essentially does deduplication of memory pages used for virtual machines. Identical memory content across multiple machines thus only consumes memory once. When you have multiple virtual machines with the same guest operating system running, there's a high chance of identical content which
- [Setting up a Vulnerability Enrichment Process: Prioritizing Risks Effectively](https://www.neteye-blog.com/blog/2025/09/05/setting-up-a-vulnerability-enrichment-process-prioritizing-risk-effectively/) - In the context of vulnerability management, it's common to be faced with a long list of findings after each scan, often too many to tackle all at once. But how do you decide where to focus your efforts and resources? Which vulnerabilities are truly critical, the ones that could actually compromise your organization’s security? The
- [NetEye 4 - Security Advisory (SIEM)](https://www.neteye-blog.com/blog/2025/09/02/neteye-4-security-advisory-siem/) - Important: Elastic Stack security update (installed with SIEM) Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the elasticsearch package is now available for NetEye 4. Security Fix for NetEye 4.43 8.18.6_neteye3.81.9-1 CVE-2025-54988 (Apache Tika): CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/MPR:L For a detailed overview of the security issue(s), including the impact, CVSS score,
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/09/01/bug-fixes-for-neteye-4-43-5/) - Fix redirect to __SELF__ We resolved a bug for which sometimes during the login workflow an automatic redirect to __SELF__ was performed, forcing the user to manually change the URL on the browser tab. List of updated packages To solve the issues mentioned above, the following packages have been updated for NetEye 4.43: icingaweb2-module-neteye,icingaweb2-module-neteye-autosetup,icingaweb2-module-neteye-configurator to version
- [Mass Converting SVGs to Transparent PNGs with ImageMagick](https://www.neteye-blog.com/blog/2025/08/26/mass-converting-svgs-to-transparent-pngs-with-imagemagick/) - Last year I wrote about how to create a great animated GIF by first creating a video. In fact I used the procedure described there to generate animated GIF banners for some of our website pages. Another similar problem, whether building a website or creating graphics to go in your videos, is converting SVG files
- [Massive Update of the Icinga custom_var (Host & Services)](https://www.neteye-blog.com/blog/2025/08/28/massive-update-of-the-icinga-custom_var-host-services/) - One feature that's widely used by customers for the enrichment of entities (hosts/services) within Icinga is custom_var. These can be used for a variety of reasons: to provide more information to end users about a device, faster classification, to integrate data used by other tools such as notification, etc... These variables can be managed directly
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/08/29/bug-fixes-for-neteye-4-43-4/) - Fix network target waited on boot We resolved a bug for which the network systemd target waited on boot was not sufficient in guaranteeing that all interfaces were actually ready, causing possibly some services failing to bind, under certain circumstances. List of updated packages To solve the issues mentioned above, the following packages have been
- [A Simple Yet Robust "Scrollspy" Implementation](https://www.neteye-blog.com/blog/2025/08/22/simple-but-robust-scrollspy-implementation/) - "It’s a 0.5 story point bugfix, how hard could it be?" With the recent overhaul of our User Guide UI and its new layout, we inadvertently broke a small but useful feature: the local TOC stopped highlighting the currently active section. Digging into the legacy implementation revealed that this behavior originally came from Bootstrap’s ScrollSpy
- [EriZone 5 has been released!](https://www.neteye-blog.com/blog/2017/01/17/erizone-5-has-been-released/) - EriZone has evolved over the last years, becoming a comprehensive Service Management solution to address enterprise requirements.
- [Michael Medin's trip to the Nagios Conference: „It was in fact much worse!!”](https://www.neteye-blog.com/blog/2010/06/21/it-was-in-fact-much-worse/) - Michael Medin´ odyssey! One of speakers at Nagios && OSS Conference on May 20th in Bolzano
- [Moving from Selenium to Playwright – Part 1](https://www.neteye-blog.com/blog/2023/05/25/moving-from-selenium-to-playwright-part-1/) - In order to visually test NetEye on browsers at each stage of development and before each release, we have a continuous integration (CI) step dedicated to Selenium testing. Selenium is a longtime open-source tool for browser automation; it’s a widely-used tool with a huge community of users. The framework is capable of automating and controlling
- [Use S3 Storage with OpenShift Data Foundation](https://www.neteye-blog.com/blog/2025/08/05/use-s3-storage-with-openshift-data-foundation/) - Recently, we needed to upload build artifacts to allow developers to visualize Playwright test recordings. Initially, we used a simple PVC and an NGINX server with basic authentication, but this approach has a major drawback: it doesn’t allow uploads from different namespaces. As a result, we had to choose whether to deploy this service and
- [Favicon Intelligence – Detecting Clones Of Official Web Services](https://www.neteye-blog.com/blog/2025/08/04/favicon-intelligence-detecting-clones-of-official-web-services/) - In this article, I want to introduce an important new development we have introduced within the SATAYO Threat Intelligence Platform (TIP). Our experience has shown that favicons, those seemingly innocuous icons used in browser tabs and bookmarks, can be a rich and often overlooked source of intelligence. By systematically analyzing these artifacts, we’ve established a
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/08/12/bug-fixes-for-neteye-4-43-3/) - Fix Kibana sysconfig migration We resolved a bug that occurred during the migration of Kibana to a multi-instance setup. The issue prevented the proper copying of custom configurations from /neteye/shared/kibana/conf/sysconfig/kibana-user-customization. As a result, these customizations were missing from the Kibana instances after the upgrade. List of updated packages To solve the issues mentioned above, the following
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/08/05/bug-fixes-for-neteye-4-43-2/) - Fix monitoring object creation during deployment We fixed a bug that caused a monitoring object to be lost if it was created while a Diretor deployment was in progress. List of updated packages To solve the issues mentioned above, the following packages have been updated for NetEye 4.43: icinga2, icinga2-autosetup, icinga2-configurator, icinga2-neteye-config to version 2.15.0_neteye1.59.3-1
- [Bug Fixes for NetEye 4.43](https://www.neteye-blog.com/blog/2025/07/31/bug-fixes-for-neteye-4-43/) - Fixes for Elastic Stack Improved wait for cluster status during updates / upgrades When restarting the Elasticsearch cluster during the NetEye update / upgrade procedure, is it possible let the restart procedure going even if the cluster has a "yellow" status. The check on the cluster status has been improved to allow at least the
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/07/31/bug-fixes-for-neteye-4-42-6/) - Fix for Tornado Webhook collector We have fixed an issue where large incoming requests to the Webhook Collector could cause the system to become unresponsive over time. List of updated packages To solve the aforementioned issues, the following packages have been updated for NetEye 4.42: tornado, tornado-autosetup, tornado-common, tornado-dto, tornado-input-validation, tornado-neteye-config, tornado-rsyslog-collector-logmanager to version 1.36.1-1
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/07/24/__trashed-5/) - Fix for Previously, database updates would fail if the GLPI DRBD resource was active on a node other than the primary, due to an inability to locate the necessary database configuration within the DRBD-managed volume. This fix ensures that GLPI can now successfully access its database configuration and perform updates irrespective of the active DRBD
- [Configuring Keycloak with LDAP and TLS Certificate (LDAPS) in NetEye](https://www.neteye-blog.com/blog/2025/07/03/configuring-keycloak-with-ldap-and-tls-certificate-ldaps-in-neteye/) - In this article I'll guide you step-by-step through configuring Keycloak to connect to an LDAP server using a secure LDAPS (SSL/TLS) connection, with support for certificates signed by either internal or self-signed Certificate Authorities. This is especially useful in enterprise environments using Active Directory or a centralized LDAP server. This configuration is particularly relevant for
- [NetEye Security Advisory](https://www.neteye-blog.com/blog/2025/07/07/neteye-security-advisory-2/) - Important: Elastic Stack security update (installed with SIEM) Type/Severity NetEye Product Security has rated this update as having a Critical security impact. Topic An update for the kibana package is now available for NetEye 4. Security Fix for NetEye 4.41 8.18.3_neteye3.79.1-1 CVSSv3.1: 9.9 (Critical) - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H For a detailed overview of the security issue(s), including the impact, CVSS
- [Group-aware Reboot with Ansible](https://www.neteye-blog.com/blog/2025/03/04/group-aware-reboot-with-ansible/) - Use Case During NetEye Cloud updates we typically have to handle 25+ nodes, updating both OS and Firmware and subsequently rebooting all servers, all without causing downtime. We can of course reboot one node a time, but this would be really time-consuming. The main constraints on reboot are PCS nodes and Elastic layers. In particular
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/03/10/neteye-4-security-advisory-14/) - Important: Elastic Stack security update (installed with SIEM) Type/Severity NetEye Product Security has rated this update as having a Critical security impact. Topic An update for the package kibana is now available for NetEye 4. Security Fix for NetEye 4.40 8.17.3_neteye3.72.11-1 CVSSv3.1: 9.9(Critical) - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H For a detailed overview of the security issue(s), including the impact, CVSS score,
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/03/12/neteye-4-security-advisory-15/) - Important: GeoMap update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the package icingaweb2-module-geomap is now available for NetEye 4. Security Fix for NetEye 4.40 1.22.4 - 1 CVSSv3.1: 7.3(High) - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N For a detailed overview of the security issue(s), including the impact, CVSS score, acknowledgments, and other
- [NetEye 4 – Security Advisory](https://www.neteye-blog.com/blog/2025/03/24/neteye-4-security-advisory-16/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a security impact of Low Topic An update for the package glpi is now available for NetEye 4. Security Fix for NetEye 4.40 10.0.18_neteye1.17.1-1 For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/03/24/neteye-4-security-advisory-17/) - Important: Icingaweb2 Module Geomap security update Type/Severity NetEye Product Security has rated this update as having a security impact of Low Topic An update for the package icingaweb2-module-geomap is now available for NetEye 4. Security Fix for NetEye 4.40 1.22.1-1 For details on how to apply this update, which includes the changes described in this advisory,
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/04/01/neteye-4-security-advisory-18/) - Important: Icingaweb2 Module Director security update Type/Severity NetEye Product Security has rated this update as having a security impact of Medium Topic An update for the package icingaweb2-module-director is now available for NetEye 4. Security Fix for NetEye 4.41 1.11.4_neteye1.39.2-1 For details on how to apply this update, which includes the changes described in this advisory,
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/04/01/neteye-4-security-advisory-19/) - Important: Icingaweb2 Module Reporting security update Type/Severity NetEye Product Security has rated this update as having a security impact of High Topic An update for the package icingaweb2-module-reporting is now available for NetEye 4. Security Fix for NetEye 4.41 1.0.3_neteye0.16.1-1 For details on how to apply this update, which includes the changes described in this advisory,
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/04/03/neteye-4-security-advisory-20/) - Important: Icingaweb2 Module Neteye security update Type/Severity NetEye Product Security has rated this update as having a security impact of Low Topic An update for the package icingaweb2-module-neteye is now available for NetEye 4. Security Fix for NetEye 4.41 1.164.2-1 For details on how to apply this update, which includes the changes described in this advisory,
- [NetEye Security Advisory](https://www.neteye-blog.com/blog/2025/05/14/neteye-security-advisory/) - Important: Elastic Stack security update (installed with SIEM) Type/Severity NetEye Product Security has rated this update as having a Critical security impact. Topic An update for the kibana package is now available for NetEye 4. Security Fix for NetEye 4.41 8.17.6_neteye3.74.6-1 CVSSv3.1: 9.1(Critical) - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H For a detailed overview of the security issue(s), including the impact, CVSS score,
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/04/17/neteye-4-security-advisory-21/) - Important: Chromium security update Type/Severity NetEye Product Security has rated this update as having a security impact of Low Security Fix for NetEye 4.41 An update for the following packages is now available for NetEye 4: chromium to version 133.0.6943.141-1 icingaweb2-module-slm to version 4.37.2-1 icingaweb2-module-pdfexport to version 0.11.0_neteye0.5.1-1 grafana-panel-renderer to version 1.5.1-1 For details on
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2025/05/09/neteye-4-security-advisory-22/) - Important: Grafana security update Type/Severity NetEye Product Security has rated this update as having a security impact of High Topic An update for the package grafana is now available for NetEye 4. Security Fix for NetEye 4.41 11.6.1_neteye3.27.1-1 For details on how to apply this update, which includes the changes described in this advisory, refer to the NetEye
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/07/23/bug-fixes-for-neteye-4-42-5/) - Fixes for GLPI We have updated GLPI to the latest bugfix version to resolve some security fixes. List of updated packages To solve the aforementioned issues, the following packages have been updated for NetEye 4.42: glpi, glpi-autosetup, glpi-configurator and glpi-neteye-config to version 10.0.19_neteye1.17.3-1
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/07/17/bug-fixes-for-neteye-4-42-3/) - Fixes for icinga2 We have updated icinga2 to the latest bugfix version to resolve CVE-2025-48057. List of updated packages To solve the aforementioned issues, the following packages have been updated for NetEye 4.42: icinga2, icinga2-autosetup, icinga2-bin, icinga2-bin-debuginfo, icinga2-common, icinga2-configurator, icinga2-debuginfo, icinga2-debugsource, icinga2-devel, icinga2-doc, icinga2-ido-mysql, icinga2-ido-mysql-debuginfo, icinga2-ido-pgsql, icinga2-ido-pgsql-debuginfo, icinga2-neteye-config, icinga2-resources, icinga2-selinux, nano-icinga2, vim-icinga2 to version 2.14.6_neteye1.59.2-1
- [Running SOS Berlin JobScheduler in Containers: A Step Toward Cloud-Native Scheduling](https://www.neteye-blog.com/blog/2025/07/18/running-sos-berlin-jobscheduler-in-containers-a-step-toward-cloud-native-scheduling/) - As enterprises move toward containerization and microservices, traditional job schedulers are often left behind. However, many organizations still rely on tried-and-true tools like SOS Berlin’s JobScheduler (now known as JADE under the JOC Cockpit umbrella). The good news? With a bit of engineering effort, you can bring JobScheduler into the world of containers. In this
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/07/18/bug-fixes-for-neteye-4-42-4/) - Fixes for icingaweb2-module-tornado We've updated to the latest bugfix version to resolve an issue with the WITH extractor rule, where Regex values appeared empty in the UI when the corresponding Group Match Index was set to NULL (even though the values were correctly stored in the configuration). We also addressed a bug that was preventing
- [Is Your Jira and Confluence World About to Change? Understanding the Shift from Connect to Forge](https://www.neteye-blog.com/blog/2025/06/23/is-your-jira-and-confluence-world-about-to-change-understanding-the-shift-from-connect-to-forge/) - Are you a Jira or Confluence admin user? Do you rely on apps from the Atlassian Marketplace to supercharge your workflows and collaboration? If so, you might have heard whispers about some changes on the horizon. Don't worry, we're here to break it down for you in plain language and help you understand what it
- [Security Assessment: More Than a Test... A Training Opportunity for the IT Team](https://www.neteye-blog.com/blog/2025/07/03/security-assessment-more-than-a-test-a-training-opportunity-for-the-it-team/) - When we talk about security assessments, the first thing that comes to mind is a snapshot of a company’s security posture: vulnerabilities, misconfigurations, uncontrolled access, and so on. But reducing these activities to a mere "test" means missing a key strategic opportunity: turning every assessment into the possibility of helping the internal IT team grow
- [Discovery and Credential Access via Kerberos & NTLM: A Detection-Focused Approach](https://www.neteye-blog.com/blog/2025/07/02/discovery-and-credential-access-via-kerberos-ntlm-a-detection-focused-approach/) - Introduction Windows environments rely heavily on authentication protocols like NTLM and Kerberos. While these protocols serve critical security purposes, they are also commonly abused during malicious activities. This article explains how to detect suspicious behaviors related to Domain Account Discovery and Credential Access, specifically focusing on Enumeration, Brute Force, and Password Spraying attempts via NTLM
- [Where ITIL® 4 Meets Atlassian: Elevating IT Service Management](https://www.neteye-blog.com/blog/2025/06/30/where-itil-4-meets-atlassian-elevating-it-service-management/) - An overview of the joint Axelos and Atlassian paper on integrating ITIL® 4 into modern ITSM workflows. ITIL® 4 Meets Agile: A New Era of ITSM with Atlassian and AXELOS In today’s fast-paced digital world, IT is no longer just a back-office function. It’s a central enabler of business innovation and value creation. As technologies
- [How to Replicate Sealed Secrets in Multiple Namespaces](https://www.neteye-blog.com/blog/2025/06/30/how-to-replicate-sealed-secrets-in-multiple-namespaces/) - Fortunately, one of the most widespread tools in the Kubernetes ecosystem Kyverno offers a flexible and declarative way to overcome this limitation.
- [Creating Jira Service Management Requests from a Public Website? Here’s the Secure, No-API Way](https://www.neteye-blog.com/blog/2025/06/30/creating-jira-service-management-requests-from-a-public-website-heres-the-secure-no-api-way/) - If you've ever tried integrating an external system or website with Jira Service Management (JSM), you've probably hit one or more roadblocks, especially when it comes to creating requests on behalf of end users without using the default Jira Service Management portal. The good news? You don't need to hand over admin access or build
- [Das neue GLPI 11 – offizielle deutsche Vorstellung [DE]](https://www.neteye-blog.com/blog/2025/06/30/das-neue-glpi-11-offizielle-deutsche-vorstellung-de/) - Blog auf DEUTSCH. Una versione ITALIANA seguirà fra poco! [Disclaimer: this blog is deliberatively written in German, an Italian version will follow. WürthPhoenix is Gold partner for GLPI for Italy and for the German Market (Germany, Austria, Switzerland, South Tyrol), thus with this blog article we engage the German (and Italian) readers.] Am 26.6 durfte
- [Cron Job Monitoring with Tornado (Part 2)](https://www.neteye-blog.com/blog/2025/06/30/cron-job-monitoring-with-tornado-part-2/) - In the first part we created hosts and services to monitor a sequence of script using Tornado. The Tornado Rule Now let's continue with the creation of a Tornado rule: open the NetEye web interface and select Tornado dashboard, then open the processing tree and select Edit mode On. Add a filter with an appropriate
- ["Pipeline as Code" Quest Unlocked: A Grizzled Beginner Leveling Up in CI/CD](https://www.neteye-blog.com/blog/2025/06/30/pipeline-as-code-quest-unlocked-a-grizzled-beginner-leveling-up-in-ci-cd/) - After 17 years in software development, mostly crafting UIs (do you know Google Web Tookit? Or Angular, since version 1? And now Vue.js? I do), occasionally diving into mobile apps, and even wearing the sysadmin hat, I thought I’d seen my fair share of tech. But recently, I stepped into a completely new arena: Pipeline
- [Alertmanager Alert Filtering Rules – Effective Alert Management in Practice](https://www.neteye-blog.com/blog/2025/06/30/alertmanager-alert-filtering-rules-effective-alert-management-in-practice/) - Lately, we’ve been working extensively on integrating Prometheus alerts into NetEye. In most cases, we process the alerts sent by Alertmanager (Prometheus’ alert management system) using Tornado, where they are grouped based on labels – not following the traditional "Host" or "Service" structure. Our task is to "translate" these alerts into "hosts" and their corresponding
- [Secure Network Integration for Secrets in Microsoft Azure](https://www.neteye-blog.com/blog/2025/06/27/secure-network-integration-for-secrets-in-microsoft-azure/) - Scenario: Introduction Think of an organization that maintains most of its IT infrastructure on Azure. It applies a segmentation strategy by branch office, where the assets underlying each regional branch office are deployed to their specific landing zone subscription, i.e. SUB-BRANCH-A, SUB-BRANCH-B, etc. The landing zones share the same Microsoft Entra ID Tenant as their
- [The Surprising Power of Email in a Modern ITSM World](https://www.neteye-blog.com/blog/2025/06/30/the-surprising-power-of-email-in-a-modern-itsm-world/) - In a world that's constantly chasing the next big thing – AI-driven workflows, voice assistants, holograms (ok, maybe not quite yet) – email continues to quietly thrive. Yes, that humble, old-school communication tool is still shockingly relevant. And no, this isn't a sponsored message from your email inbox. 😄 As consultants, we often talk about how some technologies evolve at
- [Making Your Own Video Tutorials, Part 19: An Editing Workflow](https://www.neteye-blog.com/blog/2025/06/30/making-your-own-video-tutorials-part-19-an-editing-workflow/) - Welcome back to our ongoing series on creating online IT tutorial videos. The last two times we talked about speeding up your graphics, and how the entire workflow works from writing all the way to the final product. Today let's do a deep dive on just the Editing process: once you have your digital resources
- [Exploring n8n – A Fresh, Flexible Automation Tool for Developers and Business Teams](https://www.neteye-blog.com/blog/2025/06/30/exploring-n8n-a-fresh-flexible-automation-tool-for-developers-and-business-teams/) - Hi! Today I want to talk to you about a nice tool that I stumbled upon in recent weeks: n8n. In these days automation has become a key driver for efficiency and innovation. From streamlining repetitive tasks to connecting disparate systems, businesses and developers are turning to automation platforms to save time and reduce human
- [How to Secure GitHub Actions with SHA Pinning](https://www.neteye-blog.com/blog/2025/06/26/how-to-secure-github-actions-with-sha-pinning/) - GitHub Actions offer a powerful and flexible infrastructure for CI/CD, deployments and monitoring. But every external dependency we include opens a potential door for supply-chain attacks. One simple, effective, and low-cost way to seal that door is pinning your Actions to specific commit SHAs. In this article, we’ll explore the risks, walk through how to
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/06/27/bug-fixes-for-neteye-4-42-2/) - Fixes in NetEye Satellite upgrade to version 4.42 We have resolved a bug that occurred during the upgrade of NetEye Satellites to version 4.42. Specifically, these issues were associated with the GLPI procedures. List of updated packages To solve the aforementioned issues, the following packages have been updated for NetEye 4.42: glpi, glpi-autosetup, glpi-configurator and
- [Why TLPT Is the Future of Financial Sector Cybersecurity](https://www.neteye-blog.com/blog/2025/06/25/why-tlpt-is-the-future-of-financial-sector-cybersecurity/) - In the ever-evolving cyber threat landscape, financial institutions no longer have the luxury of relying on standard penetration tests or traditional assessments. As attackers grow more sophisticated and persistent, defenders must shift from theory to real-world simulation. This is exactly where Threat-Led Penetration Testing (TLPT) enters the picture, and with the EU’s Digital Operational Resilience
- [A Practical Guide to Working with Windows Authentication Logs – Part 1](https://www.neteye-blog.com/blog/2025/06/25/a-practical-guide-to-work-with-windows-authentication-logs-part-1/) - If you've ever worked with Windows authentication logs, you know they can be a chaotic mess. Even when you’re looking for something apparently simple and useful – like tracking admin logins – you quickly find yourself in a sea of redundant entries, some of them logged for no apparent reason, and poorly documented details. I’ve
- [Elastic Integration with Huge Memory Usage? Keep That Host Accessible!](https://www.neteye-blog.com/blog/2025/06/20/elastic-integration-with-big-memory-usage-keep-host-accessible/) - In some environments, Elastic Agent integrations can unexpectedly consume excessive memory. This can be due to various reasons: misbehaving integrations, memory leaks, or simply under-provisioned hosts. When this happens, the Linux Kernel may invoke the OoM (Out of Memory) killer of systemd, terminating the Elastic Agent service and usually, disrupting data ingestion. How to Detect
- [Dotnet Run App](https://www.neteye-blog.com/blog/2025/06/18/dotnet-run-app/) - In this article, we’ll break down what this means, compare it head‐to‐head with PowerShell Core, and explore the strengths and weaknesses of each approach today – all while casting a skeptical eye on where the two might collide or converge in the near future. What’s New with dotnet run app.cs Traditionally, running C# code with
- [Hack The Box Business CTF 2025 – Nexus Breach Journey](https://www.neteye-blog.com/blog/2025/06/18/hack-the-box-business-ctf-2025-nexus-breach-journey/) - Stepping Deeper into the CTF World It seems that this year, I’m a step further into the world of Capture The Flag (CTF) competitions: not sure why but I don't regret it. We're only halfway through the year, and I’ve already participated in three events. Not a huge amount, but a noticeable jump considering that
- [NEP Telegram Notification](https://www.neteye-blog.com/blog/2025/06/20/nep-telegram-notification/) - Some time ago, my colleague Giuseppe Di Garbo published this article on the NetEye Blog, where he explained how to integrate NetEye notifications with Telegram. It was a great starting point, and in fact many of us used it to enable NetEye's notification system to send alerts directly to the Telegram app for many customers.
- [Building (and Customizing) Documentation for Your Ansible Collections](https://www.neteye-blog.com/blog/2025/06/26/building-and-customizing-documentation-for-your-ansible-collections/) - In NetEye, we use Ansible to automate many different tasks in an idempotent way, ranging from the first installation of the system to updates and upgrades. Ansible already comes with many built-in useful modules to manage files, perform HTTPS requests and much more. Furthermore, various Ansible Collections have been developed by the community to address
- [Reactivity Troubles: When Vue's Magic Backfires](https://www.neteye-blog.com/blog/2025/06/24/reactivity-troubles-when-vues-magic-backfires/) - Let me start by saying: sure React is great, Angular is enterprise-ready, but my love falls on Vue. The reactivity system? Chef's kiss. Watching values magically update the DOM like it's reading your mind? Ammmazing. But sometimes, it feels less like magic and more like an unfair duel! You change a value, and five things
- [How to Add a Drive Selector to an ISO Image](https://www.neteye-blog.com/blog/2025/06/14/how-to-add-a-drive-selector-to-iso-image/) - Our old ISO used the first drive (sda) as the only option when installing the system. Sometimes we were asked to install NetEye on a different drive, so as a workaround we suggested properly sorting RAID arrays in the controller, in order to put the installation drive first on the list. Even if suboptimal, this
- [From Monitoring to SOC](https://www.neteye-blog.com/blog/2025/06/12/from-monitoring-to-soc/) - Starting in January I was offered the following challenge: Help customers use their NetEye system differently, that is, help customers exploit the potential of our system to move from a use that's strictly related to monitoring to one more oriented towards the security arena, that is, creating a system in-house that can help them implement
- [Terminal Server User Profiles with FSLogix](https://www.neteye-blog.com/blog/2025/06/12/terminal-server-user-profiles-with-fslogix/) - Scenario Windows has provided Remote Desktop functionality for a very long time. A lot of companies use this feature to build up a remote Desktop Farm and then let people run programs remotely, which can be very useful when going over a WAN connection with high latency. Starting with Windows Server 2012, Microsoft added the
- [Bug Fixes for NetEye 4.42](https://www.neteye-blog.com/blog/2025/06/05/bug-fixes-for-neteye-4-42/) - Fixes in NetEye Satellite upgrade to version 4.42 We have resolved 2 errors that occurred during the upgrade of NetEye Satellites to version 4.42. Specifically, these issues were associated with the MariaDB and icingaweb2-module-auditlog procedures. List of updated packages To solve the aforementioned issues, the following packages have been updated for NetEye 4.42: mariadb-neteye-config, mariadb-neteye-config-configurator
- [Automating Asset Delivery Tracking in the Jira Customer Portal: A Developer’s Guide](https://www.neteye-blog.com/blog/2025/06/04/automating-asset-delivery-tracking-in-the-jira-customer-portal-a-developers-guide/) - In many organizations, customers request physical or digital assets via the Jira Service Management portal. Tracking the status of these deliveries and keeping the requestor informed is critical for transparency and customer satisfaction. This blog post outlines a robust solution using Jira Automation to manage and visualize the delivery process directly in the customer portal
- [How to Reduce Icinga 2 Log Verbosity, and Regularly Clean Them from Event Viewer](https://www.neteye-blog.com/blog/2025/05/05/how-to-reduce-icinga2-logs-verbosity-and-clean-them-regularly-from-event-viewer/) - Icinga 2 is a powerful monitoring system that helps you keep track of your infrastructure. But like any monitoring tool, it can generate a lot of logs. Over time, these logs can accumulate, making it increasingly harder to find the critical information you need. If you're using Icinga 2 on a Windows system, you might
- [NetEye 4.42 Release Notes](https://www.neteye-blog.com/blog/2025/06/03/neteye-4-42-release-notes/) - Welcome to version 4.42 of our NetEye v4 Unified Monitoring Platform. Summer has arrived on the Seiser Alm, and with it, clear views of two of South Tyrol’s most iconic peaks: Langkofel (Sassolungo) and Plattkofel (Sassopiatto). From the trails that wind across the plateau, hikers can reach the summit cross of Sassopiatto at 2,964 meters,
- [Keeping Elastic Agents Updated in the Dark: A Fully Offline Upgrade Workflow](https://www.neteye-blog.com/blog/2025/05/12/keeping-elastic-agents-updated-in-the-dark-a-fully-offline-upgrade-workflow/) - Updating Elastic Agents is usually straightforward – unless you’re working in a secure, air-gapped environment where machines can't access the internet (and thus, the Elastic Artifact Repository). And yet this was exactly the challenge we faced. We needed a way to keep the Elastic Agents across a fleet of systems up to date, without exposing
- [Automatic Integration of NagVis Map into Icinga Web 2/NetEye Monitoring](https://www.neteye-blog.com/blog/2025/05/22/automatic-integration-of-nagvis-map-into-icinga-web-2-neteye-monitoring/) - What's What NetEye is a comprehensive IT Monitoring and Observability platform developed by Würth Phoenix. It's based on open-source tools like Icinga, NagVis, Grafana, Elastic Stack, among others, and is tailored for enterprise IT infrastructure monitoring, IT Operations Analytics (ITOA), and IT Service Management (ITSM).NagVis is an open-source visualization tool that provides graphical representations of
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/05/09/bug-fixes-for-neteye-4-41-6/) - Removed input in Elastic Agent Fleet System integration With the release of Elastic Agent Fleet version 2.0.0, the "System" integration has been updated and now removes support for a deprecated log collection input method that relied on httpjson. This input is no longer available in the latest version of the integration. To address this change,
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/05/08/bug-fixes-for-neteye-4-41-5/) - Fix rpmnew handling in Keycloak upgrade procedure We fixed an issue in Keycloak's update procedure to improve the handling of an rpnew generated during the update. First installation for SIEM clusters without voting-only node We fixed an issue related with the first installation of clusters with the SIEM feature module which do not have a
- [Would You Use an AI Chatbot to Write Your Blog Post?](https://www.neteye-blog.com/blog/2025/04/30/would-you-use-an-ai-chatbot-to-write-your-blog-post/) - Many people already are. Whoa, whoa. We need to back up a bit here. Really good GPT-based text generators have now been generally available for 3 years now. And they've now been adopted by a large number of corporations, especially IT-centric ones. I shouldn't even say "adopted". They're being "pushed" because of worries that employees'
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/04/25/bug-fixes-for-neteye-4-41-4/) - Fix Tornado filter WHERE condition We fixed an issue in Tornado UI in which the WHERE condition of a filter were not being displayed correctly for some conditions not created through the API. List of updated packages To solve the issue, the following packages have been updated for NetEye 4.39 - 4.40: tornado, tornado-autosetup, tornado-common,
- [Understanding Customer Sentiment in Jira Service Management to Enhance Support](https://www.neteye-blog.com/blog/2025/03/16/understanding-customer-sentiment-in-jira-service-management-to-enhance-support/) - Customer experience is a crucial factor for the success of any IT support team. Often, agents manage tickets without a clear understanding of the customer's emotional state, making it difficult to respond appropriately. To tackle this challenge, Jira Service Management introduced the Customer Sentiment feature, an AI-powered tool that analyzes the customer's tone to provide
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/04/22/bug-fixes-for-neteye-4-41-3/) - Fix Tornado filter WHERE condition We fixed an issue in Tornado UI that did not allow deleting the WHERE condition of a filter in some conditions. List of updated packages To solve the issue, the following packages have been updated icingaweb2-module-tornado, icingaweb2-module-tornado-autosetup and icingaweb2-module-tornado-configurator to version 3.1.3-1
- [Application Performance Monitoring in NetEye with Elastic APM and OpenTelemetry](https://www.neteye-blog.com/blog/2025/04/16/application-performance-monitoring-in-neteye-with-elastic-apm-and-opentelemetry/) - Lately I've been receiving more and more inquiries about whether we can integrate OpenTelemetry into our NetEye system, and what the analysis would look like. For this reason, I'd like to use this article to briefly describe the range of features we offer with our NetEye Elastic APM solution. In today's fast-paced digital landscape, ensuring
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/04/16/bug-fixes-for-neteye-4-41-2/) - Fix Tornado Filters names and descriptions editing We fixed an issue in Tornado related to the editing of new Filters names and descriptions, which would have resulted in an error. List of updated packages To solve the issue, the following packages have been updated icingaweb2-module-tornado, icingaweb2-module-tornado-autosetup and icingaweb2-module-tornado-configurator to version 3.1.2-1
- [Please STOP Designing for Failure: How Optimism Can Transform Your UX](https://www.neteye-blog.com/blog/2025/04/12/please-stop-designing-for-failure-how-optimism-can-transform-your-ux/) - At the beginning of March 2025, my colleague Oscar and I attended the VueJS Amsterdam 2025 conference, and among the hundreds of very cool new concepts and ideas we had a chance to discover, one particular talk stood out for me: for the first time it felt like a utility library was actually including tools
- [Atlassian: What's New and Next](https://www.neteye-blog.com/blog/2025/04/14/atlassian-whats-new-and-next/) - Atlassian's latest drop at Team '25 Last week, Anaheim (California) was buzzing with energy as Atlassian Team '25 kicked off 💥, and the initial announcements were already generating considerable excitement. From groundbreaking new products to enhanced features designed to streamline workflows, the latest news is coming out, promising to empower teams with even greater agility
- [Bug Fixes for NetEye 4.41](https://www.neteye-blog.com/blog/2025/04/08/bug-fixes-for-neteye-4-41/) - Fix Elasticsearch read-only indices check We fixed an issue related to the 01002_elastic_indices_read_only_check.sh light health check, which checks if some indices are present in Elasticsearch in a read-only state. The check may have wrongly recognized as in read-only also some indices where the read_only_allow_delete or read_only properties were set to false. List of updated packages
- [Automating GLPI Migration from System OnPrem to NetEye Cloud](https://www.neteye-blog.com/blog/2025/04/07/automating-glpi-migration-from-system-onprem-to-neteye-cloud/) - In the context of IT management, migrating data between different environments can be a critical activity. GLPI is a widely used open-source platform for IT asset and help desk management. When transitioning from an on-premise instance to a cloud version (such as NE4 Cloud), the migration process can become extremely complex. This article analyzes a
- [Premium Data Security on a Budget with Azure](https://www.neteye-blog.com/blog/2025/03/28/premium-data-security-on-a-budget-with-azure/) - Let's assume we have the following reference scenario, which we'll use just for simplicity: A fictitious commercial freight business moves large volumes of goods all over Europe. It has two legally registered offices, one in the Netherlands (Western Europe) and the other in Ireland (Northern Europe), where the accounting departments are located. The business' board
- [Perfect Synergy: JSM and Confluence, a Winning Combination for Your Support](https://www.neteye-blog.com/blog/2025/03/31/perfect-synergy-jsm-and-confluence-a-winning-combination-for-your-support/) - In the world of customer support, efficiency is key. And what could be more efficient than a system that allows customers to find answers on their own, and agents to solve problems in record time? The answer is the integration between Jira Service Management (JSM) and Confluence, Atlassian's knowledge base. The Benefits of Integration JSM
- [GLPI: Automated Inventory Without Using GLPI Agents](https://www.neteye-blog.com/blog/2025/03/31/glpi-automated-inventory-without-using-glpi-agents/) - Key takeaways: You can use the native inventory format to import assets from any source Inventory import rules apply The lock mechanism works as for GLPI agent imports The imports are limited to the objects and properties currently imported also by the glpi agent and its accessory tools A comprehensive asset management database must necessarily
- [Logging OpenShift Incoming Traffic on Elasticsearch](https://www.neteye-blog.com/blog/2025/03/30/logging-openshift-incoming-traffic-on-elasticsearch/) - As traffic to applications deployed on OpenShift grows, it's essential to gain visibility into the flow of data entering your cluster.
- [Cron Job Monitoring with Tornado](https://www.neteye-blog.com/blog/2025/03/30/cron-job-monitoring-tornado/) - In NetEye environments we use Tornado to collect events, elaborate on them, and send notifications based on them from a lot of sources (syslog, email, SNMP traps and so on). In this article I'd like to suggest a different use case: how to use Tornado to monitor your cron jobs. In our example we want
- [Effortless On-Call Management with Jira Service Management](https://www.neteye-blog.com/blog/2025/03/28/effortless-on-call-management-with-jira-service-management/) - As discussed in my previous posts (Part 1 and Part 2) on managing Alerts with Jira Service Management, the way JSM handles alerts is crucial for keeping IT operations smooth. But what happens when an alert pops up at 3 AM? Who gets notified, and how? That’s where on-call management comes in. Jira Service Management
- [Reducing the NetEye ISO Size: How to Carefully Choose the Right Packages!](https://www.neteye-blog.com/blog/2025/03/31/reducing-the-neteye-iso-size-how-to-carefully-choose-the-right-packages/) - If you're a NetEye regular, you may have downloaded the NetEye ISO at least once in your life. And if you did, you probably discovered that you had a bit of free time before the download was completed and the ISO was ready to be used. Why's that? Because until a couple of weeks ago,
- [Improving Your Backup of MariaDB](https://www.neteye-blog.com/blog/2025/03/31/improving-your-backup-of-mariadb/) - Choosing the right backup solution is critical for system administrators and IT professionals. The upcoming NetEye 4.41 version will bring an update to MariaDB, moving from version 10.3 to 10.11. This makes it especially timely to explore the opportunities offered by the Mariabackup tool in order to be fully prepared for the changes ahead. This
- [Discovering AVX2 Requirements for Elasticsearch’s ELSER Model – The Hard Way](https://www.neteye-blog.com/blog/2025/03/31/discovering-avx2-requirements-for-elasticsearchs-elser-model-the-hard-way/) - At Würth Phoenix, we’re no strangers to the ever-evolving world of technology. As part of our continuous innovation process and culture, we’ve been enhancing our user guide to support Elasticsearch’s ELSER model for semantic search. The goal is to improve the efficiency and accuracy of our searches, powered by machine learning. However, in typical developer
- [Unlock Atlassian Users: Reactivating IDP-Synced Managed Accounts](https://www.neteye-blog.com/blog/2025/03/28/unlock-atlassian-users-reactivating-idp-synced-managed-accounts/) - Managing user access in Atlassian Cloud can become complex, especially when integrating with Identity Providers (IDPs) for user provisioning via SCIM (System for Cross-domain Identity Management). A common challenge arises when users who were initially synchronized through your IDP become deactivated after moving them from a group synchronized with Atlassian. Due to the SCIM link,
- [Upgrading MariaDB within NetEye 4.41: Enabling a Feature-Rich Future](https://www.neteye-blog.com/blog/2025/03/26/upgrading-mariadb-within-neteye-4-41-enabling-a-feature-rich-future/) - As technology continually evolves, keeping our software stack up to date is essential for performance, security, and access to new functionalities. In this post, I want to share how we upgraded MariaDB from version 10.3 to 10.11 as part of the NetEye 4.41 release. This upgrade was not only a technical necessity, but a strategic
- [Unlocking Atlassian Automation: Lookup Objects vs. Branch on AQL](https://www.neteye-blog.com/blog/2025/03/26/unlocking-atlassian-automation-lookup-objects-vs-branch-on-aql/) - When working with Atlassian Jira Automation and Assets, two key methods allow you to interact with Asset objects dynamically: Lookup Objects and Branch on AQL. While both serve similar purposes, they have distinct execution behaviors, performance considerations, and important limits you need to be aware of when designing automation workflows. Let’s break it down to
- [NetEye 4.41 Release Notes](https://www.neteye-blog.com/blog/2025/04/01/neteye-4-41-release-notes/) - Welcome to version 4.41 of our NetEye v4 Unified Monitoring Platform. Spring is just around the corner, and could there be a better time for a hike to the beautiful Lake of Valdurna (Durnholzer See)? Nestled deep in the Valle di Valdurna in Val Sarentino, this triangular alpine lake stretches 900 meters long and 350
- [The Song of a Main Road and Intriguing Paths: The Challenging Journey from Vue 2 to Vue 3](https://www.neteye-blog.com/blog/2025/03/27/the-song-of-a-main-road-and-intriguing-paths-the-challenging-journey-from-vue-2-to-vue-3/) - We recently completed the update of the Tornado UI from Vue 2 to Vue 3. This was a major upgrade that required careful planning and execution. To ensure a smooth transition, we followed the official migration guide provided by the Vue team, with some modifications to adapt the steps to our codebase, such as using
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/03/28/bug-fixes-for-neteye-4-40-6/) - Fix Icingaweb2 GLPI monitoring integration issue We discovered and fixed a bug in the GLPI monitoring integration for Icingaweb2 where API calls to retrieve asset information fail if the hostname contains spaces. Instead of displaying asset information, a string containing an error was displayed instead. List of updated packages icingaweb2-module-assetmanagement:1.35.4-1,icingaweb2-module-director:1.11.1_neteye1.38.1-1 Fix missing event module field
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/03/27/bug-fixes-for-neteye-4-40-7/) - Fix “Invalid OAuth State” error – Login not working We fixed an issue with the authentication, occurring refreshing NetEye after the session expires. The user is now brought to the login page instead of being stuck in an “Invalid OAuth state” page. MariaDB upgrade pre-requisite check re-execution We fixed an issue with the re-execution of
- [On-demand Full Synchronization from ENTRA Security Group to Dynamics 365 (PPAC)](https://www.neteye-blog.com/blog/2025/03/26/on-demand-full-synchronization-from-entra-security-group-to-dynamics-365-ppac/) - In the world of Dynamics 365 and Power Platform administration, ensuring users have timely access to environments is a common challenge. The standard synchronization process between Azure Entra security groups and Power Platform environments can sometimes leave administrators waiting longer than desired, especially when onboarding multiple users simultaneously. The Challenge We've all been there –
- [Azure Container App Jobs: Why I think they're Great](https://www.neteye-blog.com/blog/2025/03/25/azure-container-app-jobs-why-i-think-theyre-great/) - At SharpCoding 2025 in Rome – hosted at Microsoft’s headquarters – I had the pleasure of sharing our approach to simplifying deployments using Azure Container App Jobs. In my session, "Guided Deployments: Power Platform under Control with Azure DevOps," I discussed how we tackled the challenge of reliably extracting, versioning and deploying custom power platform
- [Automating Network Discovery and Data Injection for GLPI](https://www.neteye-blog.com/blog/2025/03/22/automating-network-discovery-and-data-injection-for-glpi/) - Preamble:A use case from one of our clients required scanning several subnets to locate all the printers that should be imported into GLPI. Their infrastructure features a cloud-based NetEye Master and a Satellite within their farm. The connection between the master and the satellite is unidirectional – from the Satellite to the Master. With this
- [How to Create a Serial Modem Emulation Service on NetEye](https://www.neteye-blog.com/blog/2025/03/21/how-to-create-a-serial-modem-emulation-service-on-neteye/) - In some test or development environments, you may need to simulate the presence of GSM modems without having an actual physical device. This can be useful for example when testing monitoring checks, SMS management systems, or creating new notification rules. In this post I'll show you how I created a serial modem emulation service. The
- [Bug Fixes for NetEye 4.39+](https://www.neteye-blog.com/blog/2025/03/21/bug-fixes-for-neteye-4-39-6/) - Fix for icinga2 check processing We fixed a race-condition in icinga2, where a lock was not held long enough, causing threads to overwrite local state when processing two simultaneous check results for the same object. List of updated packages To solve the issue, the following packages have been updated: icinga2, icinga2-autosetup, icinga2-bin, icinga2-bin-debuginfo, icinga2-common, icinga2-configurator,
- [A First Step towards Multitenancy in Icinga 2](https://www.neteye-blog.com/blog/2025/03/18/a-first-step-towards-multitenancy-in-icinga2/) - Our older customers surely know that, in its earliest releases, NetEye 4 had no support for multitenancy. From a data perspective, there's just one big bin we throw everything into to be used later. Then, a debate about multitenancy began. Here at Würth Phoenix we've discussed at length about the best way to segregate data
- [A Practical Approach to Detect Suspicious Activity in MS SQL Server](https://www.neteye-blog.com/blog/2025/03/14/a-practical-approach-to-detecting-suspicious-activity-in-ms-sql-server/) - This article gives an overview and offers a practical tips to detecting some suspicious activities in Microsoft SQL Server, from configuring audit policies to leveraging Elastic for effective monitoring and threat detection. Introduction Microsoft SQL Server is one of the most widely used relational databases in the enterprise landscape, managing critical data and supporting essential
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/02/26/bug-fixes-for-neteye-4-40-5/) - Fix for icinga2 satellites zone validation Fixed an issue with the icinga2 satellites zone validation that caused the neteye satellite config create to fail if one of the icinga2-zone is a sub-string of the others List of updated packages To solve the issue, the following packages have been updated icinga2-2.14.3_neteye1.55.4-1.el8.x86_64.rpm icinga2-autosetup-2.14.3_neteye1.55.4-1.el8.x86_64.rpm icinga2-bin-2.14.3_neteye1.55.4-1.el8.x86_64.rpm icinga2-bin-debuginfo-2.14.3_neteye1.55.4-1.el8.x86_64.rpm icinga2-common-2.14.3_neteye1.55.4-1.el8.x86_64.rpm icinga2-configurator-2.14.3_neteye1.55.4-1.el8.noarch.rpm
- [Bug Fixes for NetEye 4.40,4.39 and 4.38](https://www.neteye-blog.com/blog/2025/02/26/bug-fixes-for-neteye-4-404-39-and-4-38/) - Remove "Drop non-existing group during Sync" on LDAP user federations Remove flag “Drop non-existing group during Sync” on LDAP user federations List of updated packages To solve the issue, the following packages have been updated: keycloak, keycloak-autosetup, keycloak-configurator, keycloak-python, to versions: for NE 4.38 25.0.5_neteye1.18.14-1 for NE 4.39 25.0.5_neteye1.20.4-2 for NE 4.40 25.0.5_neteye1.21.4-2
- [NetEye 4 – Security Advisory](https://www.neteye-blog.com/blog/2025/02/22/neteye-4-security-advisory-13/) - Important: IcingWeb2 Module Analytics security update Type/Severity NetEye Product Security has rated this update as having a Medium security impact. Topic An update for the package icingaweb2-module-analytics is now available for NetEye 4. Security Fix for NetEye 4.40 1.60.3-1 CVSS: 6.3 (medium): CVSS3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N For a detailed overview of the security issue(s), including the impact, CVSS score, acknowledgments, and
- [NetEye 4 – Security Advisory](https://www.neteye-blog.com/blog/2025/02/20/neteye-4-security-advisory-12/) - Important: GLPI security update Type/Severity NetEye Product Security has rated this update as having a security impact of High Topic An update for the package glpi is now available for NetEye 4. Security Fix for NetEye 4.40 10.0.18_neteye1.17.0-1 For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/02/18/bug-fixes-for-neteye-4-40-4/) - Fix for after-login redirect in IcingaWeb2 Fixed an issue with the post-login redirect that, in cases of session expiration, would cause navigation to an incorrect page after re-authentication. List of updated packages To solve the issue, the following packages have been updated icignaweb2-module-neteye to version 1.160.4-1
- [Explaining Your Content with Complex Animations, Part 3](https://www.neteye-blog.com/blog/2025/02/28/explaining-your-content-with-complex-animations-part-3/) - Welcome back! Last time we looked at some concrete examples of animations where you can use math to animate large numbers of objects, field-like effects, or complex behavior. Today let's look at the principal barrier to using an animation you make (if it's not a filled rectangle and if you want to put it in
- [Managing Alerts with JSM: Focus on Incident Management (Part 1)](https://www.neteye-blog.com/blog/2024/11/22/managing-alerts-with-jsm-focus-on-incident-management-part-1/) - Alerts are critical signals that demand immediate attention to minimize disruptions and maintain smooth operations. Proactively managing alerts throughout their lifecycle is key to effective event-driven workflows, incident response, and business continuity. By leveraging alerting tools within Jira Service Management (JSM), teams can detect and resolve incidents faster, improve collaboration, and enhance service reliability. In
- [Explaining Your Content with Complex Animations, Part 1](https://www.neteye-blog.com/blog/2024/10/31/explaining-your-work-by-creating-complex-animations-part-1/) - Hello budget videographers and user guide writers! Have you ever looked on with envy at some of those fancy animations in online videos and wondered "How can I do that?" Well, I can't solve all your problems, but I can give you some examples, pointers and resources to get you started. For your videos you
- [Explaining Your Content with Complex Animations, Part 2](https://www.neteye-blog.com/blog/2024/12/18/explaining-your-content-with-complex-animations-part-2/) - Hi again! At the end of my last blog I left you hanging. I promised some concrete examples of useful animations you could do in-house, using just math. And here I am, examples in hand! Although they could be finished animations in specific situations, they're more likely to be parts of a larger picture, so
- [Monitoring Printer Logs](https://www.neteye-blog.com/blog/2025/02/17/monitoring-printer-logs/) - A customer recently asked me to monitor printer logs. His use case was to check which users were doing the printing, and what they were printing on the company's printers, including their page numbers. The printers in question had SNMP available, but didn't provide this particular information. In addition, the printers didn't have an API
- [Bug Fixes for NetEye 4.39](https://www.neteye-blog.com/blog/2025/02/13/bug-fixes-for-neteye-4-39-5/) - Renewed Elastic Enterprise License We renewed the Elastic Enterprise license, which was originally scheduled to expire on February 28, 2025. The new expiration date is now February 28, 2026. If your NetEye version is older than 4.39 and you wish to utilize the Elastic Enterprise license, you will need to upgrade to at least NetEye
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/02/13/bug-fixes-for-neteye-4-40-3/) - Renewed Elastic Enterprise License We renewed the Elastic Enterprise license, which was originally scheduled to expire on February 28, 2025. The new expiration date is now February 28, 2026. If your NetEye version is older than 4.39 and you wish to utilize the Elastic Enterprise license, you will need to upgrade to at least NetEye
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/02/11/bug-fixes-for-neteye-4-40-2/) - Fix of an unnecessary Elasticsearch restart We’ve fixed an issue during the Elasticsearch update and upgrade procedures which, in case of the availability of a kernel update, would have caused an unnecessary restart of the service even if Elasticsearch itself was not updated. List of updated packages To solve the aforementioned issues, the following packages
- [Dynamics 365 Finance & Operations (On -Premises) Connectivity: New Authentication Model](https://www.neteye-blog.com/blog/2025/02/05/dynamics-365-finance-operations-on-premises-connectivity-new-authentication-model/) - Scenario Dynamics 365 Finance & Operations (On-Premises) is an ERP (Enterprise Resource Planning) solution which can be deployed on physical or virtual servers. It’s the right solution for Companies that don’t want to store their personal data in the Azure cloud. The ERP architecture requires the configuration of a standalone Service Fabric which is connected
- [Bug Fixes for NetEye 4.40](https://www.neteye-blog.com/blog/2025/02/06/bug-fixes-for-neteye-4-40/) - SIEM - Log Management We’ve enhanced the installation process for the SIEM module. The Filebeat setup will now use a dedicated user instead of the Kibana root user. This change strengthens the security of the installation process by reducing the risk associated with using elevated privileges. General - NetEye Setup We’ve resolved an issue in
- [Bug Fixes for NetEye 4.39](https://www.neteye-blog.com/blog/2025/02/04/bug-fixes-for-neteye-4-39-4/) - General RPM Mirror setup We’ve resolved an issue with RPM mirror which prevents to successfully run the neteye rpmmirror setup command due to incompatible versions of pulp-glue and pulp docker image. Monitoring / Detection Icinga2 We fixed an issue in icinga2, where the downtimes of removed monitoring objects would never be closed in the ido,
- [Monitoring NetApp Storage Devices over a RESTful API](https://www.neteye-blog.com/blog/2025/01/24/monitoring-netapp-storage-devices-over-a-restful-api/) - NetApp® ONTAP® 9.6 and later versions include support for an expansive RESTful web services API. In comparison to an ONTAPI® application, the REST API offers a vastly simplified and workflow-driven user experience, allowing you to perform multiple operations on the storage objects with a single API. REST is the industry standard for API development, and
- [NFS and Elasticsearch: A Storage Disaster for Data but a Lifesaver for Snapshots](https://www.neteye-blog.com/blog/2025/01/31/nfs-and-elasticsearch-a-storage-disaster-for-data-but-a-lifesaver-for-snapshots/) - When designing an Elasticsearch architecture, choosing the right storage is crucial. While NFS might seem like a convenient and flexible option, it comes with several pitfalls when used for hosting live Elasticsearch data (hot, warm, cold, and frozen nodes). However, NFS proves to be an excellent choice for storing snapshots and searchable snapshots. Here’s why.
- [Understanding Headers in Elastic Agents: Normal Mode vs. Fleet Server Mode](https://www.neteye-blog.com/blog/2025/01/29/understanding-headers-in-elastic-agents-normal-mode-vs-fleet-server-mode/) - Elastic Agents are flexible and powerful tools used within the Elastic Stack for collecting and shipping logs, metrics, and other data to Elasticsearch. However, the headers they use can vary depending on whether they are running in "normal" mode or acting as a Fleet Server. Let's explore these differences. Note that a fleet server is
- [GUI-based Setup of GLPI Network Inventory: The Agent Toolbox](https://www.neteye-blog.com/blog/2024/12/23/gui-based-setup-of-glpi-network-inventory-the-agent-toolbox/) - GLPI agents have various additional functionalities, from network discovery to remote inventory and ESX inventory. These can be controlled either directly from the command line (see my colleague’s blog https://www.neteye-blog.com/2024/07/glpi-device-discovery/ for some practical examples) or in a centralized way from the server, via the GLPI Inventory plugin (https://www.neteye-blog.com/2024/12/gui-based-glpi-network-inventory-setup-with-the-glpi-inventory-plugin/). There's also another handy way to configure
- [That Time I Brought a Velociraptor and a Chainsaw into the SOC](https://www.neteye-blog.com/blog/2024/12/31/that-time-i-brought-a-velociraptor-and-a-chainsaw-into-the-soc/) - Yes, you read that title right. Today I'm going to tell you about the time I went on a hunt to bring a velociraptor and a chainsaw into the Würth Phoenix Security Operations Center. I know that it might sound strange to many and few will believe it, but I'm sure that once you get
- [NetEye 4.40 Release Notes](https://www.neteye-blog.com/blog/2025/02/01/neteye-4-40-release-notes/) - Welcome to version 4.40 of our NetEye v4 Unified Monitoring Platform. For this release, we're taking you on a calming walk around Lake Dobbiaco, through a calm snowy winter landscape. The area is covered under a small layer of snow and the cloud-covered sky illuminates the scene softly. Just don't forget to pack warm winter
- [Streamlining SSH Access: Leveraging CAs and Principals (Part 1)](https://www.neteye-blog.com/blog/2025/01/23/streamlining-ssh-access-leveraging-cas-and-principals-part-1/) - Managing an SSH server is easy when you only have one or two servers, but what happens when you have thousands of servers? "Authorized keys" and "known hosts" files are hard to manage across large teams with permissions and roles. Known Hosts and HTTPS Can you tell me the difference between these two images? Nothing.
- [Sign Like a Pro: A Simple Guide to GPG and Web of Trust for Commits](https://www.neteye-blog.com/blog/2025/01/22/sign-like-a-pro-simple-guide-to-gpg-and-web-of-trust-for-commits/) - Some time ago, one of my colleagues wrote about git commits and why we should sign them (you should read this). But how can we actually do that? The Web of Trust of GPG comes to our aid. Let's see how. OpenPGP is the open-source variant of PGP (Pretty Good Privacy), a protocol and software
- [Icinga Director Self Service API Not Working After Keycloak Activation](https://www.neteye-blog.com/blog/2025/01/20/icinga-director-self-service-api-not-working-after-keycloak-activation/) - After updating to NetEye version 4.38 and activating authentication via Keycloak, the Icinga Director Self Service API no longer works. For instance if you install the Icinga agents using a Powershell script that automatically creates the host objects in the Icinga Director when it's called, then this process will no longer work. That means you
- [Inside the Red Team Toolbox: Linux Info-Gathering](https://www.neteye-blog.com/blog/2025/01/16/inside-the-red-team-toolbox-linux-info-gathering/) - In the realm of red teaming, rapid and efficient information gathering is very important. To streamline this process, we've developed Vermilion, a lightweight post-exploitation tool for the rapid collection and optional exfiltration of sensitive data from Linux systems.A significant percentage of computational workflows worldwide run on GNU/Linux. Primarily used in servers and increasingly in workstations,
- [Elasticsearch Magic: Achieving Zero Downtime during User Guide Updates](https://www.neteye-blog.com/blog/2025/01/17/elasticsearch-magic-achieving-zero-downtime-during-user-guide-updates/) - In a previous blog post by one of my colleagues, we shared how we developed a powerful semantic search engine for our NetEye User Guide. This solution uses Elasticsearch in combination with machine learning models like ELSER to index and query our documentation. While the proof of concept (POC) worked great, there was a challenge
- [Plugin Systems and Capabilities](https://www.neteye-blog.com/blog/2025/01/13/plugin-systems-and-capabilities/) - At the 36th Chaos Communication Congresses back before COVID forced a three year break, I attended a talk from the German tech-blogger Fefe. There he talked about the “nützlich-unbedenklich Spektrum” or in English, the useful – harmless spectrum. He argued that all software lies on that spectrum to some degree. Of course one could argue
- [Stay ahead of Cyber Threats: Redefining Security for a Rapidly Changing Digital World](https://www.neteye-blog.com/blog/2025/01/10/stay-ahead-of-cyber-threats-redefining-security-for-a-rapidly-changing-digital-world/) - As the digital arena evolves at lightning speed, so do the tactics of those seeking to breach it. Traditional security measures are no longer enough for today's increasingly sophisticated cyber threats. The perimeter of technological infrastructure is no longer carved in stone - it shifts continuously, reflecting systems that are more distributed and challenging to
- [Maintaining Forks of Upstream Projects without git](https://www.neteye-blog.com/blog/2024/12/31/maintaining-forks-of-upstream-projects-without-git/) - When adopting an open-source software project that you don't own, you may find it necessary to modify it partially to meet your specific requirements. However, as you implement those changes, it's important to recognize that the upstream project will eventually update itself, leading to potential conflicts in the files that both you and the upstream
- [GitOps: Pull-based vs Push-based Approaches](https://www.neteye-blog.com/blog/2024/12/31/gitops-pull-based-vs-push-based-approach/) - When approaching a GitOps workflow you'll soon have to choose between push- and pull-based approaches. In this blog post I'll explain the high-level differences of each approach with pros and cons. What is GitOps? GitOps stands for Git Operation: in this workflow all the infrastructure configurations are stored in a Git repository, which represents the
- [Display a Service's Availability with ITOA](https://www.neteye-blog.com/blog/2024/12/31/display-services-availability-with-itoa/) - This is that Time of the Year when you begin preparing all your SLA Reports to help you understand how your important services behaved during the year itself. It's like the end of a horse race, when the bets are settled and you realize whether the bets you placed were right or not. And since
- [Bug Fixes for NetEye 4.39](https://www.neteye-blog.com/blog/2025/01/10/bug-fixes-for-neteye-4-39-3/) - We have resolved an issue that prevented Elastic Agents from successfully connecting to the Fleet Server when their requests were excessively large. Additionally, we addressed a bug in the neteye update and neteye upgrade processes, which was incorrectly initiating a rolling restart of Elasticsearch also in cases where this was not necessary. We updated the
- [Gravy Analytics breached (to be confirmed)](https://www.neteye-blog.com/blog/2025/01/07/gravy-analytics-breached/) - WARNING: This post is constantly updated based on new evidence related to the data breach. The famous company Gravy Analytics seems to have suffered an attack. In fact, inside the XSS forum, a post was published, on Sunday night by the user nightly, reporting some evidence of what appears to be a really important exfiltration.
- [How to Use the New 'Request Type Groups' Feature in Jira Service Management](https://www.neteye-blog.com/blog/2024/12/31/how-to-use-the-new-request-type-groups-feature-in-jira-service-management/) - Have you always found Portal Groups in Jira Service Management (JSM) to be useful for organizing and triaging requests, but noticed they couldn’t be used to filter issues? Atlassian has addressed this limitation with a new categorization feature called "Request Type Groups," which now enables grouping and filtering requests by these groups. This feature may
- [Supporting HTTP/2 and gRPC in nginx](https://www.neteye-blog.com/blog/2024/12/30/supporting-http-2-and-grpc-in-nginx/) - Since its introduction the HTTP/2 protocol has been adopted more and more in servers and clients applications thanks to its improved performance compared to its ancestor HTTP/1.1. This poses an issue to services exposed via nginx, since some specific configurations are needed on nginx in order to allow clients and servers to fully use the
- [How to Schedule Issues with the New Calendar View in Jira Service Management](https://www.neteye-blog.com/blog/2024/12/30/how-to-schedule-issues-with-the-new-calendar-view-in-jira-service-management/) - Jira Service Management now includes a new feature that lets you easily schedule your activities. What? You haven’t activated it yet? No worries, you’re in the right place! Here’s a quick guide to how to enable it and make the most out of it in just a few clicks. How to Enable the Calendar View If
- [Exploring Authenticated Scans in Greenbone](https://www.neteye-blog.com/blog/2024/12/30/exploring-authenticated-scans-in-greenbone/) - While traditional vulnerability scanning techniques provide valuable insights from the outside, authenticated scans offer a deeper, more comprehensive understanding of system security by providing more vulnerability details on the scanned system from an internal perspective. By leveraging valid system credentials, Greenbone's authenticated scans provide critical insights about system configurations, software versions, and potential internal weaknesses
- [Red and Blue Team Cooperation: Attack to Improve](https://www.neteye-blog.com/blog/2024/12/30/red-and-blue-teams-cooperation-attack-to-improve/) - Nowadays attacks evolve over time and threat actors are following different ways to reach the same objectives. This could represent a problem on the defensive side. How can you always be up-to-date and ready to detect, but then when a vulnerability is exploited be able to act in several ways depending on the threat actor?
- [How to Configure Kibana to Use a Proxy Server with a Certificate via the NODE_EXTRA_CA_CERTS Variable](https://www.neteye-blog.com/blog/2024/12/29/how-to-configure-kibana-to-use-a-proxy-server-with-a-certificate-via-the-node_extra_ca_certs-variable/) - When using Kibana in environments that require a proxy to reach external services, you might encounter issues with unrecognized SSL certificates. Specifically, if the proxy is exposed with its own certificate and acts as an SSL terminator, requests made by Kibana to external URLs can fail with HTTP status code errors. In this blog post,
- [Elastic Universal Profiling - Profiling native code](https://www.neteye-blog.com/blog/2024/12/27/elastic-universal-profiling-profiling-native-code/) - In a previous post we went through the configuration of Elastic Universal Profiling in NetEye, seeing how we can profile applications written in programming languages that do not compile to native code (for example Python, PHP, Perl, etc.) But what happens if the application is written for example in C, Go or Rust? Let's take
- [Developing Integrations for Greater Efficiency: Jira and Invicti](https://www.neteye-blog.com/blog/2024/12/23/develop-integrations-for-greater-efficiency-jira-and-invicti/) - In today's digital landscape where cyber threats are constantly evolving, recurring vulnerability scanning is not only a best practice, but a strategic imperative with the aim of minimizing exposure to potential risks. Regular vulnerability scanning helps identify weaknesses in systems, applications and infrastructures, allowing them to be addressed in a timely and strategic way before
- [Elastic Observability Engineer Certification: A Hands-On Perspective](https://www.neteye-blog.com/blog/2024/12/20/elastic-observability-engineer-certification-a-hands-on-perspective/) - Recently, I had the opportunity to take the Elastic Observability Engineer certification exam by Elastic. I'd like to share my experience, the challenges I faced, and some tips for anyone considering this path. What to Expect from the Exam The exam primarily focuses on practical skills in using the Elastic Stack for monitoring and observing
- [Continuous Profiling with NetEye – Elastic Universal Profiling](https://www.neteye-blog.com/blog/2024/12/23/continuous-profiling-with-neteye-elastic-universal-profiling/) - Elastic 8.16, which comes with NetEye 4.39, made Elastic Universal Profiling generally available for self-hosted installations. This means that NetEye SIEM installations will now be able to take advantage of the continuous profiling solution by Elastic. In this blog post we'll explain what you can achieve with continuous profiling, and how you can configure it
- [Managing Alerts with JSM: Focus on Incident Management (Part 2)](https://www.neteye-blog.com/blog/2024/12/20/managing-alerts-with-jsm-focus-on-incident-management-part-2/) - In the first part of this series, we explored how Jira Service Management (JSM) helps streamline Incident Management, aligning with ITIL v4 best practices. Incident Management aims to restore normal service operation as quickly as possible after a disruption, ensuring minimal impact on business operations. Events – changes in the system's state – can trigger
- [Using Special Context Actions in Maps (NagVis)](https://www.neteye-blog.com/blog/2024/12/20/using-special-context-actions-in-maps-nagvis/) - NagVis, which in NetEye 4 is called the "Maps" Application, is a visualization add-on for the well-known network management system Nagios® and Icinga. NagVis can visualize monitoring status data as objects overlaid on maps to display them in different layouts: Physical (e.g., all hosts in a rack/room/department) Logical (e.g., all application servers) Geographical (e.g., all
- [Bug Fixes for NetEye 4.39](https://www.neteye-blog.com/blog/2025/01/07/bug-fixes-for-neteye-4-39-2/) - We fixed a bug which was causing Elastic Agents to disconnect themselves at regular intervals from Fleet. We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, filebeat, filebeat-autosetup, filebeat-neteye-config, logstash, logstash-neteye-config, logstash-autosetup, logstash-neteye-config-autosetup, kibana, kibana-autosetup, kibana-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license to version 8.16.0_neteye3.69.4-1
- [Tips for Writing Efficient Python Code](https://www.neteye-blog.com/blog/2024/12/31/tips-for-writing-efficient-python-code/) - Let’s take a look at three lesser-known Python libraries that can boost your code's efficiency without diving into complicated implementations.
- [Configure Kubernetes Index Lifecycle Policies in Elastic Stack](https://www.neteye-blog.com/blog/2024/12/30/configure-kubernetes-index-lifecycle-policies-in-elastic-stack/) - You might have noticed that the kubernetes integration uses the default ILP. It means that those logs and metrics have an unlimited retention...
- [Optimizing Log Collection in Kubernetes/OpenShift with Elastic Stack](https://www.neteye-blog.com/blog/2024/12/30/optimizing-log-collection-in-kubernetes-openshift-with-elastic-stack/) - Optimizing log collection becomes crucial for maintaining system efficiency and resource utilization. It relies on implementing the right collection strategy...
- [Correlate Services without a Business Process](https://www.neteye-blog.com/blog/2024/12/04/correlate-services-without-business-processes/) - In today’s episode of "Fantastic Checks and Where to Find Them", I’ll share how I managed to correlate two or more services on a single host, or even across different hosts. This story begins with a recent customer request. Initially, I considered using the Business Process module that's already integrated in NetEye. However, after analyzing
- [How the “Customer and Organization Profile” feature can help you](https://www.neteye-blog.com/blog/2024/01/24/how-the-customer-and-organization-profile-feature-can-help-you/) - Are you looking for a feature to help manage your customers’ details in Jira Service Management but don’t know where to start?Do you lack access to the Premium license that could make this task easier by allowing you to create Asset fields for managing customer data? Do your Jira users barely see the reporter details,
- [How to Add Client Company Details in Jira Service Management](https://www.neteye-blog.com/blog/2024/04/29/how-to-add-client-company-details-in-jira-service-management/) - Do you want to add details about your clients’ companies to Jira Service Management but don’t know how to do it?Do you have a Standard JSM license and not yet a Premium one, where you could create new schemas and manage your clients that way?No worries! In just a few clicks, you can add your
- [“Products and entitlements”: the new Jira Service Management feature](https://www.neteye-blog.com/blog/2024/09/04/products-and-entitlements-the-new-jira-service-management-feature/) - Hi there, you’ve added the ability to include your customers’ details and their companies in Jira Service Management, but you still need the option for them to choose one or more products for which you provide services? Don’t worry! With this new feature, you can add a field so your customers can select the service
- [How to Monitor Your OpenShift Cluster with the Elastic Stack](https://www.neteye-blog.com/blog/2024/12/20/how-to-monitor-your-openshift-cluster-with-elasticstack/) - It's advisable not to rely solely on the built-in monitoring system of OpenShift; instead use an additional external monitoring solution, like elasticstack
- [Smart Confluence: Automating Actions Based on Text Content](https://www.neteye-blog.com/blog/2024/12/20/smart-confluence-automating-actions-based-on-text-content/) - In today's fast-paced work environment, efficiency is paramount. Yet many Confluence users are missing out on a powerful time-saving feature: automation. Often overlooked, Confluence automation offers a robust toolkit to simplify workflows and improve collaboration among teams. This article looks at one of the most versatile aspects of Confluence automation: triggering actions based on text
- [Bug Fixes for NetEye 4.39](https://www.neteye-blog.com/blog/2024/12/20/bug-fixes-for-neteye-4-39/) - We fixed a bug which was causing the Elasticsearch upgrade procedure to fail in a race condition. In particular, after the upgrade of the Elasticsearch RPM and before the restart of the service, the running Elasticsearch service could possibly fail loading some libraries, hence breaking the upgrade procedure. We updated the following packages: elastic-agent, elastic-agent-autosetup,
- [How to Monitor MSSQL in a Synchronized, High-availability Setup](https://www.neteye-blog.com/blog/2024/12/19/how-to-monitor-mssql-in-a-synchronized-high-availability-setup/) - This article describes an ad-hoc monitoring solution for MSSQL within a synchronized high-availability setup. Due to the circumstances surrounding the request from a customers’ request, with this setup we couldn't use the standard command/check that' are's commonly used, but an additional layer was required to manage the resources involved. Use Case The behavior of MSSQL
- [NetEye Install and Upgrades: Moving to a Parallel Architecture](https://www.neteye-blog.com/blog/2024/12/19/neteye-install-and-upgrades-moving-to-a-parallel-architecture/) - Hello everyone! Today, I’d like to share an exciting improvement we’ve made to the installation and upgrade procedures in NetEye, introducing a faster and more efficient parallel architecture! Why Modernize the Installation and Upgrade Processes? At Würth Phoenix, we strive to make NetEye not only powerful but also highly efficient and reliable for our users.
- [Find Applied Notification Rules with the Notification Matcher Module](https://www.neteye-blog.com/blog/2024/12/19/find-applied-notification-rules-with-the-notification-matcher-module/) - When you're monitoring complex IT system infrastructure, and have over one hundred notification rules configured that make use of many custom variables, finding out exactly what notification rule is applied on a Host/Service can quickly become tricky. The Notification Matcher module allows you to find out exactly which notification rule is applied on a Host/Service.
- [SAP Monitoring: A Journey to Comprehensive Visibility on NetEye - Part 1](https://www.neteye-blog.com/blog/2024/12/18/sap-monitoring-a-journey-to-comprehensive-visibility-on-neteye-part-1/) - Monitoring SAP systems has always been a major hurdle in every job I've held. SAP has its own monitoring tools, primarily CCMS, but extracting metrics and configurations from the SAP world has always been a challenge. In the past, I used SNMP traps configured in CCMS to send alerts when thresholds were exceeded. However, this
- [GitOps: Push vs Pull? Choosing the Right Approach for Production Deployments](https://www.neteye-blog.com/blog/2024/12/18/gitops-push-vs-pull-choosing-the-right-approach-for-production-deployments/) - Starting a new project is often an opportunity to reevaluate established practices. In our case, deploying a containerized application to production with OpenShift led us to revisit our GitOps strategy. Using ArgoCD as our GitOps tool raised a fundamental question: What is the best way to move changes into production—push or pull? Understanding Push and
- [Embracing Idempotency: Writing Your Own Ansible Collection - From Code to Tests](https://www.neteye-blog.com/blog/2024/12/19/embracing-idempotency-writing-your-own-ansible-collection-from-code-to-tests/) - Ansible is a powerful automation tool that simplifies the configuration, deployment, and management of systems. At its heart lies the concept of idempotency — the guarantee that applying the same operation any number of times will yield the same result. Writing your own Ansible collection can unlock a new level of customization and control for
- [Introduction to Container Resource Management and What We Can Learn for Monitoring](https://www.neteye-blog.com/blog/2024/12/18/introduction-to-container-resource-management-and-what-we-can-learn-for-monitoring/) - Recently, I've been deeply involved in OpenShift monitoring tasks, including configuring Grafana dashboards and creating Prometheus alerts. During this time, I've focused on effectively monitoring container resources such as CPU and memory. Container orchestration platforms like Kubernetes and OpenShift require efficient resource utilization and precise resource management in order to optimize performance and ensure application
- [Jira Assets: The Key to Successful Projects](https://www.neteye-blog.com/blog/2024/11/22/jira-assets-the-key-to-successful-projects/) - What are Assets in Jira? Jira is not only a tool for managing projects, tasks, tickets and bugs but also a powerful way to manage and track assets, making it an even more indispensable tool for teams. But what exactly is an asset? An asset can be defined simply as the physical or digital representation
- [Automating Processes with Jira: Boost Your Efficiency](https://www.neteye-blog.com/blog/2024/10/17/automating-processes-with-jira-boost-your-efficiency/) - Tired of wasting time on repetitive, mundane tasks? Want to focus on more strategic activities while saving time and money? Looking to automate emails to your team? Well, automating your processes with Jira is the solution for you! What is Automation in Jira? Jira helps you automate repetitive tasks so you can focus on what
- [Importing Your Data into Jira: A Quick Guide](https://www.neteye-blog.com/blog/2024/09/09/importing-your-data-into-jira-a-quick-guide/) - Ready to transfer your projects from another tool to Jira? Here's how to do it quickly and easily: 1. Prepare your file: Organize your data in a format that Jira recognizes, such as a CSV file. Make sure the fields match those in Jira (title, description, etc.). Here's an example of what the file should
- [NetEye and RHUI Repositories](https://www.neteye-blog.com/blog/2024/12/16/neteye-and-rhui-repositories/) - Recently we had to provision a couple of NetEye machines on Azure for production purposes. Our procedure essentially creates a RedHat 8.10 VM starting with an official RedHat image, and adds the NetEye repositories to install the required software. This procedure is what we usually follow to create training environments, but these machines are usually
- [GUI-based GLPI Network Inventory Setup with the “GLPI Inventory” Plugin](https://www.neteye-blog.com/blog/2024/12/16/gui-based-glpi-network-inventory-setup-with-the-glpi-inventory-plugin/) - GLPI agents not only perform a local inventory of the computer where they were installed, but also include several tools for discovering and inventorying other devices in their network: A network discovery task that scans an IP range (ping, arp table lookup) and retrieves essentially a list of “alive” IP addresses A network inventory task
- [Unlocking Jira's Power: Mastering Issue Security and Permissions](https://www.neteye-blog.com/blog/2024/10/16/unlocking-jiras-power-mastering-issue-security-and-permissions/) - Imagine you're working on a project that involves sensitive company information. How can you ensure that only the right people can see and edit this data? Jira has the answer! In today's fast-paced digital landscape, security remains a top priority for project management tools. In Jira, leveraging Issue Security Schemes alongside Permission Schemes ensures that
- [Atlassian News ~ End of the Year Edition](https://www.neteye-blog.com/blog/2024/12/10/atlassian-news-end-of-the-year-edition/) - Welcome, everyone to our 'End of the Year' Atlassian News! A lot has happened this year in the Atlassian world, and staying up to date is a big challenge 😵 So... I'm here to do the dirty work for you, and summarize all the latest features and news from the Atlassian ecosystem (you're welcome😂). So
- [Sample osquery Investigations for a Security Incident](https://www.neteye-blog.com/blog/2024/12/12/sample-osquery-investigations-for-a-security-incident/) - Note: This description of a security analyst's daily routine is fictitious. However, the osquery examples have been tested and can therefore be used as a template for your own research. 1. Alarm Detection Today started with a high-severity alarm from our Elastic Security system. The alert indicated suspicious activity on host HOST-1234, suggesting potential malware execution. The
- [Elevate Your Atlassian Experience: Claim Your Domain Today!](https://www.neteye-blog.com/blog/2024/07/25/benefits-of-claiming-domains-atlassian-cloud/) - Why Claiming Your Domain in Atlassian is a Game-Changer In today's interconnected business world, security and efficiency are paramount. Atlassian, with its suite of powerful collaboration and project management tools, offers a robust platform to streamline workflows. To truly maximize the potential of Atlassian, claiming your domain and centralizing user management is a critical step.
- [Don't Panic! Recover Your Jira Data Now!](https://www.neteye-blog.com/blog/2024/05/14/recover-your-jira-cloud-instance/) - Data loss happens. Whether it's accidental deletion, integration issues, or unexpected errors, a robust backup strategy can save the day. This guide walks you through restoring your Jira Cloud instance using a downloaded backup, helping you get back on track quickly. Before We Begin: Understanding Your Backup This is a key point because you will
- [Let's Discover ES|QL](https://www.neteye-blog.com/blog/2024/12/10/lets-discover-essql/) - My colleague Daniel has already described a concrete case in which he used ES|QL. Moved by curiosity I decided to attend an Elastic webinar on ES|QL, and I discovered some interesting things that I'd like to share with those of you who like using Elastic. Elastic provides several possible ways to do searches. Current query
- [Grafana 11 Compatibility](https://www.neteye-blog.com/blog/2024/12/03/grafana-11-compatibility/) - Scenario NetEye 4 provides a graphical engine to represent time series monitoring data stored in an Influx database: the Grafana engine accessible through the ITOA menu on the left hand side. Grafana is very powerful: it consists of a dashboard built up of multiple individual panels. A lot of them are native to Grafana, but
- [Bug Fixes for NetEye 4.37+](https://www.neteye-blog.com/blog/2024/12/06/bug-fixes-for-neteye-4-37-9/) - After the previous release of an Icinga2 bugfix for a race-condition during the shutdown, some issues with the connection to satellite nodes emerged. This bugfix release is a cleanup we worked on in cooperation with Icinga2 to address those issues. We updated the following packages for NetEye 4.37 and 4.38: icinga2, icinga2-neteye-config, icinga2-autosetup, icinga2-resources, icinga2-bin,
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/12/05/bug-fixes-for-neteye-4-38-12/) - We fixed an issue related to the upgrade path from 4.37 to 4.38, where the upgrade could have blocked at the secure install phase due to the missing retrieval of upgrade checkpoints. We updated the following packages: neteye-upgrade-manager to version 0.61.3-2
- [Unlocking the Potential of AI at NetEye User Group](https://www.neteye-blog.com/blog/2024/12/04/neteye-user-group-2024/) - On September 26, 2024, the annual NetEye User Group event took place at Eataly Verona. This year's focus was on the remarkable capabilities of artificial intelligence and how it can be applied effectively within the NetEye ecosystem.
- [The Importance of Being...Informed for Finding Your Way across All Jira Products!](https://www.neteye-blog.com/blog/2024/11/29/the-importance-of-being-informed-to-find-your-way-across-all-the-jira-products/) - This guide will assist you in determining which Jira products are best suited to cover different organizational management perimeters. What's the origin of this complexity and why do we need to solve it? It's relatively straightforward for anyone to perceive the complexities of effectively managing an organization. However, it's also evident that it would be
- [The Story of a Strange Business Process](https://www.neteye-blog.com/blog/2024/11/30/the-story-of-a-strange-business-process/) - Today I'd like to share a peculiar request I received during one of my recent Consulting Sessions. It's just a highly specific Business Case, but it led me to wonder: what if I could find a way to generalize it? For now, that's just a fantasy, but let me tell you the whole story so
- [Bug Fixes for NetEye 4.37, 4.36 and 4.35](https://www.neteye-blog.com/blog/2024/12/02/bug-fixes-for-neteye-4-37-4-36-and-4-35/) - We’ve fixed an issue related to the RPM Mirror where the sync would have failed after the one performed during the neteye rpmmirror setup command, due to a dependency change. We updated the following packages: neteye-pulp3-mirror to version 1.2.2-2 Note: to apply the bug fix, run the neteye rpmmirror setup after updating the NetEye Master
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/12/02/bug-fixes-for-neteye-4-38-11/) - For ntopng we fixed license limit enforcement, which could lead to flow drops. Furthermore, we’ve fixed an issue related to the RPM Mirror where the sync would have failed after the one performed during the neteye rpmmirror setup command, due to a dependency change. Note: to apply the bug fix, run the neteye rpmmirror setup
- [NetEye 4.39 Release Notes](https://www.neteye-blog.com/blog/2024/12/01/neteye-4-39-release-notes/) - Welcome to version 4.39 of our NetEye v4 Unified Monitoring Platform. This stunning drone panoramic photo captures the frozen beauty of Lake Carezza, nestled in Northern Italy’s winter landscape. The snowcapped mountain pass frames the serene lake, while the dense green pine forest adds depth to the scene. Cars winding along the road hint at
- [WP CTF 2024: Another Successful Edition!](https://www.neteye-blog.com/blog/2024/11/25/wp-ctf-2024-another-successful-edition/) - The 2024 edition of the WP CTF has ended, and we are thrilled to announce its resounding success! This year, approximately 80 participants formed teams from across Europe, including Greece, Germany, Austria, and the Netherlands. Staying true to tradition, WP CTF 2024 featured a Jeopardy-style competition with diverse categories such as AI, Cryptography, OSINT, Web,
- [How to Customize Your Barcode Scanning App (Part 2)](https://www.neteye-blog.com/blog/2024/11/26/how-to-customize-your-barcode-scanning-app-part-2/) - As outlined in Part 1 of this post, I'll now provide key tips for efficiently customizing the Stratacom Barcode Scanning app. This will involve creating objects and setting up object pickers, thus allowing barcode scans to dynamically connect with and retrieve data from your CMDB. By the end of this post, you’ll have a clear
- [How to Customize Your Barcode Scanning App (Part 1)](https://www.neteye-blog.com/blog/2024/11/26/how-to-customize-your-barcode-scanning-app-part-1/) - As presented in my previous blog post, we identified an opportunity to enhance a project of one of our customers by integrating Stratacom’s Barcode Scanning Solution. This tool is designed to seamlessly integrate with Jira, enabling rapid and precise barcode scanning directly into workflows. By implementing this solution, we’ll enhance operational efficiency, improve data accuracy,
- [Scaling SATAYO: OSINT Research with Apache Airflow](https://www.neteye-blog.com/blog/2024/11/18/scaling-satayo-osint-research-with-apache-airflow/) - Originally developed as a proof of concept, SATAYO was designed to gather and analyze OSINT (Open Source Intelligence) data on a single machine. Initially, the platform functioned as a single-threaded script, and scaling was only considered later. As SATAYO’s capabilities evolved to meet the needs of more clients and monitor a greater number of domains,
- [Configuring EnvironmentFile for Elastic Agents on NetEye Nodes](https://www.neteye-blog.com/blog/2024/11/08/configuring-environmentfile-for-elastic-agents-on-neteye-nodes/) - When deploying Elastic Agents, the method of installation can affect the configuration of the systemd service file. Specifically, .tgz deployments of Elastic Agents include the line EnvironmentFile=-/etc/sysconfig/elastic-agent in their systemd configuration (elastic-agent.service). However, Elastic Agents installed on NetEye nodes via RPM packages do not include this line in the EnvironmentFile by default. Adding the EnvironmentFile on NetEye Nodes To
- [Categories of documents – create more namespaces within an agent's environment](https://www.neteye-blog.com/blog/2024/10/24/categories-of-documents-create-more-namespaces-with-agents-environment/) - In the ever-evolving landscape of IT monitoring and management, the ability to efficiently handle multi-dimensional namespaces is crucial. Within NetEye, Log-SIEM (Elastic), provides a comprehensive solution for managing the single namespace dimension with the namespace of a data_stream. This blog post deals with multi-dimensional namespaces and how NetEye's Log-SIEM solution simplifies their management. Understanding Multidimensional
- [Now It's Really Easy to Activate OTP for Your Personal NetEye Account](https://www.neteye-blog.com/blog/2024/11/19/now-its-really-easy-to-activate-otp-for-your-personal-neteye-account/) - It's really easy now to activate OTP on your personal account with NetEye with our new authentication method. In the latest 4.38 version of NetEye we've introduced a new product to manage authentication (documentation here). In the future thanks to this new product we'll be able to define the various actions that each user can
- [Take Control of Your Assets from Anywhere with Just a Wave of Your Hand!](https://www.neteye-blog.com/blog/2024/11/14/take-control-of-your-assets-from-anywhere-with-just-the-touch-of-your-fingertips/) - Today I want to elaborate on how Jira CMDB (Configuration Management Database) works, and how we successfully integrated it with Stratacom's Barcode Scanning Solution for Jira Service Management and Assets. The integration of the two should significantly enhance user experience and provide a swift and seamless solution for managing company assets. What Is the Jira CMDB? At its core, the Jira CMDB allows organizations to
- [SATAYO And SOC: Exchanging Data For Better Insight](https://www.neteye-blog.com/blog/2024/11/08/satayo-and-soc-exchanging-data-for-better-insight/) - In this post, we'll explore the synergy between a Cyber Threat Intelligence (CTI) platform and a traditional Security Operations Center (SOC) service. For those interested in the topic, I recommend reading my previous article, where I demonstrated a concrete example of integration between our SIEM and SATAYO, the CTI platform we use in our SOC.
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/11/14/neteye-4-security-advisory-11/) - Synopsis Important: Icinga2 security update Type/Severity Security Advisory: Critical Topic An update for the package icinga2 is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of Critical. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [SAP HANA Monitoring](https://www.neteye-blog.com/blog/2024/11/12/sap-hana-monitoring/) - Monitoring the SAP HANA DB consists of executing the check_hana.sh script that uses SAP's hdbclient SQL client to connect to the HANA DB. Included in the script are queries to HANA to find out its status. Requirements USER SAP HANA HANA SQL client (hdbsql) Script check_hana.sh But let's look at the Configuration steps first. Create
- [The New NetEye User Guide Search: From POC to Production](https://www.neteye-blog.com/blog/2024/11/06/the-new-neteye-user-guide-search-from-poc-to-production/) - Hello everyone! As you may remember, a topic I like to discuss a lot on this blog is the Proof of Concept (POC) about how we could enhance search within our online NetEye User Guide. Well, we're happy to share with you how we've further developed the POC, specifically the process outlined in the first
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/11/12/neteye-4-security-advisory-10/) - Synopsis Important: GLPI security update Type/Severity Security Advisory: Critical Topic An update for the package glpi is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of Critical. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/04/30/neteye-4-security-advisor/) - Synopsis Important: GLPI security update Type/Severity Security Advisory: High Topic An update for the package glpi is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of High. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [How to Monitor the Reporting Scheduler](https://www.neteye-blog.com/blog/2024/10/29/how-to-monitor-reporting-scheduler/) - Automatically sending reports on a precise schedule is one of the great features of NetEye 4. It allows you to save a lot of time and effort when you need to periodically send reports to your customers. It doesn't matter how many reports, how many customers, or how often, we've got you covered. But as
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/11/05/bug-fixes-for-neteye-4-38-10/) - We’ve fixed an issue where the neteye satellite config send command would stop if no SSH connection was available or enabled for a satellite. Now, the command will skip those satellites, allowing configurations to continue for reachable ones, while manual configuration transfer can be addressed later. This enhances efficiency and streamlines your deployment process. We
- [The OpenAPI Tales: A New Dawn](https://www.neteye-blog.com/blog/2024/10/30/the-openapi-tales-a-new-dawn/) - When we talk about APIs, we developers are generally biased, and focus on how they're implemented technically – how they work, how they integrate into larger systems – and we settle for that. But there’s a valuable part of API development that often gets overlooked: creating their descriptions. This practice tends to be undervalued, so
- [Elasticsearch Restart and Network Tuning](https://www.neteye-blog.com/blog/2024/10/30/elasticsearch-restart-and-network-tuning/) - We all know that NetEye Upgrades are boring activities. Upgrading is important and useful because it brings you bug fixes and new features, but nonetheless it's extremely expensive in terms of time. The most boring, tiring and lengthy part is when you restart NetEye Services; if you have the SIEM Module installed, the time spent
- [The Power of Micro-Interactions: Enhancing UX in Front-end Development](https://www.neteye-blog.com/blog/2024/10/29/the-power-of-micro-interactions-enhancing-ux-in-front-end-development/) - In front-end development, the small details can have a big impact. Micro-interactions (those subtle animations and feedback elements that respond to user actions) are powerful tools for creating solid, smooth and engaging experiences. In this article, we will explore why they’re so effective, how to design them purposefully, and how to implement them efficiently with
- [Is Signing git Commits Really Useful?](https://www.neteye-blog.com/blog/2024/10/29/is-signing-git-commits-really-useful/) - Is signing git commits really useful? why do I have to sign my commits if I already have to authenticate using an ssh key to push the code?
- [Enhancing Cybersecurity with Elastic Defend: A Technical Consultant’s Perspective](https://www.neteye-blog.com/blog/2024/10/25/enhancing-cybersecurity-with-elastic-defend-a-technical-consultants-perspective/) - In today’s digital landscape, cybersecurity is paramount. As a technical consultant, I’ve seen firsthand how organizations struggle to keep up with evolving threats. One tool that's consistently stood out in the fight against cyber threats is Elastic Defend. In this blog post, I’ll delve into what Elastic Defend is, its key features, and how it
- [How Good UX Boosts Business and Cuts Costs](https://www.neteye-blog.com/blog/2024/10/21/how-good-ux-boosts-business-and-cuts-costs/) - User experience (UX) has become a vital component for companies that strive to stand out in today's competitive markets. Whatever the digital product may be, a solid UX design ensures that interactions between users and software are intuitive, efficient and satisfying.It's pretty easy to understand the benefits of such an approach in a consumer-oriented landscape,
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/24/bug-fixes-for-neteye-4-38-9/) - We fixed a bug in Icingaweb2 module Geomap that prevented users from declustering pins, even when fully zoomed in. Now, pins that are clustered together can be separated and viewed clearly by clicking the cluster icon at max zoom level, enhancing the overall map usability. We updated the following packages: icingaweb2-module-geomap to version 1.22.2-1 icingaweb2-module-geomap-configurator
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/24/bug-fixes-for-neteye-4-38-8/) - We fixed a bug in the host and service search configuration with custom fields that generated an error if only one of the two fields was filled in. SIEM - Log Management We have resolved a bug that caused one of our custom Elasticsearch procedures to fail. This script enabled users to modify index templates
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/22/bug-fixes-for-neteye-4-38-7/) - We resolved a bug in the Elastic Agent which was causing the Elastic Agent to temporarily losing its state (namely the state.enc file) during updates. We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, filebeat, filebeat-autosetup, filebeat-neteye-config, logstash, logstash-neteye-config, logstash-autosetup, logstash-neteye-config-autosetup, kibana, kibana-autosetup, kibana-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license to version 8.15.2_neteye3.66.7-1
- [Offloading Data Enrichment to Satellite Machines with Logstash](https://www.neteye-blog.com/blog/2024/10/18/offloading-data-enrichment-to-satellite-machines-with-logstash/) - Discover how offloading data enrichment to Logstash satellite nodes dramatically improved NetEye performance, reduced bandwidth, and boosted scalability.
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/22/bug-fixes-for-neteye-4-38-6/) - Assetmanagement - GLPI We fixed a bug for the GLPI single sign on, where every login through the SSO would write two line of updates for the user permissions to the user object history. SIEM - Log Management We resolved a bug in Elasticsearch that occurred when a mount (for example, an NFS share) was
- [My Laptop Is Broken …. What Can I Do?](https://www.neteye-blog.com/blog/2024/10/18/my-laptop-is-broken-what-can-i-do/) - In this blog post I'm abandoning advice and tips on our software suite for once and moving on to show you an important best practice that we recommend to all our customers for their servers. But what do you do for laptops, which are our primary work tool? I didn't think much about it.... While
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/18/bug-fixes-for-neteye-4-38-5/) - Monitoring We have resolved an issue where icinga2 would fail to write state changes to the IDO and execute notifications during shutdown. We updated the following packages: icinga2, icinga2-autosetup, icinga2-bin, icinga2-common, icinga2-configurator, icinga2-ido-mysql, icinga2-ido-pgsql, icinga2-neteye-config, icinga2-resources, icinga2-selinux, nano-icinga2, vim-icinga2, to version 2.14.2_neteye1.54.1-1
- [Streamline Your Product Roadmap Decision-making Process with Jira Product Discovery](https://www.neteye-blog.com/blog/2024/10/15/streamline-your-product-roadmap-decision-making-process-with-jira-product-discovery/) - An introduction to the recently released Jira Product Discovery tool and its potential relevance and utility for your team. In what scenarios would this solution offer users a valuable benefit? We're all familiar with the process of decision-making. We're also all aware of the challenges that can arise when a decision, such as by product
- [How to Restrict Viewing Access in Grafana Dashboards Based on Alyvix Tags](https://www.neteye-blog.com/blog/2024/10/04/how-to-restrict-viewing-access-in-grafana-dashboards-based-on-alyvix-tags/) - With the introduction of Alyvix Tags in NetEye 4.38, we’ve given users the ability to filter test cases and reports based on their tags, making it easier to focus on the specific test cases that matter to each department or subdivision within a tenant. One of the requests that emerged from this new feature was
- [Perform KNN Classification Using Elasticsearch](https://www.neteye-blog.com/blog/2024/10/02/perform-knn-classification-using-elasticsearch/) - Hey everyone! We played around a bit last time with our radar data to build a model that we could train outside Elasticsearch, loading it through Eland and then applying it using an ingest pipeline. But since our data is in the form of vectors, could we actually exploit Elasticsearch vector database functionality and perform
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/11/bug-fixes-for-neteye-4-38-4/) - SIEM - Log Management We have resolved an issue in the update and upgrade process for the Elastic Stack. Previously, if the Enrollment Token for our Elastic Agent was manually revoked, the procedure could encounter an error when attempting to regenerate it. Alyvix We fixed a bug affecting cloned Alyvix dashboards for performance graphs. Previously,
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/07/bug-fixes-for-neteye-4-38-3/) - We have resolved an issue that could have led to the failure of the installation process during initial setups. This problem arose from a temporary absence of an entry in the /etc/hosts file, which in turn hindered the startup of nginx. We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, filebeat, filebeat-autosetup, filebeat-neteye-config, logstash, logstash-neteye-config, logstash-autosetup,
- [NetEye 4.38 Release Notes](https://www.neteye-blog.com/blog/2024/09/27/neteye-4-38-release-notes/) - Release date: 1st October 2024 Welcome to version 4.38 of our NetEye v4 Unified Monitoring Platform. The Church of St. John in Ranui, set against the breathtaking Dolomites in the Funes Valley, welcomes you to this release. This historic gem, nestled in the heart of South Tyrol, is a testament to the region's rich cultural
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/03/bug-fixes-for-neteye-4-38-2/) - We have implemented a verification step in the neteye install, update, and upgrade processes to verify Kibana's connectivity to the fleet integration endpoint when the NetEye instance operates behind a proxy without direct Internet access. Additionally, we have revised our User Guide to provide detailed instructions on configuring this aspect. Moreover, the rolling restart process
- [Bug Fixes for NetEye 4.38](https://www.neteye-blog.com/blog/2024/10/03/bug-fixes-for-neteye-4-38/) - We updated the Elastic Stack to version 8.15.2, which fixes some known issues present with versions 8.15.1 (the version previously used in NetEye for Elasticsearch, Kibana, Logstash and APM) and 8.15.0 (the version previously used in NetEye by Elastic Agents and Beats). For more details please refer to the official Elastic release notes. We updated
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/10/03/bug-fixes-for-neteye-4-37-8/) - We fixed a bug in nginx that was causing NetEye upgrades from version 4.36 to version 4.37 to fail with an error. We updated the following packages: nginx-neteye-config, nginx-neteye-config-autosetup, nginx-neteye-config-configurator to version 1.14.2-1
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/10/01/bug-fixes-for-neteye-4-37-7/) - Core Neteye install, update, upgrade procedures individual service logs weren't saved in the correct format We resolved a small issue where logs from parallel install or configurator playbooks were wrongly manipulated resulting in a different format from what they were supposed to be saved. SIEM - Log Management Elastic Stack missing systemd configuration files We
- [Ansible Development, Part 1.5: Building an Execution Environment in a Pipeline (CI/CD)](https://www.neteye-blog.com/blog/2024/09/19/ansible-development-part-1-5-building-an-execution-environment-in-a-pipeline-ci-cd/) - Hello everyone, I’m back to discuss Ansible and Ansible Execution Environments. In my previous blog, we talked about why and how execution environments are critical for a successful Ansible implementation. I hope my guide was easy to follow, but as you may have noticed, the process requires a significant amount of manual effort to keep
- [Turning Videos into Animated GIFs](https://www.neteye-blog.com/blog/2024/03/01/turning-videos-into-animated-gifs/) - So how's your website doing? Did you set it up, and then leave it alone? It's not that I'm trying to shame you, but we should all be thinking regularly about how to stay at the top of our game. You know, be agile. I was updating one of our websites last month, and we
- [Prevent Elasticsearch Crashes Using Disk Watermarks](https://www.neteye-blog.com/blog/2024/09/09/prevent-elasticsearch-crashes-using-disk-watermarks/) - Hi all, it's been a while. I'm deeply sorry not to have sent out some blog posts lately, so now I'll try to get back your trust by providing some useful information. Not only that, I'll even go out of my comfort zone: instead of NetEye Core and monitoring strategies, I'll talk about NetEye SIEM
- [Ansible Development, Part 1: Building an Execution Environment](https://www.neteye-blog.com/blog/2024/09/11/ansible-development-part-1-building-an-execution-environment/) - Right now, at Würth Phoenix, we are investing in automating most of our operations using Ansible. You're probably already familiar with what Ansible does, but to summarize, Ansible is an open-source, command-line IT automation application written in Python. I've talked about it here: Using Ansible to Automate Agent Deployment | www.neteye-blog.com Automating Icinga 2 Deployment
- [A Journey through Elastic Integrations](https://www.neteye-blog.com/blog/2024/08/20/a-journey-through-elastic-integrations/) - At the beginning of the month we released NetEye version 4.37 that contains Elastic Stack 8.14.3. Every version update of Elastic has both improvements and additions. To see all available integrations in NetEye, click on the screenshot here: As you can see the changes range from cloud integration, to ticketing, to not forgetting security, networking,
- [ntopng Updates](https://www.neteye-blog.com/blog/2024/08/28/ntopng-updates/) - On 14.08.2024 ntopng released its latest version 6.2. I'd like to use this post to emphasize some of the key innovations it brings. There were many changes and bug fixes in this release. Some major improvements and enhancements are as follows: ntopng 6.2 uses 60% less memory with respect to v6.0 Support for InfluxDB 2.0
- [Monitor your Elasticsearch Shards Count](https://www.neteye-blog.com/blog/2024/08/30/monitor-your-elasticsearch-shards-count/) - Elasticsearch limits the number of open shards per node with the max_shards_per_node cluster setting, which defaults to 1000. The limit on the total number of shards is then calculated from this setting with this formula: total_max_number_of_shards = cluster.max_shards_per_node * number of non-frozen data nodes If the total number of shards is reached either by a
- [A Concrete Example of ES|QL and SOC Detection Rules](https://www.neteye-blog.com/blog/2024/08/30/a-concrete-example-of-esql-and-soc-detection-rules/) - The purpose of this article is to show a real-life case study of the integration of the new Elastic ES|QL language within the detection rules used by the SOC to detect cyber threats. Overview ES|QL (Elasticsearch Query Language) is an SQL-like query language developed by Elastic specifically for querying time series and event data stored
- [Publish NPM Package to GitHub Packages Registry with GitHub Actions](https://www.neteye-blog.com/blog/2024/09/12/publish-npm-package-to-github-packages-registry-with-github-actions/) - With the rise of continuous integration and delivery (CI/CD) in modern software development, automating tasks like publishing npm packages has become crucial for efficiency. GitHub packages Registry (npm.pkg.github.com) allows developers to host and manage npm packages directly within GitHub, offering a seamless experience for both private and public repositories. By leveraging GitHub Actions, developers can
- [SOC News | September 10 – New RaaS Group BloodForge](https://www.neteye-blog.com/blog/2024/09/10/soc-news-september-10-new-raas-group-bloodforge/) - The team behind the popular underground forum BlackForums has announced, on its Telegram channel, that it has formed a new pact with the BloodForge group. From this pact was born The Brotherhood, an organization that aims to provide a RaaS (Ransomware as a Service). The new BloodForge channel then presented the features and capabilities of
- [Automate the Clustering of Similar Cases for Effective Handling of a Significant Volume of Incoming Alerts](https://www.neteye-blog.com/blog/2024/08/28/automate-similar-cases-clustering-for-effective-handling-of-a-significant-volume-of-incoming-alerts/) - This guide will show you how to enable your team to handle multiple cases simultaneously, letting you manage them as if they were just one. In which scenarios would this solution offer users a valuable benefit? Have you ever had to discard a significant number of cases, requests, or emails because there were simply too
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/23/bug-fixes-for-neteye-4-37-6/) - We fixed a procmail misconfiguration that was occurring after the upgrade. We updated the following packages: tornado, tornado-autosetup to version 1.32.2-1
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/21/bug-fixes-for-neteye-4-37-5/) - We resolved an issue in the neteye update and neteye upgrade commands where the process would halt if the Elasticsearch cluster took longer than 30 seconds to respond to API requests. We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, elastic-stack-configurator, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config, logstash-neteye-config-autosetup to
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/20/bug-fixes-for-neteye-4-37-4/) - We resolved a bug in the nginx configuration for our clickhouse integration. This fix guarantees that queries will no longer be directed to the voting-only node in cluster environments, preventing potential errors. We updated the following packages: clickhouse-neteye-config, clickhouse-neteye-config-autosetup, clickhouse-neteye-config-configurator to version 0.9.1-1. nginx-neteye-config, nginx-neteye-config-autosetup, nginx-neteye-config-configurator to version 1.14.1-1
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/08/15/bug-fixes-for-neteye-4-36-15/) - We fixed a bug in the neteye update procedure. In particular, this now handles properly the update of pacemaker and corosync, as done already by the neteye upgrade, to ensure a correct handling of the resources during this phase. We updated the following packages: neteye-upgrade-manager to version 0.58.5-1
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/15/bug-fixes-for-neteye-4-37-3/) - We fixed a bug in the neteye update procedure. In particular, this now handles properly the update of pacemaker and corosync, as done already by the neteye upgrade. This enhancement guarantees proper pcs resource management throughout this phase. We updated the following packages: neteye-upgrade-manager to version 0.61.2-1
- [How to Integrate Metrics Collected in OpenShift into NetEye/Grafana](https://www.neteye-blog.com/blog/2024/08/12/how-to-integrate-metrics-collected-in-openshift-into-neteye-grafana/) - OpenShift already has a built-in monitoring suite with Prometheus, Grafana, and Alertmanager. This is all well and good, but what if organizations want to monitor their entire infrastructure, integrating all monitoring results under one umbrella? In this case, it's necessary to send the metrics somehow from OpenShift to NetEye. In this tutorial, I'll show you
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/08/bug-fixes-for-neteye-4-37-2/) - A bug in the NetEye Alyvix integration has been resolved. This bug was associated with certain secure attributes that were absent from the cookie responsible for storing the Alyvix JWT token. We updated the following packages: icingaweb2-module-alyvix, icingaweb2-module-alyvix-autosetup and icingaweb2-module-alyvix-configurator to version 0.55.3-1
- [How Feature Toggles Can Improve Agile Development](https://www.neteye-blog.com/blog/2024/08/07/how-feature-toggles-can-improve-agile-development/) - As the NetEye R&D team, we sometimes need to develop features in NetEye that require a lot of work to finish implementing. To handle the development of these features, we're always trying to divide the work into smaller, more manageable pieces so that we can see any progress and avoid the typical pitfalls of the
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/06/bug-fixes-for-neteye-4-37/) - We fixed a bug that under certain conditions caused notifications of a state change to be lost during the execution of a deployment and at the same time Tornado would perform an action to set a check result. We updated the following packages: icingaweb2-module-director, icingaweb2-module-director-autosetup to version 1.11.1_neteye1.37.2-1
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/08/06/bug-fixes-for-neteye-4-36-14/) - We fixed a bug that under certain conditions caused notifications of a state change to be lost during the execution of a deployment and at the same time Tornado would perform an action to set a check result. We updated the following packages: icingaweb2-module-director, icingaweb2-module-director-autosetup to version 1.11.1_neteye1.37.2-1
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/08/06/bug-fixes-for-neteye-4-35-9/) - We fixed a bug that under certain conditions caused notifications of a state change to be lost during the execution of a deployment and at the same time Tornado would perform an action to set a check result. We updated the following packages: icingaweb2-module-director, icingaweb2-module-director-autosetup to version 1.11.1_neteye1.37.2-1
- [NetEye 4.37 Release Notes](https://www.neteye-blog.com/blog/2024/08/01/neteye-4-37-release-notes/) - Welcome to version 4.37 of our NetEye v4 Unified Monitoring Solution. Santa Maddalena in Bolzano greets you with its picturesque vineyards, the birthplace of the renowned red wine Magdalener. Situated on a hillside, this charming village is part of the famous South Tyrolean Wine Road, a route that offers a delightful journey through one of
- [CTF Exploit: Not A Democratic Election](https://www.neteye-blog.com/blog/2024/07/31/ctf-exploit-not-a-democtratic-election/) - Hello everyone, today I'd like to show you how we exploited the Not a democratic election challenge from HTB Business CTF 2024. This challenge is of type Blockchain and is based on Solidity Smart Contracts for Ethereum. Since the official exploit uses Foundry, and I couldn't run Foundry on my workstation, I'd like to report
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/08/02/bug-fixes-for-neteye-4-36-13/) - We fixed a bug that caused the tenant drop down, in the NetEye Alyvix integration, to not display the full list of tenants in case of users who are not administrator of NetEye but have Full Module Access on the Alyvix module. We updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.53.8-1
- [Bug Fixes for NetEye 4.37](https://www.neteye-blog.com/blog/2024/08/02/bug-fixes-for-neteye-4-36-12/) - We fixed a bug that caused the tenant drop down, in the NetEye Alyvix integration, to not display the full list of tenants in case of users who are not administrator of NetEye but have Full Module Access on the Alyvix module. We updated the following packages: icingaweb2-module-alyvix, icingaweb2-module-alyvix-autosetup and icingaweb2-module-alyvix-configurator to version 0.55.2-1
- [July 19 – The Day Cyber Security Almost Caused a Global IT Blackout](https://www.neteye-blog.com/blog/2024/07/31/july-19-the-day-cyber-security-almost-caused-a-global-it-blackout/) - On Friday morning, July 19th, a major computer outage caused problems in Microsoft computers all over the world. There were delays and flight cancellations at several airports, and malfunctions in the computer systems of banks, shops, hospitals and the media. The IT blackout was caused by a faulty update released for Falcon Sensor, the EDR
- [Terraform Integration with Ansible](https://www.neteye-blog.com/blog/2024/07/30/terraform-integration-with-ansible/) - In this blog post we'll try a tool that's new to me, called Terraform, and see how easy it is to integrate it with Ansible starting with no knowledge of Terraform. Terraform is a tool that allows you to automate resource provisioning; it uses HCL2 as the configuration language, and support has recently been added,
- [include_task vs import_task in Ansible](https://www.neteye-blog.com/blog/2024/07/29/include_task-vs-import_task-in-ansible/) - After updating one of our machines, we found that some of our Ansible playbooks were failing with the following error: ERROR! [DEPRECATED]: ansible.builtin.include has been removed. Use include_tasks or import_tasks instead. This feature was removed from ansible-core in a release after 2023-05-16. Please update your playbooks. The include module was removed in ansible 2.16, while
- [Bonding Configuration While Adding an OpenShift Node](https://www.neteye-blog.com/blog/2024/07/26/bonding-configuration-while-adding-an-openshift-node/) - When you prepare a machine for production, you usually want to use a redundant network interface in order to be resilient to possible network outages. When we created our OpenShift cluster this wasn't possible during the installation procedure, at least not using the UPI procedure. We recently added a new node and discovered this new
- [How to Add SSH Keys to ArgoCD and Tekton on OpenShift to Access Gitea: Part 3 - A Simple Tekton TaskRun](https://www.neteye-blog.com/blog/2024/07/24/how-to-add-ssh-keys-to-argocd-and-tekton-on-openshift-to-access-gitea-part-3-a-simple-tekton-taskrun/) - In the first blog post of this series I showed you how to set up an OpenShift test environment and set up Gitea via helm chart and add an ssh key to Gitea. In the second blog post we created a deployment with ArgoCD that clones via ssh from our Gitea instance. In this final
- [How to Add SSH Keys to ArgoCD and Tekton on OpenShift to Access Gitea: Part2 - Add an SSH Key as a Secret to ArgoCD and Run a Test Deployment](https://www.neteye-blog.com/blog/2024/07/17/how-to-add-ssh-keys-to-argocd-and-tekton-on-openshift-to-access-gitea-part2-add-an-ssh-key-as-a-secret-to-argocd-and-run-a-test-deployment/) - In my previous post, we set up our test environment and a Gitea operator. In this blog post we'll install the OpenShift GitOps operator and run a simple deployment. This setup allows us to test OpenShift-specific security constraints (such as OpenShift-specific SCCs, non privileged containers by default, etc.) in a test environment before going into
- [How to Add SSH Keys to ArgoCD and Tekton on OpenShift to Access Gitea: Part1 - Set up the Test Environment and Add SSH Key to Gitea](https://www.neteye-blog.com/blog/2024/07/17/how-to-add-ssh-keys-to-argocd-and-tekton-on-openshift-to-access-gitea-part1-set-up-the-test-environment-and-add-ssh-key-to-gitea/) - In this series of blog posts I'll show you how to set up ArgoCD and Tekton to clone git repositories via ssh from a Gitea instance hosted on an OpenShift cluster. Please note that for the sake of this blog post, the configurations are not suited for use in production, but just to give you
- [GLPI Device Discovery](https://www.neteye-blog.com/blog/2024/07/25/glpi-device-discovery/) - Scenario GLPI is integrated into NetEye and provides powerful asset management solutions. Usually GLPI agents are deployed on servers and clients: this way an up-to-date asset inventory is kept within NetEye. The GLPI package also provides a tool able to perform network SNMP scans, detecting for example network printers, switches, and routers, as well as
- [Microsoft 365 for Jira - Outlook Email, Teams, Calendar](https://www.neteye-blog.com/blog/2024/07/23/microsoft-365-for-jira-outlook-email-teams-calendar/) - Discover how you can benefit from Microsoft 365 integration! Hello everyone! We're happy to announce that the integration with Microsoft 365 and Jira is now available ❤ Read this article, to know how you can benefit from it 😉 🎉 🎇 Features in Jira Here's the list of the most important features that you will
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/18/bug-fixes-for-neteye-4-36-11/) - We fixed a bug that caused the neteye install command to not wait for resources to restart after the procedure completed. We updated the following packages: neteye-setup and neteye-setup-configurator to version 1.127.4-1
- [Automate Business Processes with APIs: python-gvm](https://www.neteye-blog.com/blog/2024/07/16/automate-business-processes-with-apis-python-gvm/) - Have you already read this blog post Adding soar features to the soc part 1 vulnerability management? If not, you have to! It explains the SOAR features leveraged by the Würth Phoenix SOC and how we implement our Vulnerability Management process. In this article, I'll take a step back, focusing on what happens before the
- [How to Monitor the TOP N CPU-Using Processes](https://www.neteye-blog.com/blog/2024/03/20/how-to-monitor-the-top-n-cpu-using-processes/) - During my last session with a customer, I faced an interesting and challenging issue in the Windows environment. The question was: “How can I monitor the list of the most CPU-demanding processes?” The request immediately looked like one that's very simple to understand, but hard to implement. We look for something out of the box
- [Collecting Netflows - ntopng vs. ElastiFlow](https://www.neteye-blog.com/blog/2024/07/08/collecting-netflows-ntopng-vs-elastiflow/) - In order to be able to carry out detailed network monitoring, an IT administrator naturally wants to know what is happening in his or her network. To obtain this information, the network flows must of course be analyzed. Many network devices offer the option of creating netflows, which are sent to a recipient who can
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/09/bug-fixes-for-neteye-4-36-10/) - We released an update for GLPI that fixes several vulnerabilities. We updated the following packages: glpi, glpi-autosetup and glpi-neteye-config to version 10.0.16_neteye1.15.3-2
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/05/bug-fixes-for-neteye-4-36-9/) - We fixed a bug in Icingaweb2 module Tornado UI which prevented the UI from refreshing after a draft configuration was deleted. We updated the following packages: icingaweb2-module-tornado, icingaweb2-module-tornado-autosetup and icingaweb2-module-tornado-configurator to version 2.13.6-1
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/04/bug-fixes-for-neteye-4-36-8/) - We fixed a bug in the NetEye Alyvix module related to the Multi Tenancy migration command neteye alyvix-node enable-multitenancy --all, in which we adapted the data sent by the command to the Alyvix node to comply with the latest specification of Alyvix Service. Furthermore, we fixed an issue in the update procedure which was not
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/03/bug-fixes-for-neteye-4-36-7/) - We fixed a bug in Icingaweb2 module Tornado UI which made part of the testing form unreachable when multi-tenancy was enabled. We updated the following packages: icingaweb2-module-tornado, icingaweb2-module-tornado-autosetup and icingaweb2-module-tornado-configurator to version 2.13.5-1
- [Monitor the Tasks in the Windows Task Scheduler](https://www.neteye-blog.com/blog/2024/07/02/monitor-the-tasks-in-the-windows-task-scheduler/) - A lot of people run regular tasks on their Windows Servers using the Windows Task Scheduler. Now it's time to find out if these tasks run on time, within a limit, and complete successfully. This monitoring task is done over nscp.exe, so you should have NSClient++ installed along with your Icinga2 Agent. Take a look
- [Enhancing Our CI System with Data Visualization](https://www.neteye-blog.com/blog/2024/07/02/enhancing-our-ci-system-with-data-visualization/) - As you may have noticed from recent posts from some of my colleagues about "Boosting NetEye CI Speed: Test Parallelization" or "Speeding up the NetEye CI Testing Phase", we are improving our CI in order to have a reliable, fast system that is able to test all the features we implement in NetEye 4. As
- [Migrating from Network Script to NetworkManager Service](https://www.neteye-blog.com/blog/2024/07/02/network-script-migration-to-networkmanager-service/) - In the near future NetEye will likely introduce the use of NetworkManager instead of the network scripts used so far for the configuration of network connectivity. In this blog I'd like to describe some simple steps to perform a migration to NetworkManager in case it becomes necessary to go through with the transition. Let's look
- [It’s Time to Move from OCS to GLPI Agents + Exclusive GLPI News for You!](https://www.neteye-blog.com/blog/2024/07/01/its-time-to-move-from-ocs-to-glpi-agents-exclusive-glpi-news-for-you/) - It's been two years now since TecLib released GLPI 10, a completely redesigned version of the popular Asset Management system. It natively integrates an asset inventory server and is delivered together with inventory agents called “GLPI Agents”. These agents are available for the major operating systems, from Windows to Linux and Android. The GLPI inventory · The OCS-GLPI interface is deprecated. · Switch to GLPI agents now! · GLPI agents have several additional features such as SNMP and ESX scans · GLPI 11 will be another great step ahead with fully adaptable and extendible asset classes · GLPI 11 introduces group-based access permissions, by commission of Würth IT.
- [Making Your Own Video Tutorials, Part 18: Speeding up Your Graphics](https://www.neteye-blog.com/blog/2024/06/27/making-your-own-video-tutorials-part-18-speeding-up-your-graphics/) - Have you ever finished filming your video segments, inserted them into your video project, and thought "Now I just need a few hours to add the graphics, and I'll be done!"… but you actually wind up finishing 3 days later? Then it's time we talked about cutting that time down. There are several aspects to
- [SOC News | June 30 – TeamViewer Victim of a Security Breach](https://www.neteye-blog.com/blog/2024/06/30/soc-news-june-30-teamviewer-victim-of-a-security-breach/) - TeamViewer, the popular remote access software developed by the company of the same name, discovered an irregularity in its internal IT environment on 26 June. They disclosed the potential breach in a statement the following day, stating that they had immediately begun an investigation to implement remediation measures. In an update on Friday 28th, TeamViewer
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/07/01/bug-fixes-for-neteye-4-36-6/) - We fixed a bug in the NetEye Alyvix module which caused some errors to be shown to administrators of Tenants which did not have access to some tenant-shared Alyvix Nodes. We updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.53.6-1
- [Streamlining Icinga Director with Grafana](https://www.neteye-blog.com/blog/2024/06/27/streamlining-icinga-director-with-grafana/) - Icinga Director is a powerful configuration tool included in NetEye that streamlines the process of defining and managing monitoring configurations. However, you may encounter issues with duplicate addresses and spaces in hostnames, which can lead to confusion and monitoring inaccuracies. In this post, I'll discuss these common problems and introduce a Grafana dashboard solution to
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/06/20/bug-fixes-for-neteye-4-36-5/) - We fixed a bug in the NetEye Alyvix module for which, in case of the superadmin, the Test Cases failing were shown duplicated in the Dashboard. Furthermore, we fixed an issue in the upgrade procedure that was causing some packages to skip their update during the upgrade procedure. We updated the following packages: icingaweb2-module-alyvix and
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/06/13/bug-fixes-for-neteye-4-36-3/) - We fixed a bug in the NetEye Alyvix module where an error was thrown when the super-admin would create a Test Case in a Tenant associated with a Time Period present in a different Tenant. We updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.53.4-1
- [Automating the Full NetEye Release Procedure](https://www.neteye-blog.com/blog/2024/06/14/automate-the-full-neteye-release-procedure/) - One of the first issues we added more than 2 years ago to our DevOps backlog was automating the infrastructure preparation and release of NetEye, but we postponed it for a long time because it was too big to do. A bit of background Every 2 months we release a new NetEye version: this basically
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/06/17/bug-fixes-for-neteye-4-36-4/) - We fixed a bug in the NetEye IDOReports module related to its installation process and in particular with an update of its database. We updated the following packages: icingaweb2-module-idoreports and icingaweb2-module-idoreports-autosetup to version 0.10.1_neteye0.5.1-1
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/06/17/bug-fixes-for-neteye-4-35-8/) - We fixed a bug in the NetEye IDOReports module related to its installation process and in particular with an update of its database. We updated the following packages: icingaweb2-module-idoreports and icingaweb2-module-idoreports-autosetup to version 0.10.1_neteye0.5.1-1
- [The Right Monitoring Tool: Elastic Synthetic Browser Monitor vs. Alyvix](https://www.neteye-blog.com/blog/2024/06/14/the-right-monitoring-tool-elastic-synthetic-browser-monitor-vs-alyvix/) - In today’s digital landscape, ensuring optimal performance and availability of applications is critical. Monitoring tools like Elastic Synthetics Journey Monitor and Alyvix offer unique capabilities tailored to diverse needs. Understanding where each tool excels can help you choose the best solution for your requirements. Elastic Synthetic Browser Monitor: Strengths and Use Cases Elastic Synthetic Browser
- [Integration of Elasticsearch Clients without Authentication and without TLS](https://www.neteye-blog.com/blog/2023/10/19/integration-of-elasticsearch-clients-without-authentication-and-without-tls/) - Introduction Let's say... you have a product that has some Elasticsearch output, which deals with parsing and indexes, and also comes with a nice dashboard, etc., and let's suppose... you would like to use this built-in functionality. And let's say... the product in question wants to connect to Elasticsearch in an unauthenticated manner over HTTP.
- [stunnel TCP keepalive Settings Preventing Firewall from Blocking Log Traffic](https://www.neteye-blog.com/blog/2023/10/12/stunnel-tcp-keepalive-settings-preventing-firewall-from-blocking-log-traffic/) - Infrastructure Scenario An image says more than 1000 words ;) Basically, the log source continuously sends log messages encrypted via TLS to the NetEye server. 1 TLS is handled by stunnel and then content is internally forwarded unencrypted to an Elastic Agent Integration "Custom TCP Logs" inside the NetEye server.2 Cause: Logs lost due to
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/06/11/bug-fixes-for-neteye-4-36-2/) - We fixed a bug that causes the kill of unrelated processes during the cluster resource relocation. Important: the NetEye update procedure in this case, in order to fix the existing configuration, will restart most of the PCS cluster resources and will cause a temporary service downtime. We updated the following packages: neteye-setup and neteye-setup-configurato to
- [Akira Ransomware: How to Make an Efficient Detection Rule](https://www.neteye-blog.com/blog/2024/06/07/akira-ransomware-how-to-make-an-efficient-detection-rule/) - In this article, we're going to explore an example of the process used to perform the initial steps of creating ad hoc detection rules based on specific events that mark the world of cyber security. Specifically, starting from a real case, we'll see the study and analysis carried out to create a rule to monitor
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/06/10/bug-fixes-for-neteye-4-35-7/) - El Proxy We fixed a bug in El Proxy related to the retry strategy for sending signed logs to Elasticsearch. Previously, after a document has been rejected from the Elasticsearch ingest pipeline, all non-signed logs were deleted during the retry phase including the mandatory "timestamp" field. Our solution now ensures that all mandatory fields remain
- [Bug Fixes for NetEye 4.36](https://www.neteye-blog.com/blog/2024/06/10/bug-fixes-for-neteye-4-36/) - SIEM - Log Management JVM Configurations We fixed some bugs related to the Elastic JVM configurations, that was duplicating log files in the default directory. The JVM configurations are now up to date and the organization of configuration files has been improved. El Proxy We fixed a bug in El Proxy related to the retry
- [NetEye 4.36 Release Notes](https://www.neteye-blog.com/blog/2024/06/03/neteye-4-36-release-notes/) - Welcome to version 4.36 of our NetEye v4 Unified Monitoring Solution. Merano/Meran is welcoming you with its promenades and palms, gardens and parklands, castles and palaces, noble villas, and unique urbanscape. Always fascinating, Merano is a historical spa town where hospitality and tourism reside in its soul. Merano is about taking a morning walk through
- [OpenShift: How to Check and Reset Ceph Storage in Warning State](https://www.neteye-blog.com/blog/2024/05/24/openshift-how-to-check-and-reset-ceph-storage-in-warning-state/) - Every so often it may happen (in particular after a cluster update or hardware issues) that you see your storage in a warning state on OpenShift. The first thing to do is to check what's wrong with your cluster: sometimes you may have a real issue, in other cases it may just be a temporary
- [How To Detect a Chromium Browser Stealer With Elastic](https://www.neteye-blog.com/blog/2024/05/24/how-to-detect-chromium-browser-stealer-with-elastic/) - In this blog, I'll propose and describe a solution for detecting potential infostealers targeting Chromium-based browsers, taking a cue from the research exposed by Google's Chrome Security Team (Detecting browser data theft using Windows Event Logs). Obviously a solution using Elastic :) ! What is an Infostealer (in a nutshell) ? In the realm of
- [Check the Version of Your NetEye Cluster with Satellites](https://www.neteye-blog.com/blog/2024/05/27/check-the-version-of-your-neteye-cluster-with-satellites/) - Whenever I upgrade a NetEye Cluster with all its Satellites, it's important that no host is forgotten, and that all packages are installed (which can happen because an upgrade error occurred, for example if one forgot to call neteye_finalize_installation). So I thought it would be handy to have a script/plugin that shows the current version
- [SOC News | May 24 – Patch This Veeam Critical Vulnerability Now](https://www.neteye-blog.com/blog/2024/05/24/soc-news-may-24-patch-now-this-veeam-critical-vulnerability/) - On May 21, Veeam published details about four different vulnerabilities detected in their product Veeam Backup Enterprise Manager (VBEM). One of them is critical and allows an unauthenticated attacker to log in to the Veeam Backup Enterprise Manager web interface as any user. The EPSS associated with the vulnerabilities is very low at the time
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/05/23/bug-fixes-for-neteye-4-35-6/) - GLPI logging sensitive data We fixed some bugs related to the GLPI where sensitive data were incorrectly logged during log-in and log-out procedures. Updated packages We updated the following packages: icingaweb2-module-assetmanagement-1.31.1-1, icingaweb2-module-assetmanagement-autosetup-1.31.1-1, icingaweb2-module-assetmanagement-configurator-1.31.1-1 neteye-upgrade-manager-0.56.1-1
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/05/21/bug-fixes-for-neteye-4-35-5/) - RPM Mirror We fixed some bugs related to the NetEye rpmmirror: We fixed a bug that caused the rpmmirror to not prune properly the artifacts that belonged to legacy NetEye versions. We fixed a random failure that occurred when setting up the mirror due to timeouts. Module Audit Log We also fixed another bug in
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/05/22/bug-fixes-for-neteye-4-34-10/) - RPM Mirror We fixed some bugs related to the NetEye rpmmirror: We fixed a bug that caused the rpmmirror to not prune properly the artifacts that belonged to legacy NetEye versions. We fixed a random failure that occurred when setting up the mirror due to timeouts. Updated packages We updated the following packages: neteye-pulp3-mirror to
- [Boosting NetEye CI Speed: Test Parallelization](https://www.neteye-blog.com/blog/2024/05/17/boosting-neteye-ci-speed-test-parallelization/) - In a previous blog post, we looked at how we sped up certain stages of the NetEye pipeline through parallelization. This boost not only lifted team spirits but, more importantly, ramped up the pace of delivering new features and bug fixes, giving everyone the motivation to keep enhancing the pipeline across different stages. In another
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/05/15/bug-fixes-for-neteye-4-35-4/) - We fixed a few bugs in Tornado: Fixed a display problem in Firefox where arguments of SCRIPT actions were limited to 23 characters instead of 45. Corrected the default starting value when creating a new SMART_MONITORING_CHECK_RESULT action. Fixed a visual glitch occurring when switching from one WHERE tab inside a filter node to another, as
- [How to Customize NetEye Reports for Your Brand](https://www.neteye-blog.com/blog/2024/05/09/how-to-customize-neteye-reports-for-your-brand/) - In this blog post, we'll explore the power of custom branding in NetEye reports. The reporting module offers the ability to filter specific hosts and services while also enabling the configuration of custom thresholds to visually emphasize unmet SLAs. Users have the flexibility to generate reports manually or automatically, such as on a weekly or
- [Atlassian News ~ team'24 Edition](https://www.neteye-blog.com/blog/2024/05/08/atlassian-news-team24-edition/) - News from Las Vegas #wewerethere A lot is going on in the Atlassian world and a lot of news was announced in the past days during Team ’24, an annual conference held in Las Vegas🎉 All the recorded sessions can be found here, ...but if you want a quick summary of all the news, you're
- [QUIC, What's That?](https://www.neteye-blog.com/blog/2024/05/06/quic-whats-that/) - As you may know, I do ntopng consulting, and support companies in their implementation of ntop solutions. For some time now, ntopng users have noticed a high amount of QUIC traffic in their respective networks. Most people don't really know what QUIC is, which is why I'd like to take this as an opportunity to
- [Reacting with Remediation after a Service Goes Down](https://www.neteye-blog.com/blog/2024/04/30/reacting-with-remediation-after-a-service-goes-down/) - A customer last week asked me to implement the following use case: When a production PLC device (programmable logic controller) goes offline, any associated service must be automatically switched off, since it needs to connect to the PLC in order to exchange data from the source server, and for that the PLC must be active.
- [Balancing Two NetEye Satellites with the keepalived Service](https://www.neteye-blog.com/blog/2024/04/30/balancing-two-neteye-satellites-with-the-keepalived-service/) - NetEye installations can be either in Standalone (Single Node) or in Cluster configuration, and for each one there's the possibility to extend monitoring in segregated portions of the network or remote locations, or simply to be able to lighten the load of the master through the use of one or more satellites (the number of
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/05/07/bug-fixes-for-neteye-4-35-3/) - We fixed a bug in the Logrotate configuration for GLPI that prevented the logs to be compressed and archived. Updated packages We updated the following packages: glpi, glpi-autosetup, glpi-neteye-config to version 10.0.15_neteye1.15.3-1
- [Making Your Own Video Tutorials, Part 17: My Full Video Pipeline](https://www.neteye-blog.com/blog/2024/05/06/making-your-own-video-tutorials-part-17-my-full-video-pipeline/) - In this series I've given you lots of advice on making your own tutorial-style IT videos for YouTube as a single DIY "maker": writer, lighting, director, cameraman, editor, audio specialist, etc. But these posts weren't written in the order of my "workflow", i.e. the sequence I actually go through when making a new video. So
- [Exploring Tailwind CSS: A Game-Changer in Frontend Development](https://www.neteye-blog.com/blog/2024/05/03/exploring-tailwind-css-a-game-changer-in-frontend-development/) - In the R&D Team, it's imperative to stay ahead of the curve when it comes to emerging technologies. One such innovation that has been making waves in the frontend community is Tailwind CSS, and we decided to adopt it in the development of the Wuerth Phoenix CTF 2024 website. In this blog post, we'll dive
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/05/06/bug-fixes-for-neteye-4-35-2/) - We fixed a bug in the neteye update and neteye upgrade commands that was causing the NetEye default Logstash plugins to be installed from the Internet on passive cluster nodes. In particular this was causing the commands to fail in case these nodes did not have access to rubygems.org. Updated packages We updated the following
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/05/06/bug-fixes-for-neteye-4-34-9/) - We fixed a bug in the neteye update and neteye upgrade commands that was causing the NetEye default Logstash plugins to be installed from the Internet on passive cluster nodes. In particular this was causing the commands to fail in case these nodes did not have access to rubygems.org. Updated packages We updated the following
- [SOC News | Apr 30 – New Cyber Attacker Groups Detected](https://www.neteye-blog.com/blog/2024/04/30/soc-news-apr-30-new-cyber-attacker-groups-detected/) - During the last week of April, our Attacker Centric SOC detected multiple new cyber attacker group websites in the Dark Web. Called Dedicated Leak Sites (DLS), they are widely used by ransomware gangs to publish stolen confidential data when the victim refuses to pay the ransom. Usually, after an attack is claimed, a small amount of
- [SOC News | Apr 26 – ArcaneDoor: A New Espionage Campaign](https://www.neteye-blog.com/blog/2024/04/26/soc-news-apr-26-arcanedoor-a-new-espionage-campaign/) - Cisco Talos identified a previously unknown state-sponsored actor behind ArcaneDoor, a sophisticated cyber espionage campaign targeting the perimeter network devices of several vendors. This actor is now tracked as UAT4356 by Talos and STORM-1849 by the Microsoft Threat Intelligence Center. The initial attack vector is still unknown, but the attacker exploited two previously unknown vulnerabilities. An
- [SOC News | Apr 24 – Full AMMEGA Data Breach Published](https://www.neteye-blog.com/blog/2024/04/24/soc-news-apr-24-full-ammega-data-breach-published/) - Using our CTI SATAYO platform, we identified an artifact belonging to AMMEGA's data breach. AMMEGA is a multinational manufacturing company based in the Netherlands with revenues of $1.2 billion. It was the victim of an attack carried out by the Cactus ransomware gang in early March. The ransomware operators exfiltrated 3 TB of data and
- [SLA Reporting on a Business Process](https://www.neteye-blog.com/blog/2024/04/11/sla-reporting-on-a-business-processes/) - Scenario NetEye 4 is a comprehensive monitoring platform which natively supports Business Processes. A Business Process is an abstract view of a customer’s business from the Application point of view. Usually, it’s a collection of Icinga 2 checks aggregated by “AND, OR, At Least” logic in order to monitor whether a Business Application is really
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/04/17/neteye-4-security-advisory-9/) - Synopsis Important: geomap security update Type/Severity Security Advisory: High Topic An update for the package geomap is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of High. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [Bug Fixes for NetEye 4.35](https://www.neteye-blog.com/blog/2024/04/17/bug-fixes-for-neteye-4-35/) - Resolved an issue in the NetEye Alyvix module where the dashboard's loading state would persist indefinitely if no nodes were configured. Furthermore we fixed a bug where Monitoring Objects could not be created over the live-creation if its name contained the percentage symbol Updated packages We updated the following packages: ingaweb2-module-alyvix, icingaweb2-module-alyvix-autosetup to version 0.48.3-1
- [Important GLPI Agent 1.7.3 Security Advisory](https://www.neteye-blog.com/blog/2024/04/04/important-glpi-agent-1-7-3/) - Type/Severity Security Advisory: High Topic There is a security update for GLPI Agent Description This version specifically fixes 2 critical security issues related to MSI packaging on Windows: CVE-2024-28240: A local user could modify the GLPI Agent configuration to gain higher privileges. CVE-2024-28241: A local user could modify the GLPI Agent installation to gain higher
- [SATAYO and SOC: in the New Midlands](https://www.neteye-blog.com/blog/2024/03/15/satayo-and-soc-in-the-new-midlands/) - This article explains how the Cyber Threat Intelligence platform SATAYO serves as a powerful resource to optimize processes and strengthen threat coverage within the Würth Phoenix Attacker Centric SOC. We will analyze the utilization of SATAYO's internal resources for creating Detection Rules and managing SOC alerts. Additionally, we will examine how the logs in SIEM
- [NetEye 4.35 Release Notes](https://www.neteye-blog.com/blog/2024/04/02/neteye-4-35-release-notes/) - Welcome to version 4.35 of our NetEye v4 Unified Monitoring Solution. NetEye 4.35 is welcoming you with a breathtaking view of the Lago di Carezza (Karersee). It is also called "Rainbow Lake". The lake is unique as it gleams with all colors of the rainbow, which makes it a favorite destination for professional photographers and
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/03/28/neteye-4-security-advisory-8/) - Important: GLPI Security Update Type/Severity Security Advisory: High Topic An update for the package glpi is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of High. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability, and give a detailed severity rating. Description
- [Migration from Alyvix Server to Alyvix Service](https://www.neteye-blog.com/blog/2024/03/25/migration-from-alyvix-server-to-alyvix-service/) - Beginning with NetEye version 4.26, Alyvix has been fully integrated into NetEye. Currently Alyvix within NetEye is implemented as the neteye-alyvix module, and is part of our Application Performance Monitoring (APM) world. We have Elastic with all the functionality of traditional APM, and then for synthetic monitoring we have Alyvix. In the past few weeks
- [Boosting NetEye CI Speed Post-FOSDEM '24](https://www.neteye-blog.com/blog/2024/03/25/boosting-neteye-ci-speed-post-fosdem-24/) - On February 3rd and 4th, 2024, we attended FOSDEM, a major event where thousands of free and open-source software developers from around the world gather to exchange ideas and collaborate. This year I dedicated much of the second day to the Testing and Continuous Delivery room. Continuous testing is essential for ensuring the safe and
- [SOC News | Mar 21 - IABs and Bulk Sales](https://www.neteye-blog.com/blog/2024/03/21/iabs-and-bulk-sales/) - Much has already been said about Initial Access Brokers (IABs) so I will limit myself to a brief description and then delve into the main theme of this article. The theme of Initial Access Brokers was summarized fantastically in the Initial Access Broker Landscape project by Curated Intelligence, reported in this link, which I recommend
- [How to Monitor the TOP N RAM-Using Processes](https://www.neteye-blog.com/blog/2024/03/20/how-to-monitor-the-top-n-ram-using-processes/) - After developing a custom check for monitoring the most CPU demanding processes on Windows servers, we implemented a similar check for RAM usage. Like I described in that previous post, we built this command via PowerShell. PowerShell provides the cmdlet: Get-Counter that gets performance counter data directly from the performance monitoring instrumentation in the Windows
- [How to Control Remote Devices from NagVis Maps via Tornado](https://www.neteye-blog.com/blog/2024/03/14/how-to-control-remote-devices-from-nagvis-maps-via-tornado/) - This article stems from a project on the remote control of devices using NagVis maps. The main purpose is to find an easy way to actuate a remote device through a click on an interface. To do this, we implemented a method that uses Nagvis' context menu by adding links. Clicking on them sends a
- [SOC News | Mar 11 – JetBrains TeamCity Authentication Bypass Vulnerabilities](https://www.neteye-blog.com/blog/2024/03/11/soc-news-mar-11-jetbrains-teamcity-authentication-bypass-vulnerabilities/) - On March 4, 2024, JetBrains released TeamCity version 2023.11.4, which patches two authentication bypass vulnerabilities in the web component of TeamCity. These vulnerabilities were discovered in February by Rapid7’s vulnerability research team and allow a remote unauthenticated attacker to perform a complete compromise of a vulnerable TeamCity installation, including unauthenticated RCE (remote code execution). The
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/03/15/bug-fixes-for-neteye-4-34-8/) - We resolved a bug in the NetEye PDF exporting module that causes the reporting scheduler to stop working. Updated packages We updated the following packages: icingaweb2-module-pdfexport and icingaweb2-module-pdfexport-autosetup to version 0.10.2_neteye0.4.1-2.
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/03/12/bug-fixes-for-neteye-4-34-7/) - We resolved a bug in the NetEye Satellite installation and update procedures that previously resulted in an error when the Elastic Agent package was manually installed on the Satellite. Updated packages We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, elastic-stack-configurator, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config, logstash-neteye-config-autosetup to version 8.11.3_neteye3.58.5-1
- [nBox Mini](https://www.neteye-blog.com/blog/2024/03/05/nbox-mini/) - Every now and then I like to keep you up to date about news in the ntop environment. This time it's not news about analysis methods or software, but about a new hardware solution. If you're someone looking for a hardware-based, scalable, optimized, and purpose-built solution, without the hassle of software installation, chances are you're
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/27/bug-fixes-for-neteye-4-34-6/) - We fixed a bug in the Elasticsearch installation and update procedures for which customizations of the Elasticsearch node name, if performed, were not taken into account by the built-in procedures and would lead to a failure. Updated packages We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, elastic-stack-configurator, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config, logstash-neteye-config-autosetup to version 8.11.3_neteye3.58.4-1
- [Monitoring Logs in Elasticsearch: A Practical Example](https://www.neteye-blog.com/blog/2024/02/23/monitoring-logs-in-elasticsearch-a-practical-example/) - Say you want to monitor logs coming into your Elasticsearch instance, and have it send data to your Monitoring Dashboard. I'll show you how to do this with a practical example, in particular for an event coming from the Active Directory where a user is locked out, and the associated Domain Controller sends the event
- [Enabling Elastic Agents Upgrades in Restricted or Closed Networks](https://www.neteye-blog.com/blog/2024/02/16/tell-your-elastic-agents-to-get-the-newest-binary-updates-from-neteye-cluster/) - In this article, we’ll explore how to configure the “Agent Binary Download” setting and set up your own artifact registry for binary downloads within a NetEye cluster. Prerequisites Before we begin, ensure you have the following prerequisites in place: Your Elastic Agents can access https://YOURCLUSTERNAME/ Your Elastic Agents are Version 8.10.3 or higher Configuring the “Agent Binary
- [SNMP Trap Archiving in Elastic via Tornado](https://www.neteye-blog.com/blog/2024/02/13/snmp-trap-archiving-in-elastic-via-tornado/) - First of all, I'll briefly explain what the "Tornado" in NetEye actually is. Tornado is a Complex Event Processor that receives reports of events from data sources such as monitoring, email, and SNMP Traps, matches them against rules you've configured, and executes the actions associated with those rules, which can include sending notifications, logging to
- [Icinga 2 DSL for Defining the Monitoring Status of Objects with Director](https://www.neteye-blog.com/blog/2024/01/16/icinga-2-dsl-for-defining-the-monitoring-status-of-objects-with-director/) - Today I want to present an Icinga 2-based monitoring use case where concepts of the powerful Icinga 2 DSL functional language come into play. The use case is based on mapping the status of a Host/Service Object via passive check results only. For this kind of use case, any accidental active status check could potentially Icinga DSL function in command call
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/23/bug-fixes-for-neteye-4-34-5/) - We fixed a bug in the Tornado module about a missing validation that caused 500 errors during the deploy of a configuration draft. Updated packages We updated the following packages: icingaweb2-module-tornado and icingaweb2-module-tornado-autosetup to version 2.8.4-1 tornado, tornado-autosetup, tornado-common, tornado-dto, tornado-neteye-config and tornado-rsyslog-collector-logmanager to version 1.28.1-2 Furthermore the tornado-regex-validation package has been replaced with tornado-input-validation
- [SOC News | Feb 20 – Lockbit Infrastructure Seizure](https://www.neteye-blog.com/blog/2024/02/20/soc-news-feb-03-lockbit-infrastructure-seizure/) - On 19 February, through an operation coordinated by the National Crime Agency (NCA), a large part of the infrastructure of the Lockbit ransomware gang was seized. The ransomware gang, active since 2019, is undoubtedly best known within the field of double extortion ransomware attacks, having published claims relating to 2,591 attacked organizations over the years.
- [SOC News | Feb 04 - AnyDesk Compromise](https://www.neteye-blog.com/blog/2024/02/03/soc-news-feb-01-anydesk-compromise/) - Starting February 1st, rumors regarding a possible compromise of AnyDesk began to circulate online. These rumors became more insistent as the contents of the January 29 Release Notes were noted. What initially appeared to be just normal maintenance activity on Anydesk's infrastructure was later revealed to actually be a compromise. AnyDesk has in fact made
- [SOC News | Feb 07 – FortiOS Critical Vulnerabilities](https://www.neteye-blog.com/blog/2024/02/09/soc-news-feb-02-fortios-critical-vulnerabilities/) - On February 8, 2024, Fortinet disclosed 2 critical vulnerabilities which could allow remote code or command execution. The vulnerabilities are as follows: FortiOS - Format String Bug in fgfmd, with CVSS severity 9.8 The versions prone to this vulnerability are: FortiOS - Out-of-bound Write in sslvpnd, with CVSS severity 9.6 The versions prone to this
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2024/02/12/neteye-4-security-advisory-7/) - Important: Icinga Director Security Update Type/Severity Security Advisory: High Topic An update for the package icingaweb2-module-director is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of High. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability, and give a detailed severity rating.
- [SOC News | Jan 01 - Kasseika Ransomware Uses BYOVD in His TTP](https://www.neteye-blog.com/blog/2024/01/25/soc-news-kasseika-ransomware-uses-byovd-in-his-ttp/) - Kasseika Threat Actor has joined the club of Threat Actors that currently use Bring Your Own Vulnerable Driver (BYOVD) tactics to disable antivirus/EDR software before carrying out malicious activities, such as encrypting files. Kasseika abuses the Martini driver, part of the TG Soft's VirIT Agent System. By using BYOVD attacks, the malware gains privileges it
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/15/bug-fixes-for-neteye-4-34-4/) - We fixed a bug in the SLM module that was causing an error when trying to create a Resource Contract in case any SLM Customer had an associated role with no permissions on the analytics module. Updated packages We updated the following packages: icingaweb2-module-slm, icingaweb2-module-slm-autosetup to version 4.32.1-1
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/14/bug-fixes-for-neteye-4-34-3/) - Updated packages We fixed a bug in the Elasticsearch action of Tornado UI that prevented the rule to be saved when either data or auth fields were edited. We updated the following packages: icingaweb2-module-tornado, icingaweb2-module-tornado-autosetup & icingaweb2-tornado-configurator to version 2.8.3-1
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/13/bug-fixes-for-neteye-4-34-2/) - We fixed a bug in the El Proxy DPO configuration for which the verification logs were never cleaned up. With the fix, it is now possible to specify, for each blockchain, a limit for the accumulated size for the logs. By default, the value is set to 1GB. Updated packages We updated the following packages:
- [Hostgroup Ping Dashboard](https://www.neteye-blog.com/blog/2023/12/22/hostgroup-ping-dashboard/) - Hostgroups are a grouping of hosts with similar characteristics such as geographical location, type, severity, environment, operating system, applications and much more. Hostgroups can be created for multiple purposes such as: Grouping hosts with common characteristics to view them as quickly as possible Using them as filters to manage Roles with limited views and access
- [Bug Fixes for NetEye 4.34](https://www.neteye-blog.com/blog/2024/02/07/bug-fixes-for-neteye-4-34/) - We fixed a bug in the Director module that caused the creation of a long list of created and deleted actions in the activity log, when a Tornado Smart Monitoring Action had been executed and the Icinga API returned an error. Now, if the Tornado action cannot correctly connect to the Icinga API, no log
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2024/02/01/bug-fixes-for-neteye-4-33-6/) - We fixed several bugs in multiple NetEye modules. Following, you can find the details of the various bug fixes released! General Setup of a new RPM mirror Previously missing ansible collections, which prevented the configuration of new RPM mirrors, are now shipped. Wrong link on 404 page We fixed the 404 link problem that was
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2024/02/01/bug-fixes-for-neteye-4-31-13/) - We fixed the following issues in the integration between NetEye and Alyvix. Test Case file selection dropdown We fixed an issue in the Test Cases view for which, when switching between the Test Cases of different nodes, the wrong Test Case file name was shown in the relative dropdown menu. Hidden Nodes session workflow status
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2024/02/01/bug-fixes-for-neteye-4-30-13/) - We fixed the following issues in the integration between NetEye and Alyvix. Test Case file selection dropdown We fixed an issue in the Test Cases view for which, when switching between the Test Cases of different nodes, the wrong Test Case file name was shown in the relative dropdown menu. Hidden Nodes session workflow status
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2024/02/01/bug-fixes-for-neteye-4-32-8/) - We fixed the following issues in the integration between NetEye and Alyvix. Test Case file selection dropdown We fixed an issue in the Test Cases view for which, when switching between the Test Cases of different nodes, the wrong Test Case file name was shown in the relative dropdown menu. Hidden Nodes session workflow status
- [NetEye 4.34 Release Notes](https://www.neteye-blog.com/blog/2024/02/01/neteye-4-34-release-notes/) - Welcome to version 4.34 of our NetEye v4 Unified Monitoring Solution. Spring is slowly approaching and the first plants awake from their winter slumber and peek through the snow. One of the earliest to bloom is the Crocus from the family of the Iridaceae. It's native to Europe, North Africa, and Central Asia up to
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2024/01/19/bug-fixes-for-neteye-4-33-5/) - We fixed a bug in Icinga2 that caused a huge increment of the InfluxDB disk usage. Another bug that was fixed was causing smsd configuration to be lost during the upgrade. Finally, in Tornado it is now possible to correctly insert conditions of type regex in node filters. Updated packages We updated the following packages:
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2024/01/19/bug-fixes-for-neteye-4-32-7/) - We fixed a bug in Icinga2 that caused a huge increment of the InfluxDB disk usage. Updated packages We updated the following packages: icinga2, icinga2-autosetup, icinga2-bin, icinga2-common, icinga2-configurator, icinga2-ido-mysql, icinga2-ido-pgsql, icinga2-neteye-config and icinga2-resources to version 2.14.0_neteye1.52.1-4
- [Reassign Elasticsearch ILM Policy with Python](https://www.neteye-blog.com/blog/2024/01/09/reassign-elasticsearch-ilm-policy-with-python/) - Index Lifecycle Management (ILM) policies constitute a fundamental component in Elasticsearch index management. They enable users to define the life stages of an index, determining when and how specific actions, such as transitioning from a "hot" to a "cold" state or deleting obsolete indices, should occur. ILM policies empower users to ensure the optimal distribution
- [Making Your Own Video Tutorials, Part 16: Creating and Using B-Roll](https://www.neteye-blog.com/blog/2024/01/03/making-your-own-video-tutorials-part-16-creating-and-using-b-roll/) - Perhaps your first question is, "What is B-Roll"? Great question. After reading the next paragraph, feel free to throw around the term at your next cocktail party. No need to cite me. The easy definition is that it's any video, animation, or dynamic graphic that doesn't count as A-Roll. Yes, I love these kinds of
- [Hacker Group Activities and Cyber Security Concerns | Second Semester 2023](https://www.neteye-blog.com/blog/2024/01/04/hacker-group-activities-and-cyber-security-concerns-second-semester-2023/) - A Security Operation Center (SOC) is a service where the customer is an active participant. Establishing a good relationship with the customer is an important requirement for handling security incidents more efficiently. Our SOC analysts produce and deliver several reports, most of them on a monthly basis. They are usually presented to clients during a
- [Speeding up the NetEye CI Testing Phase](https://www.neteye-blog.com/blog/2023/12/31/speeding-up-neteye-ci-testing-phase/) - Over the course of the last few years, we've introduced more and more features in NetEye 4. This fact has had a side effect that's not directly visible to customers, namely that we keep adding more and more tests to the testing phase of the NetEye 4 Continuous Integration pipelines. While this ensures that regression
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2024/01/05/bug-fixes-for-neteye-4-32-6/) - We fixed a bug in the NetEye Update and Upgrade procedures that was causing the procedure itself to stop with a timeout error in environments where the Elasticsearch APIs and/or Kibana APIs are particularly slow to respond. Updated packages We updated the following packages: neteye-upgrade-manager to version 0.43.5-1
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2024/01/05/bug-fixes-for-neteye-4-33-4/) - We fixed a bug in the NetEye Update and Upgrade procedures that was causing the procedure itself to stop with a timeout error in environments where the Elasticsearch APIs and/or Kibana APIs are particularly slow to respond. Updated packages We updated the following packages: elastic-agent, elastic-agent-autosetup, elastic-agent-neteye-config, elastic-stack-configurator, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config,
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2024/01/02/bug-fixes-for-neteye-4-33-3/) - In this bugfix, we fixed a problem for which, on single node installation, setting the correct replica number for all Elasticsearch indices could lead to an error related to system indices and the permissions needed to change their settings. Updated packages We updated to version 8.10.2_neteye3.57.4-1 the following packages: elastic-agent elastic-agent-autosetup elastic-agent-neteye-config elastic-stack-configurator elasticsearch elasticsearch-autosetup
- [Semantic Search in Elasticsearch – Testing Our NetEye Guide: Adding the LLM ingredient](https://www.neteye-blog.com/blog/2023/12/28/semantic-search-in-elasticsearch-testing-our-neteye-guide-adding-the-llm-ingredient/) - You weren't expecting a part three of this series, right? Well honestly, me neither. But after working together with you on the POC where we firstly crawled the NetEye Guide and applied ELSER to the resulting documents, and then we exploited its semantic search capabilities in the NetEye Guide search, we asked ourselves, what if
- [Playwright Tests on the NetEye Guide](https://www.neteye-blog.com/blog/2023/12/29/playwright-tests-on-the-neteye-guide/) - During the process of developing and improving the official NetEye user guide, some bugs regarding the display of the guide on mobile devices gave us the opportunity to innovate the development process of our product, extending the testing phase prior to the release of new versions of the NetEye user guide. In this blog post,
- [Reusing Code Logic between NetEye and Alyvix](https://www.neteye-blog.com/blog/2023/12/29/reusing-code-logic-between-neteye-and-alyvix/) - In the last few weeks the NetEye development team and the Alyvix development team have been collaborating to achieve support for Time Periods in Alyvix. In this blog post, we'd like to share some interesting challenges that this feature has brought to the developers. Disclaimer: as of the 28th of December, 2023 the Alyvix Time
- [Monitor Fleet Elastic Agents with NetEye Extension Packs (NEP)](https://www.neteye-blog.com/blog/2023/12/28/monitor-fleet-elastic-agents-with-neteye-extension-packs-nep/) - With the latest version of NetEye 4.33, the Fleet Server and ElasticAgent officially join the NetEye Elastic Stack (see NetEye 4.33 Release Notes ) Related to this new big feature, within the NetEye Extension Packs project we have provided new monitoring checks that can help customers and consultants who use NetEye to keep these new
- [Using Jinja2 to Automate Configuration Files](https://www.neteye-blog.com/blog/2023/12/28/using-jinja2-to-automate-configuration-files/) - As you may know, NetEye Cloud is our multi-tenant SaaS solution for monitoring your infrastructure. It's crucial to us for keeping every tenant aligned with the latest configurations and patches. We've managed to automate and align the agents via Desired State Configuration (DSC) and Ansible, but we still had to manually check those agents’ configurations.
- [How We Want to Avoid Breaking the NetEye User Guide (Again)](https://www.neteye-blog.com/blog/2023/12/24/how-we-want-to-avoid-breaking-again-the-neteye-user-guide/) - A few months ago while navigating through our NetEye User Guide we noticed that it had a small bug that caused some words in the right-side menu to be slightly truncated in the particular case where that menu contained some monospace characters. Well, since this was quite annoying, we fixed it on the fly with
- [Making ELK Updates Smoother with Configurators and Ansible](https://www.neteye-blog.com/blog/2023/12/24/making-elk-updates-smoother-with-configurators-and-ansible/) - Recently (in September 2023) NetEye integrated version 8.8 of the Elastic Stack, which is just one of many Elastic updates brought into NetEye 4. Since this Elastic update there was a major upgrade (from version 7.17) coming with many breaking changes, so we, as the NetEye R&D team, wanted to make this important upgrade as
- [SMTP Smuggling - A Quick Summary](https://www.neteye-blog.com/blog/2023/12/24/smtp-smuggling-a-quick-summary/) - SEC Consult researchers showed that some software allows a bad actor to inject a specially crafted email message concealing a second message hidden inside the body of the original message. This passes into the inbound SMTP server, which interprets the text as a separate second message. The attack relies on incorrect handling of the . sequence of
- [SIEM: Monitor Hosts Sending Data to Elasticsearch](https://www.neteye-blog.com/blog/2023/12/22/siem-monitor-host-sending-data-to-elasticsearch/) - Do you have a SIEM installation based on Elasticsearch (like the NetEye 4 SIEM Module) and are you sending data to it from your hosts? Then you'll surely want to know whether your host is actually sending data, or if nothing is coming out at all. For this I made available a simple icinga/nagios plugin
- [WP-CTF23 Write-up, OSINT Challenges](https://www.neteye-blog.com/blog/2023/12/22/wp-ctf-write-up-osint-challenges/) - Get insights into the OSINT, Digital Forensics, and Blockchain challenges from WP-CTF2023, the event hosted at Wurth Phoenix headquarters in Bolzano IT.
- [Blue-Green Deployment on Azure](https://www.neteye-blog.com/blog/2023/12/21/blue-green-deployment-on-azure/) - When deploying new features, releasing your code into a production environment might not be as easy as it seems. To ensure the minimal amount of service disruption, we might want to easily roll back to a previous configuration or to gradually migrate traffic to a new one. That’s where blue-green deployment comes to our aid.
- [How to Debug PHP xDebug XD](https://www.neteye-blog.com/blog/2023/12/20/how-to-debug-php-xdebug-xd/) - Sometimes in NetEye 4 it happens that we need to understand why the system behaves in a certain way. Since a lot of the NetEye 4 GUI is still based on PHP, we use the most powerful tool to debug PHP: Xdebug. Xdebug is an extension of PHP which mainly provides a debugger and profiler.
- [EPSS implementation in SATAYO](https://www.neteye-blog.com/blog/2023/12/20/epss-implementation-in-satayo/) - The Exploit Prediction Scoring System (EPSS) is a data-driven effort for estimating the likelihood (probability) that a software vulnerability will be exploited in the wild , as my colleague Beatrice Dall'Omo has already had the opportunity to talk about in this article. EPSS was developed by FIRST (https://www.first.org/epss/) with the aim of assisting those responsible
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2023/12/20/neteye-4-security-advisory-6/) - Important: NagVis Security Update Type/Severity Security Advisory: Important Topic An update for the package nagvis is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of Important. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating. Description
- [We spent a (Vue)day in Verona](https://www.neteye-blog.com/blog/2023/12/19/we-spent-a-vueday-in-verona/) - We are continuously expanding our VueJs integration in NetEye, and we believe that having the opportunity to attend a dedicated conference, not far from home, was an opportunity not to be missed. So on the 10th of November, we joined the Vueday conference in Verona. Vueday is the main international conference in Italy that's dedicated
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2023/12/20/bug-fixes-for-neteye-4-33-2/) - In this bug fix we fixed a problem that could have occurred during the upgrade phase to NetEye 4.33. More specifically, we expanded compatibility with older versions of some Elastic Agent integrations when loading them into the preconfigured NetEye policies. Updated packages We updated to version 8.10.2_neteye3.57.3-1 the following packages: elastic-agent elastic-agent-autosetup elastic-agent-neteye-config elastic-stack-configurator elasticsearch
- [Troubleshooting Icinga Notifications](https://www.neteye-blog.com/blog/2023/12/15/troubleshooting-icinga-notifications/) - I don't really know the reason behind it, maybe because the typical scenario for notifications is just "send all events to this mailing list", or as we say: set it and forget it. But we shouldn't use this as an excuse: monitoring projects now consist of tens of thousands of objects (hosts plus services), and
- [Enrichment of the Ransomfeed Project](https://www.neteye-blog.com/blog/2023/12/14/enrichment-of-the-ransomfeed-project/) - There are community projects that, once implemented, become true points of reference. One of these is certainly the DRM - Dashboard Ransomware Monitor project. This project, founded by Dario Fadda in 2020, monitors ransomware groups through scraping activities, to store claims regarding victims within a permanent RSS feed. However not everyone knows that starting from
- [EriZone Servicedesk: Upgrade to RockyLinux9/RHEL9 (CentOS7 EOL in June 2024)!](https://www.neteye-blog.com/blog/2023/12/14/erizone-servicedesk-upgrade-to-rockylinux9-rhel9-centos7-eol-in-june-2024/) - Dear EriZone customers! Our legacy servicedesk system EriZone currently runs on CentOS7 or Red Hat Enterprise Linux (RHEL) 7. These operating systems will not get any security fixes after June 2024. For anyone planning on keeping EriZone running beyond this date, we highly recommend you contact us for an upgrade to Rocky Linux 9. As
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2023/12/18/bug-fixes-for-neteye-4-33-4-32/) - We have released a fix for a problem in the Tornado UI, that didn't allow to pass multiple arguments to the script action in a rule. Updated packages We updated to version 2.4.1-1 the following packages: icingaweb2-module-tornado icingaweb2-module-tornado-autosetup
- [An Easy Way to Manage a Shared Office](https://www.neteye-blog.com/blog/2023/02/19/an-easy-way-to-manage-a-shared-office/) - Offices became open space and now the assigned workstations are increasingly transformed into shared spaces. This plugin helps you ro manage a shared office.
- [New Year’s Resolutions List](https://www.neteye-blog.com/blog/2023/01/05/new-years-resolutions-list/) - We're at the end of the year again and it's time to draw up the famous list of good resolutions for the coming year. I'm talking about good and working resolutions, the ones relating to good non-working resolutions is always very difficult to respect. I could challenge many of you to state for the record
- [Bug Fixes for NetEye 4.33](https://www.neteye-blog.com/blog/2023/12/12/bug-fixes-for-neteye-4-33/) - We improved the upgrade and update procedure related to the Elastic Agent, fixing an issue for which external Elastic Agents would disconnect from Fleet if they were connecting through a hostname different from NetEyes's FQDN. Moreover, we solve potential problems during the upgrade that would have occurred in case of already present outdated integrations or
- [WPCTF 2023: Our Journey in Organizing a Capture The Flag Event](https://www.neteye-blog.com/blog/2023/12/11/wpctf-2023-our-journey-in-organizing-a-capture-the-flag-event/) - On November 25th, in collaboration with the universities of Verona, Padova, Trento, and Bolzano, we hosted the WPCTF event—a thrilling Capture The Flag (CTF) competition that engaged over 50 cybersecurity enthusiasts. In this blog post, we'll explore into our journey in organizing the event, focusing on the technical aspects that made WPCTF a memorable success.
- [Monitoring a Business Process](https://www.neteye-blog.com/blog/2023/12/06/monitoring-a-business-process/) - Scenario NetEye 4 is a comprehensive monitoring platform which natively supports Business Processes. A Business Process is an abstract view of a customer’s Business from the Application point of view. Usually, it’s a collection of Icinga2 checks aggregated by “AND, OR, At Least” logics in order to monitor if a Business Application is really available
- [Würth Phoenix is a GLPI Gold Partner! Exclusive News from GLPI Partner Day](https://www.neteye-blog.com/blog/2023/12/06/wurth-phoenix-is-a-glpi-gold-partner-exclusive-news-from-glpi-partner-day/) - The popular open source software suite GLPI, an acronym for Gestionnaire Libre de Parc Informatique, has been part of the NetEye ecosystem since its beginnings, more than 15 years ago. GLPI includes a comprehensive, pre-configured IT Asset management database, an ITIL-compliant service desk (ticketing) and feature-packed inventory agents. Within the scope of NetEye, GLPI is
- [How to Install Matomo on OpenShift](https://www.neteye-blog.com/blog/2023/12/01/how-to-install-matomo-on-openshift/) - Recently we felt the need to collect anonymous metrics about how our users are visiting our websites. After some investigation, the development team proposed using Matomo: a free and open source software project which collects usage metrics while guaranteeing 100% privacy alongside the chance to be self-hosted. We decided to install it on OpenShift, since
- [Monitor Your Elasticsearch Agents Registered in the Elastic Fleet Server](https://www.neteye-blog.com/blog/2023/11/30/monitor-your-elasticsearch-agents-registered-in-the-elastic-fleet-server/) - Say you're using the SIEM Module in NetEye and are deploying the Elasticsearch Agent to your clients. You'd surely like to know if those agents are still sending data and are still connected to the Elastic Fleet server. I had this problem recently and came up with a new monitoring plugin that uses the Kibana-API
- [My OpenShift Journey #7: Enabling Persistent Monitoring](https://www.neteye-blog.com/blog/2023/11/28/my-openshift-journey-7-enabling-persistent-monitoring/) - Some days after installing an OpenShift cluster you may notice a warning related to insights: the system is complaining because metrics are not stored in a persistent way and a restart of the container may cause the loss of metrics. In OpenShift it is possible to configure several custom metrics. In this post I will
- [Improve Tornado Rules with a Mapping Modifier](https://www.neteye-blog.com/blog/2023/11/22/improve-tornado-rules-with-a-mapping-modifier/) - Some years ago, one of my colleagues wrote an article about how to “Avoid Tornado Rules Repetition with a Map Post-modifier”. He presented an interesting and very useful way for creating Tornado rules without rewriting them. The core of his approach was based on the Mapping modifier, a functionality in the previous Tornado GUI that
- [NetEye 4.33 Release Notes](https://www.neteye-blog.com/blog/2023/12/01/neteye-4-33-release-notes/) - Welcome to version 4.33 of our NetEye v4 Unified Monitoring Solution. With this release, NetEye welcomes Winter with a spectacular view of St. Jakob Church. It is located in Ortisei (or St. Ulrich in German), a small village in Val Gardena (Gröden in German) perfect to stroll about in, discover new things, and fall in
- [Bug Fixes for NetEye 4.32 - 4.31 - 4.30 - 4.29 - 4.28 - 4.27 - 4.26 - 4.25 - 4.24](https://www.neteye-blog.com/blog/2023/12/01/bug-fixes-for-neteye-4-32-4-31-4-30-4-29-4-28-4-27-4-26-4-25-4-24/) - We have released a fix for a problem related to RedHat subscriptions. Updated packages We updated the following packages: neteye-setup to version 1.109.5-1 for NetEye 4.32 1.107.5-1 for NetEye 4.31 1.106.4-1 for NetEye 4.30 1.103.5-1 for NetEye 4.29 1.101.7-1 for NetEye 4.28 1.96.5-3 for NetEye 4.27 1.90.6-1 for NetEye 4.26 1.90.6-1 for NetEye 4.25 1.86.10-1
- [A Minimal Voting System Based on Blockchain](https://www.neteye-blog.com/blog/2023/11/30/a-minimal-voting-system-based-on-blockchain/) - Suggested reader skill level: Proficient in software development Reading time: 10 min What you will learn: “Blockchain is hard.” Even if everyone has heard this sentence at least once, the truth is that it's not. It’s just a database, with a bit of cool stuff added on top. This article will teach you how to
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2023/11/27/bug-fixes-for-neteye-4-32-5/) - We fixed a bug where the deployment of the Icinga director would not clean up old stages, filling up the file system over multiple deploys. Updated packages For NetEye 4.32 we updated the following packages: icingaweb2-module-director, icingaweb2-module-director-autosetup to version 1.10.2_neteye1.31.1-1
- [Our Adventure at OSMC 2023: Exploring Open-Source Monitoring and Innovation](https://www.neteye-blog.com/blog/2023/11/15/our-adventure-at-osmc-2023-exploring-open-source-monitoring-and-innovation/) - At the OSMC 2023 conference, we embarked on an exciting journey into the world of open-source monitoring. It was an event filled with inspiration, insights, and innovation.
- [The Configurator: Moving from a Monolithic to a Modular Approach in NetEye Upgrade](https://www.neteye-blog.com/blog/2023/10/24/the-configurator-moving-from-a-monolithic-to-a-modular-approach-in-neteye-upgrade/) - Over the last few months, I've had the chance to work on a number of issues that involved many NetEye modules. In all these situations, we had to face the same problem: how to release a new module version without impacting the automated NetEye upgrade procedure. Nothing new for us, but we'd like to improve
- [From Chaos to Case: How SLAs Make Life Better!](https://www.neteye-blog.com/blog/2023/10/26/from-chaos-to-case-how-slas-make-life-better/) - One of the primary responsibilities of a Security Operation Center (SOC) is to effectively manage issues related to monitoring the security perimeter. This involves the meticulous analysis of alerts, the creation of subsequent cases, and if necessary, the escalation of incidents to the client through ticketing systems or, in some cases, the closure of incidents
- [Taking RPITIT ― Rust’s Shiny New Feature ― for a Test Ride with Type-system-level Lambda Calculus.](https://www.neteye-blog.com/blog/2023/10/27/taking-rpitit-―-rusts-shiny-new-feature-―-for-a-test-ride-with-type-system-level-lambda-calculus/) - With the upcoming Rust version 1.75.0, two important new features will be stabilized. These features go by the names return-position impl Trait in trait (RPITIT) and async fn in trait (AFIT).
- [LVM Disks on Azure for Dockerized Applications](https://www.neteye-blog.com/blog/2023/10/30/lvm-disks-on-azure-for-dockerized-applications/) - As an example of a Logical Volume Manager ( LVM ) setup on Azure, let me show you a real-world use case. Say we want to run a Pulp 3 container to host an rpm repo on Azure. As the base image let's choose Rocky Linux 9. The machine that we provision will have two
- [How to Fix OpenShift Console not Showing the Characters in Firefox](https://www.neteye-blog.com/blog/2023/10/30/how-to-fix-openshift-console-not-showing-the-characters-in-firefox/) - Recently when opening a console in the web-ui of OpenShift in Firefox, I saw the following: This doesn't happen when opening the console using Chromium. In the Firefox debugger, we can see that we have the following error: Blocked https://console-openshift-console.apps.rdopenshift.si.wp.lan/k8s/ns/openshift-pipelines/pods/el-azure-provisioner-pipeline-event-listener-b4c598b65-5j4xl/terminal from extracting canvas data because no user input was detected. The error is due to
- [Adding SOAR Features to the SOC - Part 1: Vulnerability Management](https://www.neteye-blog.com/blog/2023/10/30/adding-soar-features-to-the-soc-part-1-vulnerability-management/) - In this blog posts we will delve deeper into the SOAR topic, understanding how we can benefit from it. Let's start with the Vulnerability Management process.
- [How to Monitor NetEye with OpsGenie Heartbeats](https://www.neteye-blog.com/blog/2023/10/30/how-to-monitor-neteye-with-opsgenie-heartbeats/) - Have you ever thought about how to monitor your NetEye system or other critical applications in a network failure scenario? To manage this scenario, in some customer cases some solutions have been implemented using SMS notifications, thus relying on the support of the mobile network as a notification channel.But what happens when even the mobile
- [Making Your Own Video Tutorials, Part 15: Using a Teleprompter](https://www.neteye-blog.com/blog/2023/10/24/making-your-own-video-tutorials-part-15-using-a-teleprompter/) - Have you (like me) been spending too much time memorizing a script so in the final video you look as natural as possible? Maybe it's because the ideas behind each video keep becoming more and more complicated, but I'm sure my scripts are longer than they used to be. And for me, there's a point
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2023/10/31/bug-fixes-for-neteye-4-32-4/) - We added an automatic procedure that correctly upgrades the DB schema for Icinga2. Updated packages For NetEye 4.32 we updated the following packages: icinga2, icinga2-autosetup, icinga2-bin, icinga2-bin-debuginfo, icinga2-common, icinga2-configurator, icinga2-debuginfo, icinga2-debugsource, icinga2-doc, icinga2-ido-mysql, icinga2-ido-mysql-debuginfo, icinga2-ido-pgsql, icinga2-ido-pgsql-debuginfo, icinga2-neteye-config, icinga2-resources, icinga2-selinux to version 2.14.0_neteye1.52.1-2 neteye-ansible-communitymysql-collection to version 3.7.2_neteye1.0.0-1
- [Adding Your Own Documentation to NetEye with DokuWiki](https://www.neteye-blog.com/blog/2018/04/12/adding-your-own-documentation-to-neteye-with-dokuwiki/) - Wouldn’t it be great to have quick access to your favorite pages in the NetEye documentation? To make customized thumbnail pages of your most frequent screenshots? To create your own alternative documentation index with categories reflecting your mindset? To add your own notes, comments, or FAQ with pointers into the existing NetEye documentation? That would
- [Custom User Guide Content in NetEye 4](https://www.neteye-blog.com/blog/2018/08/29/custom-user-guide-content-in-neteye-4/) - In my last post, I showed you how to set up your own customized documentation in NetEye 3 so that it won’t be overwritten when you upgrade. Doing the same thing in NetEye 4 is also possible even though there isn’t a dedicated link for external documentation like in NetEye 3’s DokuWiki, and there isn’t
- [Creating Action Shortcuts in your NetEye 4 Custom User Guide](https://www.neteye-blog.com/blog/2018/10/02/creating-action-shortcuts-in-your-neteye-4-custom-user-guide/) - In my last user guide blog I showed you how to create your own menu item, create a space on the file system, write a sample page, and store an image for that page, all in a way that will survive future updates. This time I want to show you how to use your custom
- ["How To" Improve the User Guide](https://www.neteye-blog.com/blog/2019/07/08/how-to-improve-the-user-guide/) - Every software suite needs documentation. But the more features we add to NetEye to meet customer needs, the larger the user guide becomes. Over time, it's important to make sure that the guide continues to meet the needs of NetEye users despite this. In particular, modern methodologies like Agile that we use in NetEye often
- [Squaring the User Guide Circle](https://www.neteye-blog.com/blog/2019/12/01/squaring-the-user-guide-circle/) - The official Icinga 2 user guide is quite extensive, but it's not always complete. That's normal in today's world of fast changing software where the focus is on delivering new capabilities quickly. Even here at NetEye most of the documentation we produce for our user guide is written when we add new modules and features,
- [Creating Documentation in Sphinx](https://www.neteye-blog.com/blog/2020/12/03/creating-documentation-in-sphinx/) - Most small open source documentation projects use Markdown to create their project documentation. After all, it has a minimalistic and thus easy-to-learn syntax, does all the basics well, renders very quickly (even quickly enough to create a real-time WYSIWYG viewer), and is almost universally supported across popular web platforms like GitHub. At some point, though,
- [The Alyvix Video Tutorial Channel on YouTube](https://www.neteye-blog.com/blog/2020/12/21/the-alyvix-video-tutorial-channel-on-youtube/) - This year we introduced an Alyvix YouTube channel to complement the written Alyvix user guide. It now contains a number of videos that explain how to monitor specific tasks as well as explaining background knowledge about the building blocks you can use to create your own Alyvix test cases. At the end of this year
- [Making Your Own YouTube Tutorials, Part 1](https://www.neteye-blog.com/blog/2020/12/30/making-your-own-youtube-tutorials-part-1/) - In a recent blog post I described our new Alyvix YouTube channel that contains the 20 Alyvix tutorial videos we've created this year. Each video is a self-contained tutorial that showcases one aspect of how Alyvix can be used for visual monitoring, both practical application examples and for learning basic concepts and operations. Since one
- [Making Your Own YouTube Tutorials, Part 2](https://www.neteye-blog.com/blog/2021/01/11/making-your-own-youtube-tutorials-part-2/) - In my previous post I described the kind of tasks, resources and software that we had to master in order to create YouTube IT tutorial videos like the 20 Alyvix videos we made in 2020. As we looked back to compare the first few videos we made with the last few, it was easy to
- [Making Your Own Tutorials, Part 3: Using a Green Screen](https://www.neteye-blog.com/blog/2021/02/26/making-your-own-tutorials-part-3-using-a-green-screen/) - In my last blog post we looked at practical suggestions for improving the tutorial videos you upload to YouTube, focusing on tips for audio recording, video recording and editing, writing the script, and uploading them. Now suppose you want to take the next step that will (hopefully!) add some impact to your tutorials: putting yourself
- [Making Your Own Video Tutorials, Part 5: Publishing on YouTube](https://www.neteye-blog.com/blog/2021/06/30/your-own-video-tutorials-part-5-publishing-on-youtube/) - Congratulations on finishing your first tutorial video! So now you can put it on your corporate web site, and maybe email or tweet out a link to it. But what about visibility? If your business is large enough to have a marketing department, you (or they) will likely want your tutorial videos to be part
- [A Dead Simple CMS/WAMP Development Environment](https://www.neteye-blog.com/blog/2021/08/25/a-dead-simple-cms-wamp-development-environment/) - Suppose you need to set up or maintain a simple but professional looking website on Windows (maybe even on a budget), be able to develop using tools like PHP, have it all work even when you don't have web access, and then once you're done, wouldn't it be great if you didn't have to compile,
- [Intermediate Features in the Grav CMS](https://www.neteye-blog.com/blog/2021/12/20/intermediate-features-in-the-grav-cms/) - In my last post I described an easy, developer-oriented setup for a website based on the Grav file-based content management system, along with the EasyDev PHP development suite that contributes PHP, Apache and MySQL (although the latter isn't necessary for Grav to operate). Used together, you can build quite sophisticated user-facing sites. Today I'm going
- [Making Your Own Tutorials, Part 7: Script Delivery](https://www.neteye-blog.com/blog/2022/03/29/making-your-own-tutorials-part-7-script-delivery/) - You might remember from the last post in my series on creating video tutorials that we talked about improving the quality of picture-in-picture video tutorials. I broke it down into two parts, the background and the presenter, with this summary for the latter: What's realistically the most natural way you can present yourself in the
- [Making Your Own Video Tutorials, Part 8: It's All About That Audio](https://www.neteye-blog.com/blog/2022/04/28/making-your-own-video-tutorials-part-8-its-all-about-that-audio/) - So your video shooting and editing skills are at a high level now, and you're comfortable and even confident appearing in your videos. You've acquired a good quality microphone, greatly improving the resulting audio. But down deep you know there are still some things about the sound you could improve. I've already written a bit
- [Making Your Own Video Tutorials, Part 9: Interviewing an Expert](https://www.neteye-blog.com/blog/2022/06/30/making-your-own-video-tutorials-part-9-interviewing-an-expert/) - Welcome back to our ongoing series of how to improve the video tutorials you make, especially when you're on a tight budget, and by that I mean both money and time. Today let's look at conducting a live, one-on-one in-person interview. Note that online interviews and documentary-style off-screen interviews are their own full, separate topics).
- [Making Your Own Video (Tutorials), Part 10: Animation](https://www.neteye-blog.com/blog/2022/09/24/making-your-own-video-tutorials-part-10-animation/) - Since one apparently just can't have enough parts of a multi-part blog post, why not one more? Let's depart slightly from the usual themes, because I want to talk about something that's applicable to videos that are slightly more marketing oriented than your typical tutorial videos. Of course you could always make full-blown marketing videos
- [Making Your Own Video (Tutorials), Part 11: Animation Redux](https://www.neteye-blog.com/blog/2022/12/22/making-your-own-video-tutorials-part-11-animation-redux/) - After my last post on the advantages and disadvantages of the animation style of video, I hope you did your homework! I certainly did, and you can see the results of my first animated video that conveys some basic information on the need for cybersecurity both in English and in Italian. Probably like you, I
- [Making Your Own Video (Tutorials), Part 11: Recording Day](https://www.neteye-blog.com/blog/2022/12/31/making-your-own-video-tutorials-part-11-recording-day/) - So you read the advice I wrote in parts 1-9, you think to yourself "Oh why not, I'll try to make a video", and you then plan everything out: where to film, what to say, how to dress, the equipment you need, etc. You'll pick or reserve a room somewhere in your office building (we're
- [Making Your Own Video Tutorials, Part 12: Storyboarding](https://www.neteye-blog.com/blog/2023/02/28/making-your-own-video-tutorials-part-12-storyboarding/) - Okay, this is Part 12, so we're all experts now. Still, there are a number of things you can do to up your game. Today let's talk about one of them: planning your video with an organizational tool called storyboarding. Briefly, a storyboard is a visual tool, a series of drawn frames with written dialog
- [Making Your Own Video Tutorials, Part 13: (Data-Driven) Communication](https://www.neteye-blog.com/blog/2023/05/15/making-your-own-video-tutorials-part-13-data-driven-communication/) - You've probably watched a number of YouTube tutorials over the last 10 years, whether to help you with a specific task at work, to keep your IT skills refreshed, or even just to learn something new about one of your personal hobbies (no, we don't want to hear about your favorite cat videos). So I'm
- [Tutorial Video Editing Technical Tips, Part 1: Making an Inset Porthole Video](https://www.neteye-blog.com/blog/2023/08/23/tutorial-video-editing-technical-tips-part-1-making-an-inset-porthole-video/) - Rather than the type of advice in my series on how to create a tutorial video, today let's talk about the specifics on how to create a "porthole video", which is an inset video overlay used during a screencast that doesn't have the standard square shape (if it were square, we wouldn't need any special
- [Making Your Own Video Tutorials, Part 14: Dark Backgrounds](https://www.neteye-blog.com/blog/2023/07/03/making-your-own-video-tutorials-part-14-dark-backgrounds/) - I'm not one to follow a lot of the latest YouTube trends. Maybe it's an age thing, though it could also just be a stubborn streak. But after you make enough videos, you start to recognize a good thing when you see it. And one thing that struck me recently were a number of great
- [How People Reacted to Follina, the New 0-day](https://www.neteye-blog.com/blog/2022/06/14/how-people-reacted-to-follina-the-new-0-day/) - Zero-day vulnerabilities pose a serious threat in the field of cybersecurity. These flaws are usually discovered and exploited by criminals before security researchers even know of their existence. Because of this, we call them 0-day. It indicates the amount of time the "good people" have had to study and solve the problem. So if this
- [Hacker Group Activities and Cyber Security Concerns | First Semester 2023](https://www.neteye-blog.com/blog/2023/08/28/hacker-group-activities-and-cyber-security-concerns-first-semester-2023/) - A Security Operation Center (SOC) is a service where the customer is an active participant. Establishing a good relationship with the customer is an important requirement for handling security incidents more efficiently. Our SOC analysts produce and deliver several reports, most of them on a monthly basis. They are usually presented to clients during a
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2023/10/25/bug-fixes-for-neteye-4-32-3/) - In the Tornado GUI, we fixed the behavior of the "Group Match IDX" input of the regex extractor. Updated packages For NetEye 4.32 we updated the following packages: icingaweb2-module-tornado and icingaweb2-module-tornado-autosetup to version 2.2.3-1
- [ntopng - Display Multiple Metrics in One Graph](https://www.neteye-blog.com/blog/2023/10/18/ntopng-display-multiple-metrics-in-one-graph/) - After my last ntopng trainings, which I taught as an instructor, I noticed that many ntopng users were not familiar with the display of multiple time series charts overlapping in one graphic. Since I believe that this is one of the most important display options, I'll use this blog post to show you how to
- [Semantic Search in Elasticsearch – Testing Our NetEye Guide: Can We Improve the Search Experience? (Part 2) ](https://www.neteye-blog.com/blog/2023/10/09/semantic-search-in-elasticsearch-testing-our-neteye-guide-can-we-improve-the-search-experience-part-2/) - In my previous blog post, we saw how it's possible to index some documents that we created by crawling our NetEye User Guide, then applying the ELSER model in Elasticsearch to create a bag of words for searching that takes into account the context of the various documents. Moreover, we also performed a simple query
- [NetEye and Space Missions: How Work in the NetEye R&D Team Contributed to My Research Project](https://www.neteye-blog.com/blog/2023/10/09/neteye-and-space-missions-how-the-work-in-the-rd-team-contributed-to-my-research-project/) - Having recently completed an internship at a lab at the University of Trento, I noticed how my work at Wuerth-Phoenix has greatly influenced the development of the research I conducted during my internship. In fact in this post I'd like to share my completed project and how it was influenced by my work in Wuerth-Phoenix's
- [How to Test Beta Repos for RedHat 8.9 in a Container](https://www.neteye-blog.com/blog/2023/10/06/how-to-test-beta-repos-for-redhat-8-9-in-a-container/) - We wanted to test the new RedHat 8.9 beta releases, but RedHat doesn’t currently provide a beta container. How can we do it anyway? Please note that this procedure is not officially supported by RedHat. As a first step, we want to retrieve the package redhat-release from the rhel 8.9 beta ISO, in the directory
- [Semantic Search in Elasticsearch - Testing Our NetEye Guide: Can We Improve the Search Experience? (Part 1)](https://www.neteye-blog.com/blog/2023/10/03/semantic-search-in-elasticsearch-testing-our-neteye-guide-can-we-improve-the-search-experience-part-1/) - Once upon a time (in fact it was just a month ago, but it sounds more dramatic this way) I had the opportunity to attend a webinar about Vector Search, Generative AI, and modern NLP by the Elastic Team. One of the topics that was touched on during the webinar was ELSER , Elastic's new
- [Team Building: Sailing at Lake Garda](https://www.neteye-blog.com/blog/2023/10/19/team-building-sailing-at-garda-lake/) - Why Sailing? Sailing is the perfect team building event: it combines cooperation, responsibility and commitment, along with a great dose of fun! That's why this summer we decided to head up to Lake Garda to take part in a sailing team building event. Program The day started early in the morning, our bus picked us
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2023/10/16/bug-fixes-for-neteye-4-32-2/) - We have fixed the following bugs in the Tornado GUI: Very long rule names, rule descriptions, and JSON strings are now displayed correctly The add node bar is now always visible even with long processing trees Updated packages For NetEye 4.32 we updated the following packages: icingaweb2-module-tornado and icingaweb2-module-tornado-autosetup to version 2.2.2-2
- [Bug Fixes for NetEye 4.32](https://www.neteye-blog.com/blog/2023/10/09/bug-fixes-for-neteye-4-32/) - We fixed a bug in the El Proxy for which in case of NetEye node failure (e.g. loss of power), the El Proxy service may lose the content of the file containing the blockchain key. In this case El Proxy would fail to sign new logs upon restart. Updated packages For NetEye 4.32 we updated
- [Ransomware Negotiation: Dos and Don'ts!](https://www.neteye-blog.com/blog/2023/09/28/ransomware-negotiation-dos-and-donts/) - Double extortion ransomware attacks have reached very high numerical values. One of the key elements, when suffering such an attack, concerns the negotiation that can be initiated (not always!) with the ransomware gang. The analysis, carried out by the SEC4U team, of hundreds of negotiations makes it possible to apply a scientific approach to this
- [NetEye 4.32 Release Notes](https://www.neteye-blog.com/blog/2023/10/02/neteye-4-32-release-notes/) - Discover the latest news in the world of NetEye 4
- [NETEYE USERGROUP 2023… NUREMBERG EDITION!](https://www.neteye-blog.com/blog/2023/10/01/neteye-usergroup-2023-nuremberg-edition/) - ...also this year, Würth Phoenix & Gravitate organized the annual Usergroup DACH 2023 in Nuremberg. The Usergroup is not only a chance to inform our customers about new products and releases, but also an occasion to meet and exchange feedback and ideas. This year's NetEye Usergroup took place in Nuremberg in the Romantik Hotel Rottner,
- [NETEYE USER GROUP 2023… #italianedition](https://www.neteye-blog.com/blog/2023/10/01/neteye-user-group-2023-italianedition/) - The event of the year, the NetEye User Group, is back! The User group is not only a chance to inform our customers about new products and releases, but also an occasion to meet and exchange feedback and ideas. This year the NetEye Usergroup took place in Rocca Sveva, a centuries old villa located in
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/28/bug-fixes-for-neteye-4-31-12/) - We fixed a bug in the NetEye in which El Proxy would use an empty string as previous hash when, upon restart, it could not find the last signed log in Elasticsearch, resulting in a blockchain corruption. Updated packages For NetEye 4.31 we updated the following packages: elastic-blockchain-proxy and elastic-blockchain-proxy-autosetup to version 0.30.7-1
- [Alyvix Modules in NetEye](https://www.neteye-blog.com/blog/2023/09/25/alyvix-modules-in-neteye/) - Today I want to report on my first experience with the new Alyvix integration in NetEye. At the same time as NetEye version 4.30, another revised update of the Alyvix module was released for NetEye. And just recently in August I had my first opportunity to install and operate this revised module together with its
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/26/bug-fixes-for-neteye-4-31-11/) - We updated GLPI to 10.0.10. This new version introduces a lot of security fixes. The update is strongly recommended. Furthermore we fixed a bug for which the InfluxDB secure install script could have failed to run some queries due to a numeric database name. Updated packages For NetEye 4.31 we updated the following packages: glpi,
- [Monitoring Downtime Automation from Windows](https://www.neteye-blog.com/blog/2023/09/25/monitoring-downtime-automation-from-windows/) - Do you ever need to reboot or do maintenance on your Windows Server? Then if the server is monitored by NetEye, you'll surely want to mark it in downtime so as not to have notifications sent out for problems arising due to maintenance, and/or to be able to have the correct SLA marked for your
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/25/bug-fixes-for-neteye-4-31-10/) - We fixed a bug in the NetEye upgrade that regards the update of the Elastic Stack packages in cluster environments. The bug occurred in case of encountered errors and resulted in the procedure finishing the steps instead of instantly aborting the operations. Now is possible to update the nodes of the NetEye cluster without hesitations.
- [How to Convert and Add a .pfx cert to Pulp 3 Operator](https://www.neteye-blog.com/blog/2023/09/12/how-to-convert-and-add-a-pfx-cert-to-pulp-3-operator/) - On our OpenShift cluster we use pulp3 as the repository manager. One recent task we had to do was to add a certificate before we could expose the repository over TLS. Our IT department provided us with the certificate in .pfx format. Following this guide for converting the certificate to a format usable by OpenShift,
- [Automating Icinga 2 Deployment on Linux Systems](https://www.neteye-blog.com/blog/2023/09/12/automate-icinga2-deployment-on-linux-systems/) - Currently, deploying an Icinga 2 Agent on a Linux system can be intricate, given the substantial variations in the process across different releases or OS families. For instance: The repository definition differs for each OS version and family User and group specifications vary between Debian and RedHat The environmental path for the Icinga installation also
- [NetEye User Group IT 2023](https://www.neteye-blog.com/blog/2023/09/18/neteye-user-group-it-2023/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/19/bug-fixes-for-neteye-4-31-9/) - We fixed a bug for which the generic El Proxy composable index templates in Elasticsearch, so those not matching a particular Beat, did not include the ECS mappings and this could have led to wrongly indexed data. After the fix, the templates include by default the ECS 8.0.0 mappings. Updated packages For NetEye 4.31 we
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/09/13/bug-fixes-for-neteye-4-30-12/) - We fixed a bug in the NetEye Upgrade Manager that caused the procedure to possibly use the wrong repository metadata when understanding which NetEye *-configurator packages need to be installed to support the upgrade and update procedures. Updated packages For NetEye 4.30 we updated the following packages: neteye-upgrade-manager to version 0.39.3-1
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/13/bug-fixes-for-neteye-4-31-8/) - We fixed a bug in the NetEye Upgrade Manager that caused the procedure to possibly use the wrong repository metadata when understanding which NetEye *-configurator packages need to be installed to support the upgrade and update procedures. Updated packages For NetEye 4.31 we updated the following packages: neteye-upgrade-manager to version 0.40.3-1
- [Upgrading to the New nep-setup on NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/05/upgrading-to-the-new-nep-setup-on-neteye-4-31/) - After a first semester full of great opportunities (many colleagues like to say so), the wheels have started turning again for NetEye Extension Packs. Now, a big evolution is beginning: in the near future, NEP will encompass the entire NetEye infrastructure, meaning it will also configure and manage NetEye Satellites. To do so, the current
- [Configuring the New Fleet Server on Elastic 8](https://www.neteye-blog.com/blog/2023/08/29/configuring-the-new-fleet-server-on-elastic-8/) - The Fleet Management feature was automatically enabled with NetEye release 4.30, and with the current 4.31 version all the Elastic Stack packages will be upgraded to major version 8. These two milestones will permit us to centrally manage log ingestion using the new Elastic Agents (the evolutions of Beats Agents) and forget all the custom
- [DEFCON 31: My Trip to Vegas w/ mhackeroni](https://www.neteye-blog.com/blog/2023/08/23/defcon-31-my-trip-to-vegas-w-mhackeroni/) - Greetings, cyber enthusiasts! This year we hacked a satellite and won $50K!! Okay, now that I've got your attention, that last sentence isn't fake, but let's go back to a few days ago… I'm Alessandro — Alemmi on the internet — and while I always enjoy playing CTFs with my workmates here at Würth Phoenix,
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/05/bug-fixes-for-neteye-4-31-7/) - We fixed a bug in El Proxy that caused the verification result sent to the Monitoring to be filled with logs and difficult to read. Now a simplified report with only important information is sent by El Proxy to the Monitoring. Updated packages For NetEye 4.31 we updated the following packages: elastic-blockchain-proxy and elastic-blockchain-proxy-autosetup to
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/09/04/bug-fixes-for-neteye-4-31-6/) - We fixed a bug in the Alyvix IcingaWeb2 module for which a missing requirement could led to an error if a certain package was not installed. Updated packages For NetEye 4.31 we updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.42.5-1
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/09/04/bug-fixes-for-neteye-4-30-11/) - We fixed a bug in the Alyvix IcingaWeb2 module for which a missing requirement could led to an error if a certain package was not installed. Updated packages For NetEye 4.30 we updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.42.5-1
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/08/30/bug-fixes-for-neteye-4-31-5/) - We fixed the following 4 bugs related to upgrade procedure to ELK 8. Firstly, we fixed an issue with a script used to set the correct number of replicas for single-node installations, which was throwing an error in case a certain system index, already having the correct setting, was being affected by the procedure. Moreover,
- [AGENDA NetEye & EriZone User Group: Don't miss this year's exciting topics!](https://www.neteye-blog.com/blog/2017/02/27/agenda-neteye-erizone-user-group-dont-miss-this-years-exciting-topics-2/) - IoT, E2E Monitoring, SIEM, Network Discovery and Anomaly Detection are keywords that are gaining increasing importance in modern enterprises. Under consideration of these actual trends, we now defined the final agenda of this year’s NetEye & EriZone User Grou.
- [Debug and Workarounds for a Stuck Update on OpenShift 4.13.6](https://www.neteye-blog.com/blog/2023/08/25/debug-and-workarounds-for-a-stuck-update-on-openshift-4-13-6/) - Today we wanted to update our OpenShift cluster, and after a while we came up against the following error: Not good… Let's start by checking the clusterversion to investigate if we can find any errors: oc get clusterversion NAME VERSION AVAILABLE PROGRESSING SINCE STATUS version 4.13.6 True True 91m Unable to apply 4.13.9: an unknown
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/08/25/bug-fixes-for-neteye-4-30-10/) - We fixed a bug in a check pre-upgrade related to the upgrade to Elastic Stack 8 which did not identify correctly the cases in which a single critical system index needs migration. Updated packages For NetEye 4.30 we updated the following packages: elastic-agent, elastic-agent-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config, logstash-neteye-config-autosetup,
- [How to Brand the Cockpit Login Page](https://www.neteye-blog.com/blog/2023/08/04/how-to-brand-the-cockpit-login-page/) - The example code in this article is available on GitHub. From a brand identity perspective, it's essential that your company's theme is applied to all parts of your products. After my previous blog post where we saw how you can create a Cockpit module with Vue.js, it's time to see how we can customize the Cockpit
- [Bug Fixes for NetEye 4.31 and 4.30](https://www.neteye-blog.com/blog/2023/08/10/bug-fixes-for-neteye-4-31-and-4-30/) - We fixed a bug in NetEye Userguide clarifying the procedure to setup custom certificate on a NetEye Mirror in Change NGINX Certificates section both in NetEye 4.30 and 4.31.
- [Cockpit module + Vue.js + TypeScript](https://www.neteye-blog.com/blog/2023/07/27/cockpit-module-vue-js-typescript/) - The example project used in this article is available on GitHub. A few months ago I started exploring Cockpit and the first thing I noticed is how every single Cockpit module is made with React. Why doesn't anybody use Vue.js and/or TypeScript in Cockpit? Let's start with the basics: what is Cockpit? Quoting RedHat: Cockpit
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/08/22/bug-fixes-for-neteye-4-31-4/) - We fixed the following 4 bugs related to El Proxy. The first bug was that there was large RAM consumption during the verification in case the verified blockchain contained a large number of corruptions. With the fix, the list of found corruptions, which caused the problem, is now exported in a .ndjson.gz file, for easier
- [From Icinga 2 Monitoring to ITOA](https://www.neteye-blog.com/blog/2023/08/07/from-icinga2-monitoring-to-itoa/) - Scenario NetEye 4 is a comprehensive monitoring platform which natively supports Icinga 2 checks on remote hosts and devices. Several Icinga 2 checks support an historical view of the status. An example is the firewall interface performance status below, which displays a Performance Graph: Getting a better overview All the graph data generated by the
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/08/21/bug-fixes-for-neteye-4-30-9/) - We fixed a bug in a check pre-upgrade related to the upgrade to Elastic Stack 8 for which, in case some critical system indices need to be migrated, the upgrade was prevented. Updated packages For NetEye 4.30 we updated the following packages: elastic-agent, elastic-agent-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config, logstash-neteye-config-autosetup,
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/08/17/bug-fixes-for-neteye-4-31-3/) - We fixed a bug that regards Tornado Carbon. It is now possible, in the dedicated regex fields, to be assisted in the error check without incoming in an error message during the deployment phase. In addition, a bug that was causing a host's availability to exceed 100% in SLA reports has been fixed. Updated packages
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/08/10/bug-fixes-for-neteye-4-31-2/) - We fixed an issue for which El Proxy, when writing logs to the DLQ due to the impossibility to index logs in Elasticsearch, would not write the original received log but a "reduced version" used in the previous retries. With the released version, the original document is now written in DLQ. Updated packages For NetEye
- [Bug Fixes for NetEye 4.31](https://www.neteye-blog.com/blog/2023/08/08/bug-fixes-for-neteye-4-31/) - We fixed an issue for which El Proxy was taking long to acknowledge multiple corruptions at large iterations. With the newly released version is now possible to use the acknowledge-range command to acknowledge multiple corruptions with a single command. For more information, check out the NetEye User Guide. Updated packages For NetEye 4.31 we updated
- [NetEye 4.31 Release Notes](https://www.neteye-blog.com/blog/2023/08/01/neteye-4-31-release-notes/) - Discover the latest news in the world of NetEye 4
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2023/08/01/neteye-4-security-advisory-5/) - Synopsis Important: GLPI security update Type/Severity Security Advisory: Important Topic An update for the package glpi is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of Important. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [NetEye 4 - Security Advisory](https://www.neteye-blog.com/blog/2023/08/01/neteye-4-security-advisory-4/) - Synopsis Important: lampod security update Type/Severity Security Advisory: Important Topic An update for the package lampod is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of Important. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [Atlassian News ~ July Edition](https://www.neteye-blog.com/blog/2023/07/31/atlassian-news-july-edition/) - Welcome, everyone to our third "Monthly Atlassian News"! Why are we doing this? You might know that the Atlassian website is so complete, that finding information can be a big challenge😵 So... we decided to do the dirty work for you and summarize all the latest features and news from the Atlassian ecosystem every two
- [My OpenShift Journey #6: Pipelining Part II](https://www.neteye-blog.com/blog/2023/07/18/my-openshift-journey-6-pipelining-part-ii/) - In my previous blog-post I wrote an introduction to pipelining in OpenShift. This blog post is a follow-up to explain how to trigger a pipeline automatically. Tekton triggers are quite complex and need some explanation in order to be understood. To trigger a pipeline you need several components. In the graph below you can see
- [My OpenShift Journey #6: Pipelining Part I](https://www.neteye-blog.com/blog/2023/07/17/my-openshift-journey-6-pipelining-part-i/) - It's been a while since my last blog post about our OpenShift journey since as a devops team, we've been focusing on other activities for a while. Today I'd like to talk a bit about how to use OpenShift for CI purposes. As described in our productive use case, we implemented several pipelines to build
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/07/17/bug-fixes-for-neteye-4-30-8/) - We updated the Elastic Stack to the latest bugfix version 7.17.11. In particular this version fixes a problem in Kibana, which was not properly handling some particular DSL queries. For more information on the fixes provided with this version, please refer to the official Elastic Stack website. In case you have any Elasticsearch plugin installed
- [ntop News in the Next Release](https://www.neteye-blog.com/blog/2023/07/10/ntop-news-in-the-next-release/) - At the end of June, Luca Deri gave a webinar presenting the new features of the next ntopng release. I'd like to take this opportunity now to present these innovations to all of you. The main enhancements of the new release have been made in the following areas: Extension of the ntopng functionalities for the
- [GLPI Remote Inventory - Part 2 (Windows)](https://www.neteye-blog.com/blog/2023/06/28/glpi-remote-inventory-part-2-windows/) - In GLPI Remote Inventory - Part 1 I described how to perform a remote inventory of Linux machines. Here in Part 2 I'll describe instead how to perform a remote inventory on Windows machines using the WinRM (Windows Remote Management) protocol through an HTTPS listener. In order to create and use an HTTPS Listener on
- [GLPI Remote Inventory - Part 1 (Linux)](https://www.neteye-blog.com/blog/2023/06/26/glpi-remote-inventory-part-1-linux/) - Since NetEye version 4.29, the GLPI module has been upgraded to version 10. With this update GLPI introduced a new feature, making it possible to perform agentless inventories. Given the wide interest regarding this new feature from many of our customers, I decided to describe the steps necessary to be able to configure, link, and
- [Scheduling Downtime on Linux Environments](https://www.neteye-blog.com/blog/2023/06/23/scheduling-downtime-on-linux-environment/) - In one of my previous posts I mentioned the importance of downtime scheduling and shared an interesting example of a PowerShell script for managing downtime in Windows environments. Recently a customer asked me how to manage downtime with a similar solution, but for several hundred Linux servers monitored under NetEye. The reason is very simple:
- [Bug Fixes for NetEye 4.30 - 4.29 - 4.28 - 4.27 - 4.26 - 4.25 - 4.24](https://www.neteye-blog.com/blog/2023/07/10/bug-fixes-for-neteye-4-30-4-29-4-28-4-27-4-26-4-25-4-24/) - We have released a fix for a problem related to RedHat subscriptions. Updated packages We updated the following packages: neteye-setup to version 1.106.3-1 for NetEye 4.30 1.103.4-1 for NetEye 4.29 1.101.6-1 for NetEye 4.28 1.96.5-2 for NetEye 4.27 1.90.5-1 for NetEye 4.26 1.90.5-1 for NetEye 4.25 1.86.9-1 for NetEye 4.24
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/07/06/bug-fixes-for-neteye-4-30-7/) - We fixed a bug that regards the validation of the hostname of a NetEye node. Now is possible to use names starting with upper case characters without any problem. Updated packages For NetEye 4.30 we updated the following packages: neteye-setup to version 1.106.2-1
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/07/04/bug-fixes-for-neteye-4-30-6/) - We fixed a bug that regards the neteye alyvix-node setup command, which was not specifying the version of the Alyvix API to consume, thus leading to an error. Updated packages For NetEye 4.30 we updated the following packages: icingaweb2-module-alyvix and icingaweb2-module-alyvix-autosetup to version 0.42.4-1
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/07/01/bug-fixes-for-neteye-4-30-5/) - We fixed a bug that regards the neteye upgrade/update process: since there was the risk of failures when the first node of a cluster was already in a standby status, now we implemented an additional check about this possible case. Updated packages For NetEye 4.30 we updated the following packages: neteye-upgrade-manager to version 0.38.2-1
- [Add Host Custom Variables to the Service Overview](https://www.neteye-blog.com/blog/2023/06/28/add-host-custom-variables-to-the-service-overview/) - Custom Variables are widely used in the NetEye 4 (Icinga) monitoring system in order to tag/add information to a host/service. In order to speed up setting these variables, users use the inheritance mechanism to inherit them from parent objects (i.e. hosts). This feature is very useful, but sometimes it can create some doubt about what
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/06/27/bug-fixes-for-neteye-4-30-4/) - We fixed an issue where the check of the upgrade prerequisites was failing in case no prerequisites were found. Updated packages For NetEye 4.30 we updated the following packages: neteye-setup to version 1.106.1-1
- [SOC vs. MDR: Understanding the Key Differences for Comprehensive Cybersecurity](https://www.neteye-blog.com/blog/2023/06/23/soc-vs-mdr-understanding-the-key-differences-for-comprehensive-cybersecurity/) - Introduction In today's increasingly complex cybersecurity landscape, it is crucial for organizations to adopt effective solutions to protect their data and digital assets from ever-evolving threats. Two commonly used services in this regard are SOC (Security Operations Center) and MDR (Managed Detection and Response). While both aim to ensure cybersecurity, there are important differences that
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/06/22/bug-fixes-for-neteye-4-30-3/) - We fixed several deprecations in the NetEye SIEM module, which allow NetEye installations to be compliant with the directives of Elastic Stack and to be prepared for future upgrade of the Elastic Stack. Updated packages For NetEye 4.30 we updated the following packages: apm-server, apm-server-autosetup, apm-server-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config, kibana, kibana-autosetup,
- [ClickHouse - High Availability Cluster](https://www.neteye-blog.com/blog/2022/12/12/clickhouse-high-availability-cluster/) - As you have surely read from the release notes of NetEye 4.27, we have integrated ClickHouse to be able to use the historical flows and alerts feature of ntopng. What is ClickHouse? Directly from the official website: ClickHouse is a column-oriented database management system (DBMS) for online analytical processing of queries (OLAP). ClickHouse’s performance exceeds
- [Creating Compelling Stacked Bar Charts with Grafana](https://www.neteye-blog.com/blog/2022/11/02/creating-compelling-stacked-bar-charts-with-grafana/) - Grafana is an open source data visualization application that is widely used for displaying interactive monitoring and service dashboards. It focuses on a high-performance visualization of time series data, such as network throughput, access time, or CPU performance data. For this, it connects to specific time series databases such as InfluxDB, but also to common
- [Bug Fixes for NetEye 4.30](https://www.neteye-blog.com/blog/2023/06/09/bug-fixes-for-neteye-4-30/) - We fixed a bug that caused a failed authentication of Alyvix sessions having some special characters in the password, due to an inconsistent encoding. Moreover, we fixed an issue related to the installation procedure of the feature modules packages on satellites, which under some circumstances was not marking the corresponding DNF group as installed. Furthermore,
- [NEP NRPE](https://www.neteye-blog.com/blog/2023/06/07/nep-nrpe/) - After performing several migrations to NetEye 4, I realized that not all checks present on the old NetEye 3 could be migrated immediately. Sometimes for obsolete host systems on which the new Icinga 2 Agent could not be installed, or for dedicated check types for specific services, it was necessary to continue using our good
- [TIBER-EU: Enhancing Cybersecurity Resilience in the Financial Sector](https://www.neteye-blog.com/blog/2023/06/01/tiber-eu-enhancing-cybersecurity-resilience-in-the-financial-sector/) - As technology continues to advance at an unprecedented pace, the financial sector faces increasing risks and challenges in safeguarding sensitive data and ensuring the security of critical systems. In response to this evolving threat landscape, the European Central Bank (ECB) and the European Union Agency for Cybersecurity (ENISA) introduced a groundbreaking framework known as TIBER-EU
- [NetEye 4.30 Release Notes](https://www.neteye-blog.com/blog/2023/06/01/neteye-4-30-release-notes/) - Discover the latest news in the world of NetEye 4
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/06/01/bug-fixes-for-neteye-4-29-6/) - General Authentication via request-header backend We fixed a bug that did not allow the role to be associated with a user who was part of an LDAP group when the user logged in via the request-header backend. Tornado Tornado Director retry loop We fixed a bug that triggered the Tornado Director in a retry loop
- [Atlassian News ~ May Edition](https://www.neteye-blog.com/blog/2023/05/25/atlassian-news-may-edition/) - Welcome, everyone to our second "Monthly Atlassian News"! Why are we doing this? You might know that the Atlassian website is so complete, that finding information can be a big challenge😵 So... we decided to do the dirty work for you and summarize all the latest features and news from the Atlassian ecosystem every two
- [Enterprise Service Management — Verona Event](https://www.neteye-blog.com/blog/2023/05/25/enterprise-service-management-verona-event/) - On May 18th, an event organized by Würth Phoenix and sponsored by Atlassian was held in Verona. The event was targeted at both new companies and existing customers who were interested in leveraging the Atlassian solutions. The afternoon session focused on providing participants with valuable insights into Enterprise Service Management (ESM), a highly relevant topic
- [Enterprise Service Management](https://www.neteye-blog.com/blog/2023/05/25/enterprise-service-management/) - Given the rapidly evolving business landscape, advancements in technology, and the increasing expectations of customers, companies must adopt a mindset of business agility, and Enterprise Service Management (ESM) represents a solution for companies striving to maintain competitiveness in the market. 💡 Enterprise Service Management is the extension of IT Service Management (ITSM) principles outside of the
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/05/11/bug-fix-for-neteye-4-29-6/) - We fixed a bug that was preventing the upgrade from 4.29 to 4.30 and removed some concurrency issues occurring in cluster environments. Furthermore we fix a a bug where the neteye_secure_install would overwrite dashboard UIDs in some edge-cases. For NetEye 4.29 we updated the following packages: neteye-upgrade-manager to version 0.35.6-1 icingaweb2-module-grafan and icingaweb2-module-grafana-autosetup to version
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/05/09/bug-fix-for-neteye-4-29-5/) - We updated Icinga Web 2 to the latest bugfix version.All fixes can be found in the official documentation. We also fixed an issue where the modification of the neteye tenant configuration was possible when that would leave orphant generated configurations. For NetEye 4.29 we updated the following packages: icingaweb2, icingacli, icingaweb2-autosetup, icingaweb2-common, icingaweb2-selinux, icingaweb2-vendor-HTMLPurifier, icingaweb2-vendor-JShrink,
- [A Simple Grafana Data Source for Outlier Detection (POC) – Part 2](https://www.neteye-blog.com/blog/2023/05/03/a-simple-grafana-data-source-for-outlier-detection-poc-part-2/) - In my previous post, we saw how it's possible to build a simple Grafana Data Source Plugin, which we can use to read data from whatever source we'd like to use. In particular, we used it to read data from a simple web service we created so we could expose data containing some outliers. In
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/05/04/bug-fix-for-neteye-4-29-4/) - We fixed a bug on the command orchestrator module that prevented the correct command to be displayed on the "Command Execution" tab. Now is possible to see the correct command name and associate correctly the execution tab to the selected command. For NetEye 4.29 we updated the following packages: icingaweb2-module-cmdorchestrator to version 0.15.1-1
- [Using Ansible to Automate Agent Deployment](https://www.neteye-blog.com/blog/2023/05/02/using-ansible-to-automate-agent-deployment/) - NetEye relies on many agents in order to monitor just one server, some examples are: Icinga, Telegraf, Elastic beats, GLPI agent and so on. As a Site Reliability Engineer, I'm responsible for ensuring that all these agents run smoothly. This can involve performing repetitive and time-consuming tasks like managing configurations, deploying updates, and provisioning new
- [Elasticsearch Snapshots and How to Monitor Them](https://www.neteye-blog.com/blog/2023/04/28/elasticsearch-snapshots-and-how-to-monitor-them/) - If you have a NetEye with SIEM Module activated or own an Elasticsearch installation then you have surely activated the Elasticsearch Snapshots to make backups of all your indexes (or at least the important ones). However you have to take a regular look at your Snapshots Reports to check that everything is working correctly. I
- [Alerting on Network Traffic Anomalies with ntopng](https://www.neteye-blog.com/blog/2023/04/27/alerting-on-network-traffic-anomalies-with-ntopng/) - Today I'd like to tell you about the possibility of alerting when anomalies in network traffic are encountered. I use ntopng to generate, evaluate and forward these alerts. If you don't know about ntopng, let me briefly describe for you what it does. According to its creator, ntopng is a High-Speed Web-based Traffic Analysis and
- [Monitoring Veritas Backup Exec](https://www.neteye-blog.com/blog/2023/04/21/monitoring-veritas-backup-exec/) - Scenario Veritas Backup Exec is widely used for the backup of physical machines through local installed agents both on Windows and Linux hosts. It also supports application backup for Microsoft Exchange, SharePoint and several different Database engines, with the option of a granular application data restore. The product additionally supports virtual backup through Hyper-V and
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/22/bug-fix-for-neteye-4-29-3/) - We fixed a bug that was preventing the first secure install of a cluster to success. Now the ClickHouse autosetup, which contained the spotted bug, has been fixed and updated. Moreover we fixed two bugs related to Tenants having a name starting with numbers. In particular a bug that in this case caused the Satellite
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/04/22/bug-fixes-for-neteye-4-28-12/) - We fixed a bug that was preventing the first secure install of a cluster to success. Now the ClickHouse autosetup, which contained the spotted bug, has been fixed and updated. For NetEye 4.28 we updated the following packages: neteye-setup to version 1.101.5-1 clickhouse-neteye-config to version 0.7.1-1 ntopng-neteye-config to version 1.10.2-1
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/04/22/bug-fixes-for-neteye-4-27-8/) - We fixed a bug that was preventing the first secure install of a cluster to success. Now the ClickHouse autosetup, which contained the spotted bug, has been fixed and updated. For NetEye 4.27 we updated the following packages: neteye-setup to version 1.96.4-1 clickhouse-neteye-config to version 0.7.1-1 ntopng-neteye-config to version 1.10.2-1
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/20/bug-fix-for-neteye-4-29-2/) - We fixed a bug that caused the command for creating or editing a tenant to fail without any error in case one of the configuration files contained an invalid JSON. For NetEye 4.29 we updated the following packages: neteye-satellite-manager to version 0.40.2-1
- [Bug Fix for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/19/bug-fix-for-neteye-4-29/) - Fixed a bug that blocks neteye upgrade under some conditions For NetEye 4.29 we updated the following packages: neteye-upgrade-manager to version 0.35.5-1
- [How to Apply PHP Coding Conventions for Icinga Web 2 Projects](https://www.neteye-blog.com/blog/2020/06/18/how-to-apply-php-coding-conventions-for-icinga-web-2-projects/) - In this article we're going to take a look at the main tool for validating PHP code and explain in detail how to check the code we write so we can contribute it to Icinga Web 2 and its modules. First, let's talk a little about coding conventions and what's the standard for PHP projects.
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/19/bug-fixes-for-neteye-4-29-5/) - We applied some vulnerability fixes to GLPI. For NetEye 4.29 we updated the following packages: glpi, glpi-autosetup and glpi-neteye-config to version 10.0.7_neteye1.13.0-1 glpi-plugin-icingaweb2sso and glpi-plugin-icingaweb2sso-autosetup to version 1.11.1-1
- [A Productive OpenShift Use Case: NetEye User Guide](https://www.neteye-blog.com/blog/2023/04/06/openshift-a-productive-use-case-neteye-user-guide/) - In December 2022 we decided to completely restructure the code of our User Guide. Previously, each project contained its own documentation, but this led to very difficult and time-consuming development having the code scattered across more than 40 repositories. Furthermore our contributors are not necessarily NetEye developers, or even developers at all. Setting up a
- [Introducing Observability in El Proxy](https://www.neteye-blog.com/blog/2023/04/03/introducing-observability-in-el-proxy/) - If you're familiar with the NetEye SIEM module you probably also know El Proxy, the solution integrated into NetEye to ensure the integrity and inalterability of the logs produced by the SIEM module. Since its introduction in NetEye, the only way to understand what El Proxy was doing was to inspect its logs, but as
- [A Simple Grafana Data Source for Outlier Detection (POC) - Part 1](https://www.neteye-blog.com/blog/2023/03/27/a-simple-grafana-data-source-for-outlier-detection-poc-part-1/) - In this article, I'd like to step through the development of a simple Proof of Concept (POC) Grafana data source with you where we retrieve data from an API, apply an outlier detection technique, and then visualize the end results in a dashboard. So... let's begin! Note: All the code discussed in this blog post
- [How to Set Up an Effective Phishing Campaign](https://www.neteye-blog.com/blog/2023/03/17/how-to-arrange-an-effective-phishing-campaign/) - At Würth Phoenix, we organise periodic phishing campaigns for our customers to test both the employees’ awareness in identifying phishing emails and the robustness of the technologies employed for email filtering.
- [Enable DNS Caching on RedHat 8](https://www.neteye-blog.com/blog/2023/03/01/enable-dns-caching-on-redhat-8/) - I was recently with a customer when he pointed out to me that his NetEye 4 system with its RedHat 8 operating system was sending an extremely large number of DNS queries to the DNS servers. After quickly analyzing the situation I found that RHEL does not cache DNS queries by default. Obviously the customer
- [NagVis Module: How to Create a Regular Map](https://www.neteye-blog.com/blog/2023/02/16/nagvis-module-how-to-create-a-regular-map/) - NagVis is a visualization add-on for NetEye, and can be used to show NetEye monitoring data, over for example, a Network Schema as the use case below will show you. Thanks to NagVis, you can import a previously created network schema into NetEye, and overlay network objects that have previously been monitored by NetEye. Let's
- [NetEye GeoMap Module](https://www.neteye-blog.com/blog/2023/02/15/neteye-geomap-module/) - NetEye provides its users with the GeoMap module, and recently a customer asked me to prepare a useful GeoMap configuration for him, so he could geographically locate the backbone devices in his network. The NetEye Geo Map module allows you to overlay the position and status of hosts on top of a customizable map, based
- [Ntopng and Behavior Analysis](https://www.neteye-blog.com/blog/2023/02/15/ntopng-and-behavior-analysis/) - Ever since version 5.4 of nBoxes with the Enterprise L license it's been possible to use a new feature called Behavior Analysis. Let's see what it is and how to take advantage of it. This ntopng feature enables monitoring of periodic flows of network traffic, i.e., flows that frequently repeat, by highlighting the services it
- [Grafana: InfluxDB Query to Extract More Than a Single Metric in a Single Panel](https://www.neteye-blog.com/blog/2023/02/15/grafana-influxdb-query-to-extract-more-than-a-single-metric-in-a-single-panel/) - A particular client who operates as an ISP for its customers and corporate departments requested the ability to summarize and display, in convenient graphs, a few metrics related to the bandwidth delivered on switch ports, where the available gateways provide connectivity. The first activity I undertook was to obtain the MIB files and OIDs from
- [FOSDEM 2023](https://www.neteye-blog.com/blog/2023/02/15/fosdem-2023/) - After two years of a forced break caused by the pandemic, we were finally able to book a flight to Brussels and participate in the FOSDEM event again. For those who aren't familiar with it, FOSDEM is a free event for software developers to meet, share ideas and collaborate. Apart from the amazing experience overall, we met
- [Ransomware Attack ESXi Servers with (to confirm) CVE-2021-21974](https://www.neteye-blog.com/blog/2023/02/07/ransomware-attack-esxi-servers-with-cve-2021-21974/) - These days the landscape of cybercriminal activities seems to have as the only protagonists the Threat Actors who are carrying out an attack on publicly exposed VMware ESXi infrastructures. The French National Computer Emergency Response Team (CERT) published a security advisory on the ESXiArgs ransomware on February 3, 2023. Other important information regarding the attack was published
- [Interview with a Member of the GhostSec Group](https://www.neteye-blog.com/blog/2023/01/18/interview-with-a-member-of-the-ghostsec-group/) - The Initial Message The last few days have been quite hectic with regard to cyber security in the industrial systems sector. The frenzy of these days began on January 11 with this message that appeared on the Telegram channel (https://t.me/GhostSecc) of the GhostSec group: The message was accompanied by a couple of screenshots: So are
- [Learning Path: Cyber Security in NetEye Development](https://www.neteye-blog.com/blog/2023/01/17/learning-path-cyber-security-in-neteye-development/) - Overview I think there are different ways companies use to achieve the purpose of making their own software more secure, for example paying other dedicated companies to do penetration tests. Our approach was the same, initially…the most obvious problems were found and fixed. But there was something we weren't buying. We weren't satisfied, we knew
- [Static Field Validation in Serde](https://www.neteye-blog.com/blog/2023/01/09/static-field-validation-in-serde/) - I recently had to parse the JSON-RPC 2.0 standard and ran into the following problem: The standard requires the field "jsonrpc": "2.0" in the JSON itself, and I wanted to validate that with Serde to ensure the message conforms to the standard. On the other hand I don’t need the field in the actual struct,
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/12/bug-fixes-for-neteye-4-29-4/) - Fixed a bug that caused SLM reports to fail due to a not considered condition in downtimes. For NetEye 4.29 we updated the following packages: icingacli, icingaweb2, icingaweb2-autosetup, icingaweb2-common, icingaweb2-selinux, icingaweb2-vendor-HTMLPurifier, icingaweb2-vendor-JShrink, icingaweb2-vendor-Parsedown, icingaweb2-vendor-dompdf, icingaweb2-vendor-lessphp, icingaweb2-vendor-zf1 to version 2.10.4_neteye1.116.3-1
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/07/bug-fixes-for-neteye-4-29-3/) - Fixed a bug that caused neteye_secure_install to fail due to a misconfiguration of Elastic certificates. For NetEye 4.29 we updated the following packages: logstash-neteye-config-autosetup, logstash-autosetup, kibana-neteye-config, kibana-autosetup, filebeat-autosetup, elasticsearch-xpack-license, elasticsearch-autosetup, apm-server-autosetup, filebeat-neteye-config, filebeat, apm-server-neteye-config, apm-server, logstash-neteye-config, logstash, elasticsearch-neteye-config, kibana, elasticsearch to version 7.17.9_neteye3.47.1-1
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/06/bug-fixes-for-neteye-4-29-2/) - We fixed a bug that caused some SNMP traps to be lost by the Tornado collector. For NetEye 4.29 we updated the following packages: tornado, tornado-common, tornado-dto, tornado-rsyslog-collector-logmanager, tornado-autosetup and tornado-neteye-config to version 1.21.2-1
- [Bug Fixes for NetEye 4.29](https://www.neteye-blog.com/blog/2023/04/07/bug-fixes-for-neteye-4-29/) - We fixed a bug that caused tornado smart monitoring executor to throw errors if the object name contained some special characters. Together with this bug fix we also deprecated the retry option on pending object, as we resolved this issue in NetEye 4.22. If a custom configuration was created, it will be backed up as
- [NetEye 4.29 Release Notes](https://www.neteye-blog.com/blog/2023/04/03/neteye-4-29-release-notes/) - Discover the latest news in the world of NetEye 4
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/03/27/bug-fixes-for-neteye-4-28-11/) - We fixed a bug that caused a 404 error in OCS Inventory when trying to deploy a new Build for Windows. For NetEye 4.28 we updated the following packages: ocsinventory-ocsreports and ocsinventory-ocsreports-autosetup to version 2.10.0_neteye1.13.2-1 We fixed the error notification colors that caused the notification card to be unreadable. For NetEye 4.28 we updated the
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/03/23/bug-fixes-for-neteye-4-28-10/) - We fixed a bug that caused DRBD quorum loss under certain conditions. For NetEye 4.28 we updated the following packages: drbd-neteye-config, kmod-drbd to version 9.2.2_4.18.0_425.13.1-1
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/03/21/bug-fixes-for-neteye-4-28-9/) - We updated the monitoring plugins package to the last bugfix version 2.3.3. For NetEye 4.28 we updated the following packages: monitoring-plugins to version 2.3.3_neteye1.3.2-1
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/03/09/bug-fixes-for-neteye-4-28-8/) - We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.28 we updated the following packages: grafana, grafana-autosetup, grafana-neteye-config to version 8.5.10_neteye3.18.1-1
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/03/09/bug-fixes-for-neteye-4-27-7/) - We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.27 we updated the following packages: grafana, grafana-autosetup, grafana-neteye-config to version 8.5.10_neteye3.18.1-1
- [Bug Fixes for NetEye 4.26](https://www.neteye-blog.com/blog/2023/03/09/bug-fixes-for-neteye-4-26-4/) - We fixed an issue in Grafana for which the panel description icon and the panel title resulted overlapped. For NetEye 4.26 we updated the following packages: grafana, grafana-autosetup, grafana-neteye-config to version 8.5.10_neteye3.18.1-1
- [Atlassian Bi-Monthly News 🎉 ~ March Edition](https://www.neteye-blog.com/blog/2023/03/02/atlassian-monthly-news-march-edition/) - Welcome, everyone to our first "Monthly Atlassian News"! Why are we doing this? You might know that the Atlassian website is so complete, that finding information can be a big challenge😵 So... we decided to do the dirty work for you and summarize all the latest features and news from the Atlassian ecosystem every two
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/03/03/bug-fixes-for-neteye-4-28-7/) - To tackle an issue preventing the start, under certain circumstances, of some Beats on Windows machines, we updated the version of the Elastic Stack shipped with the SIEM module to version 7.17.9. For NetEye 4.28 we updated the following packages: apm-server, apm-server-autosetup, apm-server-neteye-config, elastic-agent, elastic-agent-neteye-config, elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack-license, filebeat, filebeat-autosetup, filebeat-neteye-config, kibana, kibana-autosetup, kibana-neteye-config,
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/28/bug-fixes-for-neteye-4-28-6/) - We fixed edit permissions for the icingaweb2 module Tornado. If the root node of the tornado processing tree was modified it would duplicate the node as a child node of the root node. Since the root node is not meant to be editable, we deactivated that functionality in the Tornado UI. For NetEye 4.28 we
- [You're Not Using Confluence the Right Way, Part 2](https://www.neteye-blog.com/blog/2023/02/27/youre-not-using-confluence-the-right-way-part-2/) - In my last article I used some examples to show how you can collaborate on Confluence. I talked about how it's useful for knowledge management and project management, especially if integrated with the Atlassian suite. I also gave some examples on how it can be used at the enterprise level to improve communication. Today I
- [You're Not Using Confluence the Right Way](https://www.neteye-blog.com/blog/2023/02/20/youre-not-using-confluence-the-right-way/) - Have you ever wondered if you're using Confluence to its full potential? Confluence is such a flexible tool, and can be used in so many ways, that a lot of people get confused about it. Many customers have asked me what’s the added value of this tool compared to others, so here's a short guide
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/17/bug-fixes-for-neteye-4-28-2/) - We fixed edit permissions for module Geo Map. Now users with only editor access will not be able to edit map names. For NetEye 4.28 we updated the following packages: icingaweb2-module-geomap to version 1.17.4-1
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/16/bug-fixes-for-neteye-4-28-5/) - We fixed role sorting in the Access Control page: now it is possible to view all the roles sorted by name. This viewing settings is settled by default when accessing the Access Control page and can be changed in the dedicated menu. For NetEye 4.28 we updated the following packages: icingaweb2 to version 2.10.4_neteye1.114.2-1 icingaweb2-module-tornadocarbon
- [Atlassian new products' announcements! Wuerth Phoenix goes to Unleash Berlin!](https://www.neteye-blog.com/blog/2023/02/10/atlassian-new-products-announcements-wuerth-phoenix-goes-to-unleash-berlin/) - Unleash is an event powered by Atlassian, which aims to bring together partners, customers and Jira enthusiasts in one single location. The event took place on February 9th in Berlin… and I was there! Berlin’s event, Unleash, was mainly dedicated to empowering agile & DevOps teams, therefore mainly focusing on Jira. The day started with
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/15/bug-fixes-for-neteye-4-28-4/) - We fixed access permissions for Geo Map module: now also users with only General module access and viewer permission are able to access the module with viewing permissions. For NetEye 4.28 we updated the following packages: icingaweb2-module-geomap to version 1.17.2-1 icingaweb2-module-neteye to version 1.126.3-1 icingaweb2-module-slm to version 4.22.3-1 icingaweb2-module-smartdirector to version 0.21.1-1 icingaweb2-module-lampo to version
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/13/bug-fixes-for-neteye-4-28-3/) - We fixed a potential race condition that caused icinga2 to crash during the reload phase. For NetEye 4.28 we updated the following packages: icinga2 to version 2.11.9_neteye1.48.6-1 icingaweb2-module-director to version 1.9.1_neteye1.30.3-1
- [Bug Fixes for NetEye 4.28](https://www.neteye-blog.com/blog/2023/02/07/bug-fixes-for-neteye-4-28/) - We fixed a bug in the Alyvix module for which, in case of an Alyvix node where the Alyvix service was not working properly, a long waiting time was necessary before being able to determined its unreachable state. The waiting time was decreased and is now configurable. For NetEye 4.28 we updated the following packages:
- [NetEye 4.28 Release Notes](https://www.neteye-blog.com/blog/2023/02/01/neteye-4-28-release-notes/) - Discover the latest news in the world of NetEye 4
- [Bugfixes for NetEye 4.27, 4.26, 4.25: Elasticsearch License Renewal](https://www.neteye-blog.com/blog/2023/01/26/bugfixes-for-neteye-4-27-4-26-4-25-elasticsearch-license-renewal/) - The current Elasticsearch license bundled with NetEye will expire this January 31st. To continue enjoying all the SIEM functionalities you must update to the new license. An automatic update has been released for the most recent NetEye version. Older NetEye releases however, can be updated manually. In the case the health-check light/01004_elastic_license_check.sh is preventing you
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/01/24/bug-fixes-for-neteye-4-27-6/) - We fixed a bug when generating resource reports that did not correctly account for customer permissions For NetEye 4.27 we updated the following packages: icingaweb2-module-analytics, icingaweb2-module-autosetup to version 1.53.3-1 icingaweb2-module-slm, icingaweb2-module-slm-autosetup to version 4.22.2-1
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/01/20/bug-fixes-for-neteye-4-27-5/) - In this bug fix we managed to solve the problem regarding the checkbox usage. The bug we fixed was forcing the checkboxes found in the SLM - Availability Contracts manager status to be true regardless the user choice. For NetEye 4.27 we updated the following packages: icingaweb2-module-neteye, icingaweb2-module-neteye-autosetup to version 1.123.1-1
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/01/18/bug-fixes-for-neteye-4-27-4/) - We fixed a bug that was doubling the menu entries for Host Problems and Service Problems on customproblemview module when a host or service filter was applied on the user role. For NetEye 4.27 we updated the following packages: icingaweb2-module-customproblemview, icingaweb2-module-customproblemview-autosetup to version 1.5.1-1 icingaweb2-module-neteye, icingaweb2-module-neteye-autosetup to version 1.123.0-3
- [Spam Trap Box - A Powerful Method to Detect Phishing Attempts](https://www.neteye-blog.com/blog/2023/01/10/spam-trap-box-a-powerful-method-to-detect-phishing-attempts/) - It's more and more common to receive emails asking for credentials. They usually say that there's some kind of issue that can only be solved by accessing the involved service using the link inside the message text. In most cases these emails are malicious, intended to steal users' or employees' credentials and gain access to
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/01/17/bug-fixes-for-neteye-4-27-3/) - We fixed a bug that did not allow SLM resource reports to be generated correctly for sending via email. We have updated Icinga Web 2 with the latest bug fix release that brings security fixes. For NetEye 4.27 we updated the following packages: icingaweb2-module-analytics, icingaweb2-module-autosetup to version 1.53.2-1 icingaweb2, icignaweb2-autosetup to version 2.10.4_neteye1.112.2-1
- [Red_Team_Script, a Powerful Script for Red Team Activities](https://www.neteye-blog.com/blog/2023/01/10/red_team_script-a-powerful-script-for-red-team-activities/) - Cybersecurity is a discipline that deals with protecting computer systems and digital data from attacks and security breaches. With the increasing use of technology and dependence on computer systems in everyday life, cybersecurity is becoming increasingly important. But what are the risks for those who don't know how to protect themselves? Online security risks can
- [Agile Adoption Is Hard... So What's the Secret Sauce?](https://www.neteye-blog.com/blog/2023/01/11/agile-adoption-is-hard-so-whats-the-secret-sauce/) - I've heard too many times now about companies jumping into business agility, thinking it's something easy... If you're among them, you might be wrong! But let's take a step back... all of us know how adopting Agile practices is crucial nowadays..... “By 2023 80% of ITSM teams that fail to adopt an Agile approach now
- [Package Update for NetEye 4.26, 4.25 and 4.24](https://www.neteye-blog.com/blog/2023/01/11/packages-update-for-neteye-4-26-4-25-and-4-24/) - To identify a NetEye system globally, a unique NUUID (NetEye Universal Unique IDentifier) will be assigned to each NetEye Node. Red Hat Subscriptions are now bound to the NUUID.The feature has been originally released in NetEye 4.27 and is now backported for NetEye versions 4.26, 4.25, and 4.24. For more information on the registration of
- [What is the perfect development team size?](https://www.neteye-blog.com/blog/2022/11/25/what-is-the-perfect-development-team-size/) - When a team practicing agile software development is growing, one common question that arises is the optimal size for a development team. While some argue that smaller teams are more effective, others believe that larger teams can be equally successful if managed properly. In this article, we will explore the advantages and disadvantages we encountered
- [The Most Important Question in Product Development](https://www.neteye-blog.com/blog/2022/10/14/the-most-important-question-in-product-development/) - Communication is the single most important thing whenever and wherever people interact. Communication is the key to great relationships both in business and also in personal life, however it seems like it's also the hardest thing to get right. When a software product evolves, between the birth of a good idea, the formalization of a
- [How to tackle uncertainty during development](https://www.neteye-blog.com/blog/2022/03/11/how-to-tackle-uncertainty-during-development/) - Uncertainty is an inherent part of the complex domain of software development. To reduce uncertainty, we made it a part of our custom agile software development methodology. We plan the next sprint for each team by picking the top-most items from the backlog and giving a rough estimate. However, sometimes a new feature request is
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2023/01/05/bug-fixes-for-neteye-4-27-2/) - We fixed the default configuration paths used to send SMS messages. For NetEye 4.27 we updated the following packages: smstools to version 3.1.15_neteye1.0.1-13
- [How to Parse HTML Email Messages with Tornado](https://www.neteye-blog.com/blog/2022/12/20/how-to-parse-html-email-messages-with-tornado/) - Tornado is a CEP "Complex Event Processor" that receives reports of events from data sources such as monitoring and email, matches them against preconfigured rules, and executes the actions associated with those rules. Some vendors provide static notification systems that cannot be customized. For example, during one project we were faced with a tool that
- [How We Verify the Integrity of El Proxy Blockchains Altered by a Retention](https://www.neteye-blog.com/blog/2022/12/21/how-we-verify-the-integrity-of-el-proxy-blockchains-altered-by-a-retention/) - El Proxy helps in compliance with GDPR regulations, which, besides the rest, imposes guarantees on the integrity of data and ensures that the data is kept for no longer than a predefined period of time. El Proxy ensures the integrity of the data by saving the data in El Proxy blockchains. The guarantee that data
- [Exporting Grafana Graphs to CSV](https://www.neteye-blog.com/blog/2022/12/22/export-of-grafana-graphs-to-csv/) - Some time ago, a customer asked me if it was possible to export the data used by NetEye 4 Performance Graphs to CSV format. In particular, the performance graphs that are displayed within Icinga 2's web interface currently have no option to export their data. After some research, I found that the only way to
- [Configuring ClickHouse as an Additional Data Source in Grafana](https://www.neteye-blog.com/blog/2022/12/23/configure-clickhouse-as-an-additional-data-source-in-grafana/) - As mentioned in my colleague Mattia's blog, NetEye 4.27 comes with a ClickHouse database pre-installed.If you follow that post, you will be able to customize NetEye in order to save data inside a ClickHouse database. Your data is now ready to be visualized on a dashboard, and you can accomplish this by configuring the ClickHouse
- [Adding Settings to Beats Agents' Templates Based on the Index Name](https://www.neteye-blog.com/blog/2022/12/27/adding-settings-to-beats-agents-templates-based-on-the-index-name/) - With the introduction of the Composable Index Templates in Elastic, we at NetEye had to redesign the way index settings and mappings are applied to the indices generated by El Proxy. In this post I'll explain: How the new Composable Index Templates logic has changed with respect to the legacy Index Templates How these changes
- [Monitoring Automation in Director](https://www.neteye-blog.com/blog/2022/12/28/monitoring-director-automations/) - Director is one of the most important modules in NetEye 4 because it's used for managing, automating and deploying the configurations of all monitored objects. In all our projects we use automation in Director: through the Import and Synchronization rules we can automate many operations such as the import and synchronization of hosts, service checks,
- [Migrate a NetEye 4 Server from CentOS 7 to RHEL 8 (v4.22->v4.23) with EFI Boot](https://www.neteye-blog.com/blog/2022/12/15/migrate-a-neteye-4-server-from-centos-7-to-rhel-8-v4-22-v4-23-with-efi-boot/) - When upgrading NetEye 4 from version 4.22 to version 4.23, the main focus is the upgrade/change of the operating system from CentOS 7 to the new RHEL 8 operating system. Normally you can proceed as explained in the Upgrade section of the user guide since NetEye 4 uses the "normal" BIOS boot sector with grub.
- [One Year as a DevOps Engineer](https://www.neteye-blog.com/blog/2022/12/20/one-year-as-devops-engineer/) - The Beginning When I started my new role as a DevOps Engineer at the beginning of 2022, we had little experience in DevOps as a team. We tried several times to implement automation in order to simplify maintenance and reduce the amount of overall effort we invested in routine activities. However, since DevOps engineers are
- [A Simple and Portable Dockerfile for Working with Azure and Ansible](https://www.neteye-blog.com/blog/2022/12/20/a-simple-and-portable-dockerfile-for-working-with-azure-and-ansible/) - For our use case, we need to be able to deploy Azure machines using Ansible from developer's laptops and from our own CI/CD infrastructure both on Jenkins and OpenShift. The easiest way to ship a working and easy-to-use environment for our use case is to create a Docker instance: we based our Docker on rockylinux
- [Finding Subtle Changes in your NetEye 4 Monitoring during Critical Activities](https://www.neteye-blog.com/blog/2022/12/29/finding-subtle-changes-in-your-neteye-4-monitoring-during-critical-activities/) - Rules and standards are important. In a world based on collaboration, following a well defined behavior is key for avoiding errors based on some sort of misunderstanding. This is also true for the world of information technology: someone releases software that is incomplete by design, and then leaves the completion of it to the people
- [Start Using systemd Timers instead of cron/anacron](https://www.neteye-blog.com/blog/2022/12/30/start-using-systemd-timers-instead-of-cron-anacron/) - systemd timers are a way to schedule tasks in Linux systems using the systemd initialization system. They provide finer granularity for scheduling tasks than the traditional crontab, and also ensure that the task will be executed when the system is running in the future, even if the expected execution time was missed due to the
- [Using GLPI with the Metabase Open Source BI Tool for Visualizing Rich Reports and Dashboards](https://www.neteye-blog.com/blog/2023/01/04/using-glpi-with-the-metabase-open-source-bi-tool-for-visualizing-rich-reports-and-dashboards/) - Asset management/CMDB tools play (or should play!) a central role in IT operations and management, gathering data from hardware assets on contracts, software licenses, network configurations, tickets and many more. The key task is to keep all this data consistent and up to date. Rigor in manual data insertion and the careful integration of automation
- [Focus on the noPac Attack](https://www.neteye-blog.com/blog/2023/01/02/focus-on-the-nopac-attack/) - Exploiting in chain CVE-2021-42278 and CVE-2021-42287 to elevate privileges of a standard user to Domain Administrator in Active Directory environments.
- [Data-driven Models - the Ultimate Fighter against a Company's Complexity 👊 - Use Case Part 2 of 2](https://www.neteye-blog.com/blog/2022/12/31/data-driven-model-the-ultimate-fighter-against-companies-complexity-use-case-part-2-of-2/) - Guidelines on Data-driven models for managing data complexity and designing robust systems that might be consider both a single-source-of-truth and a single-point-of-contact. Use case scenario about a real Managed Service Provider ITSM with Atlassian Cloud products As mentioned in my previous post (Part 1 of 2), data-driven models help companies in managing data complexity and
- [Strategies for Secret Management](https://www.neteye-blog.com/blog/2022/12/15/strategies-for-secret-management/) - In my previous blog post, we had a long discussion about how Icinga 2 manages its configuration in a Distributed Monitoring environment and how this can lead to unwanted disclosure of sensitive data, be it Secrets or Personal Data. The post ended with a set of recommendations/best practices that can be summarized in the statement
- [How We Sped up El Proxy Verification](https://www.neteye-blog.com/blog/2022/12/13/how-el-proxy-sped-up-the-verification-of-blockchains/) - Before deploying El Proxy in production we, the R&D Team, carried out numerous benchmarks and reproduced real life scenarios to ensure that the real-time log signing performed by El Proxy would not represent a bottleneck in environments where logs that must respect the Italian "Garante Privacy" regulations are generated with data rates of around 2,000
- [Jira Discovery: how to have devices always updated](https://www.neteye-blog.com/blog/2022/09/29/jira-discovery-how-to-have-devices-always-updated/) - After discovered the assets and imported into Jira in this article we will see how to set up a service and keep updated all the assets.
- [Jira Discovery: a quick way to manage your assets](https://www.neteye-blog.com/blog/2022/03/18/jira-discovery-a-quick-way-to-manage-your-assets/) - A quick way to manage your enterprise assets with Jira Discovery tool. In this very simple tutorial you will have a mapping of your network in short time.
- [Jira Discovery: how to import discovered assets](https://www.neteye-blog.com/blog/2022/06/27/jira-discovery-how-to-import-discovered-assets/) - Here we are with the second part of our article. If you missed the first one, here's the link: https://www.neteye-blog.com/2022/03/jira-discovery-a-quick-way-to-manage-your-assets/ In this second part we will see how to import assets discovered using the Jira Discovery Tool. Let's go into our Jira Service Management: Create a new Object Schema that we will call Import: Next
- [Bug Fixes for NetEye 4.27](https://www.neteye-blog.com/blog/2022/12/16/bug-fixes-for-neteye-4-27/) - We fixed a bug that did not allow the RHEL version to be set correctly when the automatic subscription was disabled. For NetEye 4.27 we updated the following packages: neteye-setup to version 1.96.2-1
- [Data-driven Models - the Ultimate Fighter Against a Company's Complexity 👊 - Part 1 of 2](https://www.neteye-blog.com/blog/2022/12/15/data-driven-models-the-ultimate-fighter-against-a-companys-complexity-part-1-of-2/) - Guidelines for data-driven models for managing data complexity and designing robust systems that might be considered both a single-source-of-truth and a single-point-of-contact. In the last few decades the world has truly turned into a data jungle: digital evolutions expose people and companies to dealing with data complexity management, a topic which has rapidly turned into
- [NetEye 4 Core - Security Advisory](https://www.neteye-blog.com/blog/2022/12/16/neteye-4-core-security-advisory/) - Synopsis Important: grafana-panel-renderer security update Type/Severity Security Advisory: Important Topic An update for the package grafana-panel-renderer is now available for NetEye 4. NetEye Product Security has rated this update as having a security impact of High. Common Vulnerability Scoring System (CVSS) base scores provide additional guidance about a vulnerability and give a detailed severity rating.
- [Building a Dashboard in Kibana to Keep Track of Your Smart Ingest Pipeline](https://www.neteye-blog.com/blog/2022/12/13/building-a-dashboard-in-kibana-to-keep-track-of-your-smart-ingest-pipeline/) - In a previous article, we used NetEye and Elasticsearch to train a machine learning model able to classify documents about some collected radar signals, separating them into two categories (good vs bad), starting from an existing dataset. Afterwards, we applied it to new incoming documents using an Ingest Pipeline and the Inference Processor. Taking as
- [Using More Than One SMS Gateway on a Server and Handling SMS Queues](https://www.neteye-blog.com/blog/2022/12/12/using-more-than-one-sms-gateway-on-a-server-and-handling-sms-queues/) - Sending an SMS requires time, between 5-7 seconds. This means that if you have to write a lot of SMS's, you have to attach more than one SMS gateway to your server to be able to send them within a certain time frame. This is possible using the USB connection of the SMS gateway. As
- [Monitoring Veeam Backup & Replication](https://www.neteye-blog.com/blog/2022/12/07/monitoring-veeam-backup-replication/) - Scenario Veeam Backup & Replication product is widely used for backuping virtual machines, primary hosted on VMware vSphere infrastructure. It could also backup physical machines through dedicated agents. It’s very important to keep the backup status monitored: it would be nice to get the backup status through the Icinga2 agent in an easy way. PowerShell
- [A Developer's Life is Like a Box of Chocolates: You Never Know What Bug You're Gonna Get - Part 2](https://www.neteye-blog.com/blog/2022/12/01/title-a-developers-life-is-like-a-box-of-chocolates-you-never-know-what-bug-youre-gonna-get-part-2/) - Intro This post continues the analysis of a bug I had to deal with recently. If you missed the first part, I suggest you go take a look at it before continuing with this. If, on the other hand, you've been anxiously waiting for this post XD, we're ready to get into the thick of
- [A Look Inside Dark Angels Negotiation and Some Details about Their TTP](https://www.neteye-blog.com/blog/2022/05/17/a-look-inside-dark-angels-negotiation-and-some-details-about-their-ttp/) - Starting from a static analysis done by Cyble Research Lab (https://blog.cyble.com/2022/05/06/rebranded-babuk-ransomware-in-action-darkangels-ransomware-performs-targeted-attack/) of ransomware called Dark Angels, we gained evidence about the activities of the Dark Angels ransomware group. An OSINT analysis carried out by our Würth Phoenix team helped to reach the Ransom Operator blog and one of the victim pages. Based on the evidence
- [Correlation Between the Most Exploited CVEs and Detection Rules](https://www.neteye-blog.com/blog/2022/05/18/correlation-between-most-exploited-cve-and-detection-rules/) - On May 12th, the CSIRT (Computer Security Incident Response Team - Italia) published a list of the CVEs most exploited by threat actors. The list also contains an indication of the TTPs used by these attackers. The objective of this article is to make information available relating to detection rules that are already available within
- [HackInBo Business Edition – Winter 2022 – Our Participation](https://www.neteye-blog.com/blog/2022/12/05/hackinbo-business-edition-winter-2022-our-participation/) - On December 2 we participated, as platinum sponsors, in the second edition of the HackInBo Business event. For 10 years, HackInBo has been one of the most important IT security conferences in Italy, and for this edition too we wanted to give our contribution by participating with a 40-minute talk. The formula of the event
- [Bug Fixes for NetEye 4.26 and earlier](https://www.neteye-blog.com/blog/2022/12/01/bug-fixes-for-neteye-4-27-and-earlier/) - We fixed a bug where an older version of nginx was installed on the RHEL8 machines. Now nginx will be updated to 1.20.1. We also introduced a logrotate configuration for the neteye nginx logs. For NetEye 4.26 and 4.25 we updated the following packages: nginx-neteye-config and nginx-neteye-config-autosetup to version 1.7.2-1
- [NetEye 4.27 Release Notes](https://www.neteye-blog.com/blog/2022/12/01/neteye-4-27-release-notes/) - Discover the latest news in the world of NetEye 4
- [Our Experience at SREcon22 Europe](https://www.neteye-blog.com/blog/2022/11/23/our-experience-at-srecon22-europe/) - Looking at how several companies have managed their services, we discovered a relatively new (for us) technical role, the Site Reliability Engineer. As IBM reports: The principle behind the SRE is that using software code to automate oversight of large software systems is a more scalable and sustainable strategy than manual intervention - especially as those
- [Bug Fixes for NetEye 4.26](https://www.neteye-blog.com/blog/2022/11/24/bug-fixes-for-neteye-4-26-3/) - We fixed a bug in El Proxy, for which the verification doesn't verify the integrity of a log indexed right after one or more missing logs. For NetEye 4.26 we updated the following packages: elastic-blockchain-proxy, elastic-blockchain-proxy-autosetup to version 0.20.4-1
- [Bug Fixes for NetEye 4.25](https://www.neteye-blog.com/blog/2022/11/24/bug-fixes-for-neteye-4-25-5/) - We fixed a bug in El Proxy, for which the verification doesn't verify the integrity of a log indexed right after one or more missing logs. For NetEye 4.25 we updated the following packages: elastic-blockchain-proxy, elastic-blockchain-proxy-autosetup to version 0.20.4-1
- [Monitor Your SMS Gateways by Sending Actual SMS's (Part 2/2)](https://www.neteye-blog.com/blog/2022/11/21/monitor-your-sms-gateways-by-sending-actual-smss-part-2-2/) - Last time I wrote about how you can have incoming SMS messages sent to the Tornado Engine so that you can make Tornado Rules to process them. This time I'd like to show you a real use case where we check whether the SMS Gateway is really working or not by sending an SMS to
- [Receiving and Handling Incoming SMS's on NetEye in Tornado (Part 1/2)](https://www.neteye-blog.com/blog/2022/10/28/receiving-and-handling-incoming-smss-on-neteye-in-tornado-part-1-2/) - Most physical NetEye servers have an SMS Gateway attached in order to send CRITICAL notifications via an SMS message, since this will work even when the main network is down. However, sometimes you just want to send messages to your NetEye server's SMS Gateway in order to effect certain actions, for example just to check
- [NETEYE USER GROUP 2022… back again! #italianedition](https://www.neteye-blog.com/blog/2022/11/16/neteye-user-group-2022-back-again-italianedition/) - The event of the year, the NetEye User Group, is back again, in presence! The User group is not only a chance to inform our customers about new products and releases, but also an occasion to meet and exchange feedback and ideas. This year's NetEye User group took place in the beautiful city of Verona
- [Bug Fixes for NetEye 4.26](https://www.neteye-blog.com/blog/2022/11/15/bug-fixes-for-neteye-4-26-2/) - We fixed a bug that was freezing the host page in the director module. Fixed errors that were shown in the director module when clicking on a host template from the preview tab. Fixed the host's services page of the director module that did not allow more than 100 services to be displayed. For NetEye
- [A Developer's Life is Like a Box of Chocolates: You Never Know What Bug You're Gonna Get - Part 1](https://www.neteye-blog.com/blog/2022/11/07/a-developers-life-is-like-a-box-of-chocolates-you-never-know-what-bug-youre-gonna-get-part-1/) - Intro In this post I'd like to explain the technique I chose to discover the cause of a bug I recently worked on, and why I made certain choices, given the not-so-common circumstances: part of a GUI I was debugging stopped working. It depended on third-party code and was therefore largely unfamiliar to me. Another
- [Syslog Collection with Elastic under Distributed NetEye Monitoring](https://www.neteye-blog.com/blog/2022/10/28/syslog-collection-with-elastic-on-a-distributed-neteye-monitoring/) - Anyone who has joined the beautiful world of logging has collided, sooner or later, with the collection via syslog protocol. More than 40 years have passed since syslog was invented, and in that time there have been several attempts by the IETF to create a standard around this world (RFC 3164 and RFC 5424). Even
- [Bug Fixes for NetEye 4.24 - 4.26](https://www.neteye-blog.com/blog/2022/11/10/bug-fixes-for-neteye-4-24-4-26/) - We fixed a bug in the PHP configuration where it would not be read by the services started by systemd. For NetEye 4.24 - 4.26 we updated the following packages: php-neteye-config to version 1.2.1-1
- [Bug Fixes for NetEye 4.26](https://www.neteye-blog.com/blog/2022/11/02/bug-fixes-for-neteye-4-26/) - We fixed a bug in El Proxy, for which the automatic verification breaks when the retention of Elasticsearch is applied. The bug fix introduced the concept of blockchain state history and this, if the retention of Elasticsearch already deleted some logs, will throw a warning during the first verification after the update. For NetEye 4.26
- [Bug Fixes for NetEye 4.25](https://www.neteye-blog.com/blog/2022/11/02/bug-fixes-for-neteye-4-25-4/) - We fixed a bug in El Proxy, for which the automatic verification breaks when the retention of Elasticsearch is applied. The bug fix introduced the concept of blockchain state history and this, if the retention of Elasticsearch already deleted some logs, will throw a warning during the first verification after the update. For NetEye 4.25
- [WÜRTH PHOENIX GOES TO... IT-SA! (NUREMBERG)](https://www.neteye-blog.com/blog/2022/10/28/wurth-phoenix-goes-to-it-sa-nuremberg/) - It-sa is Europe’s largest trade fair for IT security... and we were there! This fair has taken place in Nuremberg since 2009, and is the meeting point for all decision makers and experts in IT security. It's the #placetobe for all those searching for security solutions and for learning from major experts in the field.
- [A Custom Dashboard for Windows and Linux Servers](https://www.neteye-blog.com/blog/2022/10/21/a-custom-dashboard-for-windows-and-linux-servers/) - The performance graphs present in NetEye are very useful for getting an immediate idea of the trend related to a service check, but they're still limited to the metric being viewed. Also, the "Show all graphs" option available from the Actions menu of each monitored Host can have different usage limits due to the presence
- [GlusterFS on NetEye 4 and RedHat 8](https://www.neteye-blog.com/blog/2022/10/21/glusterfs-on-neteye-4-and-redhat-8/) - As you've probably read in a previous blog by my colleague Jürgen Vigna, we use GlusterFS for particular requirements in our NetEye 4 cluster environments. After we completed the migration from the operating system CentOS 7 to RedHat 8, a few small things have changed or been updated. For all those who are new to
- [My OpenShift Journey #5: Run Unprivileged Containers with systemd in OpenShift: Part 2 - Testing](https://www.neteye-blog.com/blog/2022/10/10/my-openshift-journey-5-run-unprivileged-containers-with-systemd-in-openshift-part-2-testing/) - In my previous blog post, we modified the boot parameters to enable cgroups v2 and the user namespace in CRI-O. In this second part I'll show you how to run a sample container with systemd and check that the modifications we made actually worked. Setting up a Test Docker To test the new config, let's
- [Monitoring COMMVAULT via API in NetEye 4](https://www.neteye-blog.com/blog/2022/10/10/monitoring-commvault-via-api-in-neteye-4/) - Commvault software is an enterprise-level data platform used to back up, restore, archive, replicate, and search data. The software is available across cloud and on-premises environments, and a lot of customers are using this solution as part of their infrastructure. And in such situations the necessity arises to develop a solution for integrating COMMVAULT information
- [Icinga Web 2 | AIA Module](https://www.neteye-blog.com/blog/2022/10/14/icinga-web-2-aia-module/) - In my time at Wuerth Phoenix I've worked on upgrading the customactions and ondutymanager neteye modules, as well as developing a new module called AIA, which stands for Alert Interval Adjustment. In this blog post I'll talk about the AIA module. The Pitch Suppose you're a large company with a vast and complex IT infrastructure.
- [Description of a Forensics Challenge - HTB Business CTF 2022](https://www.neteye-blog.com/blog/2022/10/18/htb-business-ctf-2022-description-of-a-forensics-challenge/) - For those who don't know, several of us at Wuerth-Phoenix often participate in Capture The Flag (CTF) events. CTFs are programming challenges where a message (the flag) is hidden somewhere inside code, an application or a website. Usually they are divided into different categories, and within this article we'll focus on a forensics challenge. I
- [NetEye User Group 2022 in Verona 👁🗨](https://www.neteye-blog.com/blog/2022/10/17/neteye-user-group-2022-in-verona-👁🗨/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [Using Multiple Retention Policies in InfluxDB](https://www.neteye-blog.com/blog/2022/10/03/using-multiple-retention-policies-in-influxdb/) - By default all metrics in InfluxDB are stored forever, but for certain metrics we need to store them for a much shorter time span. One example is when we're receiving very large amounts of raw data, when we're much more interested in derived characteristics of that raw data. In this blog we'll discuss how to
- [NetEye 4 Asset - Security Advisory - Multiple Vulnerabilities](https://www.neteye-blog.com/blog/2022/10/05/neteye-4-asset-security-advisory-multiple-vulnerabilities/) - Synopsis Important: Multiple Security updates for NetEye 4 Type/Severity Security Advisory: Critical Topic Wuerth Phoenix has released some Critical Patches (CPs) for NetEye 4. These CPs resolve multiple vulnerabilities related to SQL injections, Cross Site Scripting and an unauthenticated remote command execution (RCE) exploit. Description GLPI was affected by: [Critical] RCE using a third-party library script
- [My OpenShift Journey #3: Active Directory Integration and User Management](https://www.neteye-blog.com/blog/2022/10/05/my-openshift-journey-3-active-directory-integration-and-user-management/) - In our migration journey from multiple VMs to OpenShift, one mandatory step is the integration with our company's Active Directory. This is the default IdP for our services like Jenkins, NetEye, etc., and we want to centralize authentication and permissions as much as possible. Integration with OpenShift is less straightforward than it is with other
- [Implementation of Distributed Tracing in Tornado with OpenTelemetry](https://www.neteye-blog.com/blog/2022/10/02/implementation-of-distributed-tracing-in-tornado-with-opentelemetry/) - In a previous post we showed how Distributed Tracing and Elastic APM can help Tornado administrators track down events from their generation on Tornado Collectors to the Actions they trigger in Tornado. This blog post will be more technical and will give you an insight on how we managed to implement Distributed Tracing in Tornado
- [Secret Management with NetEye Monitoring](https://www.neteye-blog.com/blog/2022/09/30/secret-management-with-neteye-monitoring/) - Today I want to talk about a topic that, although it is (and always has to be) in the spotlight, is seeing its popularity skyrocket even more in recent months: how to handle Secrets and Personal Data with NetEye. And I'm not talking about the right way to use Director's Data Fields, how to hide
- [NetEye 4.26 Release Notes](https://www.neteye-blog.com/blog/2022/10/03/neteye-4-26-release-notes/) - Discover the latest news in the world of NetEye 4
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/09/27/bug-fixes-for-neteye-4-23-16/) - We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. For NetEye 4.23 we updated the following packages: httpd-neteye-config, httpd-neteye-config-autosetup to version 1.11.1-1nginx-neteye-config, nginx-neteye-config-autosetup to version 1.7.1-1
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/09/27/bug-fixes-for-neteye-4-24-5/) - We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. For NetEye 4.24 we updated the following packages: httpd-neteye-config, httpd-neteye-config-autosetup to version 1.12.1-1nginx-neteye-config, nginx-neteye-config-autosetup to version 1.7.1-1
- [Bug Fixes for NetEye 4.25](https://www.neteye-blog.com/blog/2022/09/27/bug-fixes-for-neteye-4-25-3/) - We fixed a bug, where on clusters some services could have been started, by some system packages configuration, before the corresponding drbd were mounted. Moreover, we fixed a bug in the Icingaweb2 module Director, which was causing Director deployments to remain blocked in case the automatic deployments done by the Director Jobs were encountering connection
- [Elasticsearch ML Models and Inference: Real-Time Classification](https://www.neteye-blog.com/blog/2022/09/19/elasticsearch-ml-models-and-inference-real-time-classification/) - In a previous article, we explored the Machine Learning capabilities of Elasticsearch, which allowed us to apply anomaly detection techniques to our data, and helped us discover some really interesting facts as a result of our analysis. But can we take that idea even further? For instance, could we use data we've already collected to
- [Installing and Configuring Monitoring Agents in a Windows Domain – Part 2](https://www.neteye-blog.com/blog/2022/09/13/installing-and-configuring-monitoring-agents-in-a-windows-domain-part-2/) - Scenario In this blog I'll describe some advanced features of the DSC platform in order to automate the configuration of the monitoring agents. I've already described the basic topics in the first part of this blog: Installing and Configuring Monitoring Agents in a Windows Domain – Part 1 But just as a quick reminder, DSC
- [Should I Implement a Complex or a Lightweight Service Catalogue?](https://www.neteye-blog.com/blog/2022/08/23/should-i-implement-a-complex-or-a-lightweight-service-catalogue/) - Creating a “Service Catalogue” What do you do all the day in your IT department? You provide services, in this case IT-related services, to the employees of your company. This includes the personal services for each employee, depending on his/her position and tasks (computers, software, internet connection, etc.) and all the strategic services for running
- [Automatically Cleaning up Old Services in NetEye 4](https://www.neteye-blog.com/blog/2022/06/27/automatically-cleaning-up-old-services-in-neteye-4/) - Introduction In this article I’ll introduce a feature that some customers have frequently asked for. The customers’ request is linked to the fact that automation (whether via Tornado, ad-hoc scripts, etc.) generate a lot of services “on the fly”, for example as shown in my previous blog post. These services are created, updated and eventually
- [NetEye Upgrade to RedHat 8 - My Experience](https://www.neteye-blog.com/blog/2022/08/22/neteye-upgrade-to-redhat-8-my-experience/) - As you probably all know, a new NetEye version is released every two months. For this reason I'd like to emphasize that we recommend regular updating of your NetEye system. In particular with version 4.23 we released a major update of the operating system from CentOS 7 to RedHat 8. Since we're doing a lot
- [Integration of Centreon Plugins into NetEye Extension Packs](https://www.neteye-blog.com/blog/2022/07/19/integration-of-centreon-plugins-into-neteye-extension-packs/) - With the end of 2021 we've release the first version of the NetEye Extension Packs project that helps customers and consultants on their monitoring implementations and more (see Introducing NetEye Extension Packs | www.neteye-blog.com for details). Now our focus is to extend the ouf of box infrastructure coverage of our monitoring plugins. With this target
- [My OpenShift Journey #2: Nginx Load Balancing and SSL Termination](https://www.neteye-blog.com/blog/2022/07/14/my-openshift-journey-2-nginx-loadbalancing-and-ssl-termination/) - In a previous blog post I described how we installed our first OpenShift cluster and how we used HA Proxy as a load balancer. Our cluster is meant to host both internal services (like CI and docker registry) and public services, and we thus have to expose them on multiple domains with valid SSL certificates.
- [How to Test an ISO with Packer and Change the Root Password at Boot](https://www.neteye-blog.com/blog/2022/07/07/how-to-test-an-iso-with-packer-and-change-the-root-password-at-boot/) - In a previous blogpost, we showed how to test an ISO using Packer, an open source software tool for creating machine images for multiple platforms. One of the issues we faced was due to a security requirement we have: that the ISO we ship must have its password already expired so that when NetEye is
- [How to Use a Host's Redhat Subscription to Run Containers Using Docker instead of Podman](https://www.neteye-blog.com/blog/2022/07/07/how-to-use-a-hosts-redhat-subscription-to-run-containers-using-docker-instead-of-podman/) - In NetEye 4.23 we shifted our base containers from CentOS to RedHat Enterprise Linux. Within our NetEye image and container we ship packages that come from RedHat Enterprise Linux's private repositories and are thus subject to subscription, hence we need a way to be able to use our subscription when building NetEye containers. RedHat allows
- [My OpenShift Journey #1: Getting Started with a Cluster](https://www.neteye-blog.com/blog/2022/07/07/openshift-journey-1-getting-started-with-the-cluster/) - Within our Research and Development team we maintain a set of both physical and virtual machines for many purposes: internal repository mirrors, CI/CD, testing, internal docker registry, etc... Maintaining them is demanding, especially considering that our infrastructure has grown over the years and was often configured by different colleagues using different software and tools. And
- [Using DSC to Distribute Icinga Agents](https://www.neteye-blog.com/blog/2022/07/04/using-dsc-to-distribute-icinga-agents/) - Desired State Configuration (DSC) is a feature in Powershell 4.0 and above that helps administrators to automate the configuration of Windows. I'll show you below how to use it in order to maintain a consistent Icinga agent configuration across your Windows servers. Our use case As an admin I would like to distribute and configure the
- [Bug Fixes for NetEye 4.25](https://www.neteye-blog.com/blog/2022/09/22/bug-fixes-for-neteye-4-25-2/) - We fixed a bug, where using SSO in NetEye with an external backend sometimes didn't create the roles for the icingaweb internal SSO. For NetEye 4.25 we updated the following packages: icingacli, icingaweb2, icingaweb2-autosetup, icingaweb2-common, icingaweb2-devel, icingaweb2-selinux, icingaweb2-userguide to version 2.10.1_neteye1.109.2-1
- [NETEYE USERGROUP 2022… NUREMBERG EDITION!](https://www.neteye-blog.com/blog/2022/09/19/neteye-usergroup-2022-nuremberg-edition/) - After two years of online events, we finally made it to organize a live event in Germany! And it was a huge success! The Usergroup is not only a chance to inform our customers about new products and releases, but also an occasion to meet and exchange feedback and ideas. This year's NetEye Usergroup took
- ["Würth Phoenix Automation Rules! " - How to Save Time and Money with Jira Cloud Automations](https://www.neteye-blog.com/blog/2022/09/13/wurth-phoenix-automation-rules-how-to-save-time-and-money-with-jira-cloud-automations/) - A deep dive into the Jira Cloud Automations, by exploring how they work, who can manage them and, most importantly, why they will definitively save you money and time (...and not only). In ITIL4 there are 7 guiding principles, listed below, recommended to organizations. By definition: "A guiding principle is a recommendation that provides universal
- [NetEye 4 Core, Asset and SLM - Security Advisory - Multiple Vulnerabilities](https://www.neteye-blog.com/blog/2022/09/07/neteye-4-core-asset-and-slm-security-advisory-multiple-vulnerabilities/) - Synopsis Important: Multiple Security updates for NetEye 4 Type/Severity Security Advisory: Important Topic Wuerth Phoenix has released some Critical Patches (CPs) for NetEye 4. These CPs resolve multiple vulnerabilities related to Privilege Escalation and authenticated remote command execution (RCE) exploits. Description GLPI was affected by an SSRF vulnerability in the External Calendars feature of the GLPI
- [Elastic and the Cyber Security of Würth Phoenix](https://www.neteye-blog.com/blog/2022/08/31/elastic-and-the-cyber-security-of-wurth-phoenix/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [On-premise or cloud? This is the dilemma...](https://www.neteye-blog.com/blog/2022/08/24/on-premise-or-cloud-this-is-the-dilemma/) - This is Jim. Jim is an IT manager working for a company based in London. His company has been using Jira for maaaaaany years. He is quite happy with the tools and has experienced better communication within his and other teams, faster delivery times, and a greater UX as a consequence. It's the middle of
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/08/12/bug-fixes-for-neteye-4-23-15/) - We fixed a bug that during the upgrade to NetEye 4.24 caused the RedHat version to update incorrectly. For NetEye 4.23 we updated the following packages: neteye-upgrade-manager to version 0.31.1-1
- [NetEye User Group 2022 in Nuremberg ⛅️](https://www.neteye-blog.com/blog/2022/08/09/neteye-user-group-2022-in-nuremberg-⛅️/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [Bug Fixes for NetEye 4.25](https://www.neteye-blog.com/blog/2022/08/09/bug-fixes-for-neteye-4-25/) - We fixed a race condition in El Proxy for which sometimes Logstash was failing to recognize whether an incoming log should be signed by El Proxy or not. We fixed a bug in El Proxy, which caused the verify command to report corruptions in the blockchain if newly signed documents were still waiting to be
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/08/09/bug-fixes-for-neteye-4-24-4/) - We fixed a bug that prevented the installation of the perl-JSON-XS package, which can be required by external checks. We fixed two bugs in the Eventhandler. One bug causing a certificates verification error while using the GUI and another one causing the Eventhandler GUI to freeze when a particular race condition was encountered. For NetEye
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/08/09/bug-fixes-for-neteye-4-23-14/) - We fixed a bug that prevented the installation of the perl-JSON-XS package, which can be required by external checks. We fixed two bugs in the Eventhandler. One bug causing a certificates verification error while using the GUI and another one causing the Eventhandler GUI to freeze when a particular race condition was encountered. For NetEye
- [BLUE or RED TEAM? #makeyourchoice ~HACKINBO EDITION](https://www.neteye-blog.com/blog/2022/08/05/blue-or-red-team-makeyourchoice-hackinbo-edition/) - Ever heard of HackInBo? HackInBo is the main event in Italy for the cyber security community, bringing together (for almost 10 years now!) hundreds of passionate attendees for two days in Bologna…. We were there on May 27th and 28th… and it was an amazing experience! This year, and for the first time, the event
- [NetEye 4.25 Release Notes](https://www.neteye-blog.com/blog/2022/08/01/neteye-4-25-release-notes/) - Discover the latest news in the world of NetEye 4
- [Place Your IT Services in the Clouds ⛅️](https://www.neteye-blog.com/blog/2022/08/01/place-your-it-services-in-the-clouds/) - From the 17th to the 20th of September we organize in Padua a NetEye advanced Training. The four days of training are addressed mainly to experienced users who already have a basic knowledge of the solution, and who wish to understand how to leverage the platform for automate as much as possible the IT System Management within their infrastructures.
- [Downtime with NetEye 4 Using Icinga 2 API](https://www.neteye-blog.com/blog/2019/09/30/downtime-with-neteye-4-using-icinga-2-api/) - Scheduling downtime is extremely useful, if not essential, for the correct management of a monitoring system. What exactly is downtime and what is the reason for having it? “Downtime can be scheduled for planned server maintenance or any other targeted service outage you are aware of in advance. Downtime suppresses notifications and can trigger other
- [Bug Fixes for NetEye 4.22](https://www.neteye-blog.com/blog/2022/07/11/bug-fixes-for-neteye-4-22-22/) - We fixed a problem related to the RHEL 8 repos enabling on the various system which, based on their role in the NetEye installation, will be associated to a specific subscription that covers only the set of repos required by the specific role. For NetEye 4.22 we updated the following packages: neteye-setup to version 1.83.5-1neteye-upgrade-manager
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/07/11/bug-fixes-for-neteye-4-23-13/) - We fixed a problem related to the RHEL 8 repos enabling on the various system which, based on their role in the NetEye installation, will be associated to a specific subscription that covers only the set of repos required by the specific role. For NetEye 4.23 we updated the following packages: neteye-setup to version 1.85.7-1neteye-upgrade-manager
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/07/11/bug-fixes-for-neteye-4-24-3/) - We fixed a problem related to the RHEL 8 repos enabling on the various system which, based on their role in the NetEye installation, will be associated to a specific subscription that covers only the set of repos required by the specific role. For NetEye 4.24 we updated the following packages: neteye-setup to version 1.86.4-1neteye-upgrade-manager
- [Live-streaming from the CeBIT](https://www.neteye-blog.com/blog/2013/03/04/live-streaming-from-the-cebit/) - Live-streaming from the CeBIT - Real User Experience with NetEye
- [New: Service Clone Tool - NetEye 3.5](https://www.neteye-blog.com/blog/2014/08/06/new-service-clone-tool-neteye-3-5/) - Administrators of networks, which consist of a huge number of hosts, are often facing time management problems. Frequently, specific services have to run on more than just one host, consequently those services have to be copied from one host to one or more other hosts. To save as much time as possible we expanded the
- [EriZone meets OTRS](https://www.neteye-blog.com/blog/2014/09/08/erizone-meets-otrs-2/) - Last Thursday we had the possibility to visit our partner OTRS with headquarter in Bad Homburg. A great occasion to talk about new functionalities of WÜRTHPHOENIX EriZone and OTRS. In this way: Thanks for the hospitality and see you again soon!
- [Live-stream from the OSSMC](https://www.neteye-blog.com/blog/2014/04/09/live-stream-from-the-ossmc-2/) - The live-stream will begin at 9.AM. To start the broadcast, click on the icon or activate this link.
- [New DNS Plugin for Real User Experience](https://www.neteye-blog.com/blog/2014/11/10/new-dns-plugin-for-real-user-experience/) - Users often complain about long load times when trying to access IT services (Web, Citrix, Terminal Server ecc.). Also cloud services like Office 365 can be concerned.
- [NagMap: New Features](https://www.neteye-blog.com/blog/2014/11/27/nagmap-new-features/) - To increase the usability within NagMap, we've implemented two new features for the new version 3.5 of NetEye.
- [CeBIT 2015: You can expect an interesting program!](https://www.neteye-blog.com/blog/2015/03/12/cebit-2015-you-can-expect-an-interesting-program/) - Get interesting information about the integration of cloud services to the end-to-end monitoring with neteye, new features of ntopng and recent developments on NeDi
- [GLPI Plugin UPDATE: Automatic Recognition of network devices and their modules](https://www.neteye-blog.com/blog/2015/04/20/glpi-plugin-update-automatic-recognition-of-network-devices-and-their-modules/) - 1. Advanced Search for Network Devices and their Modules 2. Extended Reporting Abilities 3. New Notification Management
- [Save the Date! Customer TouchPoint - September 27, Bolzano](https://www.neteye-blog.com/blog/2016/07/22/save-the-date-customer-touchpoint-september-27-bolzano/) - New approaches and technologies for a more efficient customer service Speed, flexibility and efficiency are mandatory characteristics of quality Customer Service. That is why service management and ticketing solutions now play a key role in the administration and organization of the service requests, helping companies in the process of continual improvement. These solutions, in addition,
- [NetEye at the Icinga Camp in Berlin](https://www.neteye-blog.com/blog/2019/03/21/neteye-at-the-icinga-camp-in-berlin/) - Creating a culture of innovation and creativity in the newest monitoring developments with NetEye and Icinga: The recent Icinga Camp in Berlin was once again a significant venue for community and enterprise users coming together to discuss the latest trends and share knowledge and experiences. Francesco Melchiori gave a speech on Artificial Intelligence and Machine
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/07/05/bug-fixes-for-neteye-4-23-12/) - We have fixed a problem related to a Perl dependency which was causing issues in forwarding snmptrap events to Tornado. For NetEye 4.23 we updated the following packages: eventhandler, eventhandler-autosetup and eventhandler-neteye-config to version 1.8.1-1neteye-setup to version 1.85.6-1
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/07/05/bug-fixes-for-neteye-4-24-2/) - We have fixed a problem related to a Perl dependency which was causing issues in forwarding snmptrap events to Tornado. For NetEye 4.24 we updated the following packages: eventhandler, eventhandler-autosetup and eventhandler-neteye-config to version 1.8.1-1neteye-setup to version 1.86.3-1
- [Cyber Apocalypse CTF 2022 - Red Island Writeup](https://www.neteye-blog.com/blog/2022/05/19/cyber-apocalypse-ctf-2022-red-island-writeup/) - The Cyber Apocalypse CTF is back with the 2022 edition. It’s a Jeopardy-style competition organized by Hack The Box and is open to everyone. Together as a security-focused guild (a concept taken from the Spotify model) we here at Würth Phoenix participated in this challenge and in particular I focused on the web challenges. After
- [Office365/Google Mail Users: Migrate Your EriZone/OTRS Mail Accounts to OAuth2 Authentication NOW!](https://www.neteye-blog.com/blog/2022/05/23/office365-google-mail-users-migrate-your-erizone-otrs-mail-accounts-to-oauth2-authentication-now/) - Both Microsoft and Google will terminate within summer/autumn 2022 the possibility of accessing POP and IMAP mailboxes using usernames and passwords! In the course of the year 2022 Microsoft and Google will terminate support for Basic Auth (the authentication with username and password) for some web services and pass to a more secure method, often
- [R.I.P. IPMI - Long Live Redfish](https://www.neteye-blog.com/blog/2022/06/24/r-i-p-ipmi-long-live-redfish/) - IPMI (the Intelligent Platform Management Interface) has been the de facto standard for managing and monitoring computer hardware for many years, but as Intel explicitly stated here no further updates to the IPMI specification are planned or should be expected. "No further updates to the IPMI specification are planned or should be expected. The IPMI
- [Elastic Transformations: How to Aggregate and Enrich Your Data](https://www.neteye-blog.com/blog/2022/06/21/elastic-transformations-how-to-aggregate-and-enrich-your-data/) - In a previous article I analyzed how you can create effective visualizations in Kibana, and how to apply machine learning jobs with the goal of extracting as much information as possible from our data. However, you can also think of data as a raw material, which sometimes needs to be transformed and manipulated before allowing
- [Grafana for nTop: Realizing a Dashboard](https://www.neteye-blog.com/blog/2022/06/13/grafana-for-ntop-realizing-a-dashboard/) - A customer with a NetEye installation to which I had added the nTop module asked me if I could integrate nTop's Grafana Dashboards, so they could view them by consulting NetEye's ITOA Menu. The installation and configuration of nTop for this client, a task I had already conducted some time ago, was a matter of
- [The Flux Language Inside ITOA](https://www.neteye-blog.com/blog/2022/05/27/flux-language-inside-itoa/) - ITOA ITOA is the NetEye component which represents time series data using the Grafana graphics engine. Data is usually collected by Telegraf agents and stored into an InfluxDB specialized non-relational database. Flux In order to manipulate the time series data, Grafana usually adopted a relational language: InfluxQL. The relational approach has had a number of
- [Pinning a Module to a Specific Kernel Release](https://www.neteye-blog.com/blog/2022/05/06/pinning-a-module-to-a-specific-kernel-release/) - During our implementation of the NetEye migration to Red Hat 8 we decided to drop our internal mirror for system packages and instead rely on Red Hat's official repositories. Our goal was to improve reliability, speed up the delivery of updates, and alleviate the development team's workload. But it also introduced a new issue: we
- [Monitor Cisco’s APIC FAULT (Application Policy Infrastructure Controller) in NetEye 4](https://www.neteye-blog.com/blog/2022/06/10/monitoring-ciscos-apic-fault-application-policy-infrastructure-controller-in-neteye-4/) - Introduction As introduced in a previous post, Cisco’s APIC is a core component for several of our customers; it’s a complex solution that every user can employ to fully customize their configuration. There I explained how to monitor the APIC at a high level, summarizing the fault information tenant by tenant. Some customers needed to
- [Into the Flows: Collecting Data with nProbe and nTop](https://www.neteye-blog.com/blog/2022/06/15/into-the-flows-collecting-data-with-nprobe-and-ntop/) - The role of these two components is pretty clear: nProbe has the role of collecting traffic data, while nTop makes that data visible and easily analyzable. There is something, however, that needs to be explicitly stated, which is to decide whether it's ntopng that should contact nProbe or vice versa, and as we're in a
- [NeDi: Troubleshooting NeDi Discovery and Configuration File Backup](https://www.neteye-blog.com/blog/2022/06/13/nedi-troubleshooting-nedi-discovery-and-configuration-file-backup/) - A customer with a NetEye installation to which I had added the NeDi module asked me if I could integrate the saved configuration files of "discovered" network devices with NeDi. NeDi, for those who are not yet familiar with it, is a Network Discovery tool based on many different network protocols. The first action NeDi
- [nTop and nDPI: How to Increase Network Traffic Analysis](https://www.neteye-blog.com/blog/2022/06/14/ntop-and-ndpi-how-to-increase-network-traffic-analysis/) - nTop now uses the nDPI (network deep packet inspection) library to classify packets within network traffic for those protocols that either do not use a standard port (defined as well known ports like https://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers and https://www.iana.org/assignments/service-names-port-numbers/service-names-port-numbers.xhtml) or that are dynamically assigned. In any case the need to classify not only the packet header but also
- [Monitoring Fortigate Firewall SLA Trackers](https://www.neteye-blog.com/blog/2022/03/22/monitoring-fortigate-firewall-sla-trackers/) - Recently a customer told me he would like to monitor and graph the values that his Fortigate Firewall was generating for his configured SLA Trackers. What are these SLA Trackers? I informed myself and found the following in a Fortigate Cookbook. Fortigate Performance SLA ─ Link Monitoring Performance SLA link monitoring measures the health of
- [CTF Insomni'hack Teaser 2022 ─ Vault Challenge](https://www.neteye-blog.com/blog/2022/03/22/ctf-insomnihack-teaser-2022-─-vault-challenge/) - On January 29th, I attended my first CTF (capture the flag) competition: the Insomni'hack teaser.Based on my skills, I decided to go for the challenge called Vault which consists of a web-based vault of five pages: a home page, one where you can see the key/value pair you entered after logging in, a page for
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/06/21/bug-fixes-for-neteye-4-22-20/) - We have fixed a problem of repository incompatibility that caused an error during the neteye update command. Note that the following command must be run on each node before running the neteye update command $ subscription-manager repos --disable=rhv-4-tools-for-rhel-8-x86_64-rpms For NetEye 4.24 we updated the following packages: neteye-upgrade-manager to version 0.30.7-1neteye-setup to version 1.86.2-1
- [Bug Fixes for NetEye 4.23](https://www.neteye-blog.com/blog/2022/06/21/bug-fixes-for-neteye-4-23-11/) - We have fixed a problem of repository incompatibility that caused an error during the neteye update command. Note that the following command must be run on each node before running the neteye update command $ subscription-manager repos --disable=rhv-4-tools-for-rhel-8-x86_64-rpms For NetEye 4.23 we updated the following packages: neteye-upgrade-manager to version 0.30.7-1neteye-setup to version 1.85.5-1
- [Bug Fixes for NetEye 4.22](https://www.neteye-blog.com/blog/2022/06/21/bug-fixes-for-neteye-4-22-21/) - We have fixed a problem of repository incompatibility that caused an error during the upgrade to version 4.23. For NetEye 4.22 we updated the following packages: neteye-upgrade-manager to version 0.12.25-1
- [nProbe and nTop All-in-One (Single Node): Netflows Analysis](https://www.neteye-blog.com/blog/2021/10/05/nprobe-and-ntop-all-in-one-single-node-netflows-analysis/) - One of my clients with a number of routers installed at their own remote location asked me if I could analyze the network flows at multiple locations. Their network architecture is a full mesh, and thus has private subnetworks, data center environments, and even in some cases cloud providers. Complex architectures like this require increasing
- [Monitor Cisco APIC (Application Policy Infrastructure Controller) in NetEye 4](https://www.neteye-blog.com/blog/2021/09/17/monitor-cisco-apic/) - Introduction The Cisco APIC is the main architectural component of Cisco ACI. It’s the unified point of automation and management for the Cisco ACI fabric, policy enforcement, and health monitoring, and it optimizes performance and agility. In this article we’ll integrate this solution into the NetEye platform using a simple and customizable approach Solution The
- [Bug Fixes for NetEye 4.24](https://www.neteye-blog.com/blog/2022/06/09/bug-fixes-for-neteye-4-24/) - We fixed a bug for which the El Proxy blockchain verification command was taking a long time to complete. To speed up the verification, El Proxy now verifies batches of the blockchain in parallel and further optimizations were introduced inside the verify command itself. The verification is now 100% faster by default and fine-tuning the
## Pages
- [Imprint](https://www.neteye-blog.com/imprint/) - This blog was published by: Würth IT Italy S.r.l. Via Kravogl 4 39100 Bolzano / Italy VAT number IT01054690217 Web: www.wuerth-it.it Privacy information Information we collect automatically when you use the Mobile or Web-Services When you access or use our services, we automatically collect information about you, including: Device information: We collect device-specific information when
- [Imprint](https://www.neteye-blog.com/de/imprint/) - This blog was published by: Würth IT Italy S.r.l. Via Kravogl 4 39100 Bolzano / Italy VAT number IT01054690217 Web: www.wuerth-it.it Privacy information Information we collect automatically when you use the Mobile or Web-Services When you access or use our services, we automatically collect information about you, including: Device information: We collect device-specific information when
- [Imprint](https://www.neteye-blog.com/it/imprint/) - This blog was published by: Würth IT Italy S.r.l. Via Kravogl 4 39100 Bolzano / Italy VAT number IT01054690217 Web: www.wuerth-it.it Privacy information Information we collect automatically when you use the Mobile or Web-Services When you access or use our services, we automatically collect information about you, including: Device information: We collect device-specific information when
- [Contact](https://www.neteye-blog.com/contact-2/) - Whether you need help, have suggestions or just want to say "ciao," we'll be very happy to hear (read) from you. Never hesitate to directly contact us - we'll try to answer you as quickly as possible! Contact Form Company Information Würth IT Italy S.r.l. Via Kravogl 4 - 39100 Bolzano/ Italy
- [Downloads](https://www.neteye-blog.com/downloads/)
- [About](https://www.neteye-blog.com/it/about-3/) - The team of NetEye is addressing professional developers with a broad experience on monitoring and Open Source tools. Meet the team members by reading their profile ...
- [Downloads](https://www.neteye-blog.com/de/downloads/) - NetEye Plugins Download Area atm-router-alcatel: Monitoring of Alcatel ATM router traffic check_cpus.sh: Linux/Unix: CPU check of single cores, reading user, system load, wait, idle and interrupts check_snmp_apc_ups: Check APC-UPS Device via SNMP check_snmp_ups.tar: Check different types off UPS devices via SNMP. Blog article check_ifhost_up: Check returning a result only if the host is responding. For
- [Downloads](https://www.neteye-blog.com/it/downloads/) - NetEye Plugins Download Area atm-router-alcatel: Monitoring of Alcatel ATM router traffic check_cpus.sh: Linux/Unix: CPU check of single cores, reading user, system load, wait, idle and interrupts check_snmp_apc_ups: Check APC-UPS Device via SNMP check_snmp_ups.tar: Check different types off UPS devices via SNMP. Blog article check_ifhost_up: Check returning a result only if the host is responding. For
- [Downloads-old](https://www.neteye-blog.com/de/downloads-old/) - NetEye Plugins Download Area atm-router-alcatel: Monitoring of Alcatel ATM router traffic check_cpus.sh: Linux/Unix: CPU check of single cores, reading user, system load, wait, idle and interrupts check_snmp_apc_ups: Check APC-UPS Device via SNMP check_snmp_ups.tar: Check different types off UPS devices via SNMP. Blog article check_ifhost_up: Check returning a result only if the host is responding. For
- [Downloads-old](https://www.neteye-blog.com/it/downloads-old/) - NetEye Plugins Download Area atm-router-alcatel: Monitoring of Alcatel ATM router traffic check_cpus.sh: Linux/Unix: CPU check of single cores, reading user, system load, wait, idle and interrupts check_snmp_apc_ups: Check APC-UPS Device via SNMP check_snmp_ups.tar: Check different types off UPS devices via SNMP. Blog article check_ifhost_up: Check returning a result only if the host is responding. For
- [Downloads-old](https://www.neteye-blog.com/downloads-old/) - NetEye Plugins Download Area atm-router-alcatel: Monitoring of Alcatel ATM router traffic check_cpus.sh: Linux/Unix: CPU check of single cores, reading user, system load, wait, idle and interrupts check_snmp_apc_ups: Check APC-UPS Device via SNMP check_snmp_ups.tar: Check different types off UPS devices via SNMP. Blog article check_ifhost_up: Check returning a result only if the host is responding. For
- [Contatto](https://www.neteye-blog.com/it/contatto-2/) - Nel caso abbiate bisogno di aiuto, o vogliate fornire dei suggerimenti o solamente dire “ciao”, siamo a vosra disposizione. Non esitate a contattarci – faremo del nostro meglio per rispondervi il prima possibile! Modulo di contatto: Indirizzo: Würth Phoenix S.r.l. Via Kravogl 4 - 39100 Bolzano/Italia Tel.: +39 0471 56 41 11
- [Kontakt](https://www.neteye-blog.com/de/kontakt/) - Ob Sie Hilfe brauchen, Verbesserungsvorschläge haben, oder einfach nur mal “Hallo” sagen möchten, wir freuen uns von Ihnen zu hören. Zögern Sie nicht, sich direkt bei uns zu melden – wir werden Ihnen so schnell wie möglich antworten! Kontaktformular: Unternehmen: Würth Phoenix S.r.l. Kravoglstr. 4 - 39100 Bozen/Italien Tel.: +39 0471 56 41 11
- [NetCla: The ECML-PKDD Network Classification Challenge](https://www.neteye-blog.com/netcla-the-ecml-pkdd-network-classification-challenge/) - The ECML-PKDD Network Classification Challenge
- [NetCla: The ECML-PKDD Network Classification Challenge](https://www.neteye-blog.com/it/netcla-the-ecml-pkdd-network-classification-challenge/) - NetCla: The ECML-PKDD Network Classification Challenge
- [NetCla: The ECML-PKDD Network Classification Challenge](https://www.neteye-blog.com/de/netcla-the-ecml-pkdd-network-classification-challenge/) - NetCla: The ECML-PKDD Network Classification Challenge
- [Dankeschön!](https://www.neteye-blog.com/de/dankeschon/) - Vielen Dank, dass Sie an unserer Umfrage teilgenommen haben. Das Feedback unserer Kunden ist uns besonders wichtig, da es uns ausschlaggebende Informationen zur Verbesserung unserer Lösungen und Services liefert. Bitte zögern Sie nicht, uns auch außerhalb solcher Umfragen Ihre persönlichen Rückmeldungen zukommen zu lassen.
- [Grazie!](https://www.neteye-blog.com/it/grazie/) - Grazie di aver compilato il nostro questionario sulla soddisfazione dei clienti.
- [Ihre Kontaktaufnahme](https://www.neteye-blog.com/de/ihre-kontaktaufnahme/) - Vielen Dank für Ihr Interesse an unserem Unternehmen und unseren Lösungen. Ein Vertriebsmitarbeiter wird sich in Kürze mit Ihnen in Verbindung setzen. Interessante Informationen finden Sie auch hier auf unserem Blog.
## MailPoet Page
- [MailPoet Page](https://www.neteye-blog.com/?mailpoet_page=captcha) - [mailpoet_page]
- [MailPoet Page](https://www.neteye-blog.com/?mailpoet_page=subscriptions) - [mailpoet_page]
## Categories
- [Uncategorized](https://www.neteye-blog.com/blog/category/uncategorized/)
- [NetEye](https://www.neteye-blog.com/blog/category/neteye/)
- [Asset Management](https://www.neteye-blog.com/blog/category/unified-monitoring/asset-management/)
- [Business Service Monitoring](https://www.neteye-blog.com/blog/category/unified-monitoring/business-service-monitoring/)
- [Real User Experience](https://www.neteye-blog.com/blog/category/apm/real-user-experience/)
- [Unkategorisiert](https://www.neteye-blog.com/de/blog/category/unkategorisiert/)
- [Non categorizzato](https://www.neteye-blog.com/it/blog/category/non-categorizzato/)
- [NetEye](https://www.neteye-blog.com/de/blog/category/neteye-de/)
- [NetEye](https://www.neteye-blog.com/it/blog/category/neteye-it/)
- [Asset Management](https://www.neteye-blog.com/de/blog/category/asset-management-de/)
- [Asset Management](https://www.neteye-blog.com/it/blog/category/asset-management-it/)
- [Business Process](https://www.neteye-blog.com/it/blog/category/business-process-it/)
- [Business Process](https://www.neteye-blog.com/de/blog/category/business-process-de/)
- [Capacity Management](https://www.neteye-blog.com/de/blog/category/neteye-de/capacity-management-de/)
- [Capacity Management](https://www.neteye-blog.com/it/blog/category/neteye-it/capacity-management-it/)
- [Configuration Management](https://www.neteye-blog.com/de/blog/category/neteye-de/configuration-management-de/)
- [Configuration Management](https://www.neteye-blog.com/it/blog/category/neteye-it/configuration-management-it/)
- [Development](https://www.neteye-blog.com/de/blog/category/neteye-de/development-de/)
- [Development](https://www.neteye-blog.com/it/blog/category/neteye-it/development-it/)
- [Garante della Privacy](https://www.neteye-blog.com/it/blog/category/neteye-it/garante-della-privacy-it/)
- [Log Auditing](https://www.neteye-blog.com/de/blog/category/neteye-de/garante-della-privacy-de/)
- [Nagios](https://www.neteye-blog.com/de/blog/category/neteye-de/nagios-de/)
- [Nagios](https://www.neteye-blog.com/it/blog/category/neteye-it/nagios-it/)
- [NetEye Conference](https://www.neteye-blog.com/de/blog/category/neteye-de/neteye-conference/)
- [NetEye Conference](https://www.neteye-blog.com/it/blog/category/neteye-it/neteye-conference-it/)
- [Interviews](https://www.neteye-blog.com/it/blog/category/neteye-it/neteye-conference-it/interviews-it/)
- [Nagios Plugins](https://www.neteye-blog.com/de/blog/category/neteye-de/nagios-de/nagios-plugins-nagios-de/)
- [Nagios Plugins](https://www.neteye-blog.com/it/blog/category/neteye-it/nagios-it/nagios-plugins-it/)
- [Syslog](https://www.neteye-blog.com/de/blog/category/neteye-de/syslog-de/)
- [Syslog](https://www.neteye-blog.com/it/blog/category/neteye-it/syslog-it/)
- [NetEye Updates](https://www.neteye-blog.com/de/blog/category/neteye-updates-de/)
- [NetEye Updates](https://www.neteye-blog.com/it/blog/category/neteye-updates-it/)
- [ntop](https://www.neteye-blog.com/de/blog/category/ntop-de/)
- [ntop](https://www.neteye-blog.com/it/blog/category/ntop-it/)
- [Network Traffic Monitoring](https://www.neteye-blog.com/de/blog/category/ntop-de/network-traffic-monitoring-de/)
- [Network Traffic Monitoring](https://www.neteye-blog.com/it/blog/category/ntop-it/network-traffic-monitoring-it/)
- [Real User Experience Monitoring](https://www.neteye-blog.com/de/blog/category/real-user-experience-monitoring-de/)
- [Real User Experience Monitoring](https://www.neteye-blog.com/it/blog/category/real-user-experience-monitoring-it/)
- [EriZone & OTRS](https://www.neteye-blog.com/de/blog/category/otrs-de/)
- [EriZone & OTRS](https://www.neteye-blog.com/it/blog/category/otrs-it/)
- [Information Security Operations Center](https://www.neteye-blog.com/it/blog/category/neteye-it/security-operations-center/)
- [Information Security Operations Center](https://www.neteye-blog.com/de/blog/category/neteye-de/information-security-operations-center-de/)
- [Downloads / Release Notes](https://www.neteye-blog.com/blog/category/release-notes-2/)
- [Cloud](https://www.neteye-blog.com/blog/category/unified-monitoring/cloud/)
- [Unified Monitoring](https://www.neteye-blog.com/blog/category/unified-monitoring/)
- [Visual Synthetic Monitoring](https://www.neteye-blog.com/blog/category/unified-monitoring/visual-synthetic-monitoring/)
- [APM](https://www.neteye-blog.com/blog/category/apm/)
- [ITOA](https://www.neteye-blog.com/blog/category/itoa/)
- [Predictive Analysis](https://www.neteye-blog.com/blog/category/itoa/predictive-analysis/)
- [Anomaly Detection](https://www.neteye-blog.com/blog/category/itoa/anomaly-detection/)
- [Log-SIEM](https://www.neteye-blog.com/blog/category/log-siem/)
- [Log Management](https://www.neteye-blog.com/blog/category/log-siem/log-management-2/)
- [Machine Learning](https://www.neteye-blog.com/blog/category/log-siem/machine-learning/)
- [Service Management](https://www.neteye-blog.com/blog/category/service-management/)
- [Events](https://www.neteye-blog.com/blog/category/events/)
- [Icinga News](https://www.neteye-blog.com/blog/category/unified-monitoring/icinga/)
- [SLM](https://www.neteye-blog.com/blog/category/unified-monitoring/slm/)
- [Bug Fixes](https://www.neteye-blog.com/blog/category/bug-fixes/)
- [Webinar](https://www.neteye-blog.com/blog/category/events/webinar/)
- [Icinga Web 2](https://www.neteye-blog.com/blog/category/icinga-web-2/)
- [PHP](https://www.neteye-blog.com/blog/category/php/)
- [Development](https://www.neteye-blog.com/blog/category/development/)
- [Contribution](https://www.neteye-blog.com/blog/category/contribution/)
- [SEC4U](https://www.neteye-blog.com/blog/category/sec4u/)
- [CTF Writeups](https://www.neteye-blog.com/blog/category/sec4u/ctf-writeups/)
- [Exposure Assessment](https://www.neteye-blog.com/blog/category/sec4u/exposure-assessment/)
- [Red Team](https://www.neteye-blog.com/blog/category/sec4u/red-team/)
- [Blue Team](https://www.neteye-blog.com/blog/category/sec4u/blue-team/)
- [Training](https://www.neteye-blog.com/blog/category/events/training/)
- [DevOps](https://www.neteye-blog.com/blog/category/devops/)
- [Knowledge Management](https://www.neteye-blog.com/blog/category/knowledge-management/)
- [Atlassian](https://www.neteye-blog.com/blog/category/atlassian/)
- [Documentation](https://www.neteye-blog.com/blog/category/development/documentation/) - Educational content (text, videos) for users and developers
- [SOCnews](https://www.neteye-blog.com/blog/category/sec4u/socnews/)
- [AI](https://www.neteye-blog.com/blog/category/ai-2/)
- [Offensive Security](https://www.neteye-blog.com/blog/category/offensive-security/)
- [UX](https://www.neteye-blog.com/blog/category/ux/)
- [Automation](https://www.neteye-blog.com/blog/category/development/automation/)
- [UI](https://www.neteye-blog.com/blog/category/ui/)
- [Front-end](https://www.neteye-blog.com/blog/category/front-end/)
- [Threat Intelligence](https://www.neteye-blog.com/blog/category/sec4u/threat-intelligence/)
- [DDoS](https://www.neteye-blog.com/blog/category/ddos/)
- [Microsoft](https://www.neteye-blog.com/blog/category/microsoft/)
- [Azure](https://www.neteye-blog.com/blog/category/microsoft/azure/)
- [Dynamics 365](https://www.neteye-blog.com/blog/category/microsoft/d365/)
- [Power Platform](https://www.neteye-blog.com/blog/category/microsoft/power-platform/)
- [GLPI](https://www.neteye-blog.com/blog/category/glpi/)
- [Vue](https://www.neteye-blog.com/blog/category/front-end/vue/)
- [TLPT](https://www.neteye-blog.com/blog/category/sec4u/tlpt/)
- [DORA](https://www.neteye-blog.com/blog/category/sec4u/dora/)
- [Kubernetes](https://www.neteye-blog.com/blog/category/devops/kubernetes/)
- [SATAYO](https://www.neteye-blog.com/blog/category/sec4u/satayo/)
- [Entra](https://www.neteye-blog.com/blog/category/microsoft/entra/)
- [NetEye Extension Packs](https://www.neteye-blog.com/blog/category/neteye-extension-packs/)
- [Offensive Cloud Security](https://www.neteye-blog.com/blog/category/sec4u/red-team/offensive-cloud-security/)
## Tags
- [test](https://www.neteye-blog.com/blog/tag/test/)
- [cacti graph network ping](https://www.neteye-blog.com/blog/tag/cacti-graph-network-ping/)
- [Nagios monitoring multiple hosts](https://www.neteye-blog.com/blog/tag/nagios-monitoring-multiple-hosts/)
- [AS/400](https://www.neteye-blog.com/blog/tag/as400/)
- [Monitoring](https://www.neteye-blog.com/blog/tag/monitoring/)
- [Nagios AS/400 IBM monitoring](https://www.neteye-blog.com/blog/tag/nagios-as400-ibm-monitoring/)
- [Nagios HP BladeSystem SNMP monitoring](https://www.neteye-blog.com/blog/tag/nagios-hp-bladesystem-snmp-monitoring/)
- [Nagios hard disk monitoring SMART](https://www.neteye-blog.com/blog/tag/nagios-hard-disk-monitoring-smart/)
- [SMART](https://www.neteye-blog.com/blog/tag/smart/)
- [nagios hard disk](https://www.neteye-blog.com/blog/tag/nagios-hard-disk/)
- [webinject](https://www.neteye-blog.com/blog/tag/webinject/)
- [windows vista](https://www.neteye-blog.com/blog/tag/windows-vista/)
- [monitoraggio](https://www.neteye-blog.com/blog/tag/monitoraggio/)
- [Nagios eventhandler](https://www.neteye-blog.com/blog/tag/nagios-eventhandler/)
- [gestione eventi nagios](https://www.neteye-blog.com/blog/tag/gestione-eventi-nagios/)
- [riavvio automatico servizio](https://www.neteye-blog.com/blog/tag/riavvio-automatico-servizio/)
- [notifiche](https://www.neteye-blog.com/blog/tag/notifiche/)
- [sms](https://www.neteye-blog.com/blog/tag/sms/)
- [phone](https://www.neteye-blog.com/blog/tag/phone/)
- [Notifications](https://www.neteye-blog.com/blog/tag/notifications/)
- [email](https://www.neteye-blog.com/blog/tag/email/)
- [APC](https://www.neteye-blog.com/blog/tag/apc/)
- [Icinga](https://www.neteye-blog.com/blog/tag/icinga/)
- [Fork](https://www.neteye-blog.com/blog/tag/fork/)
- [Hardware Monitoring](https://www.neteye-blog.com/blog/tag/hardware-monitoring/)
- [supermicro](https://www.neteye-blog.com/blog/tag/supermicro/)
- [console personalizzata](https://www.neteye-blog.com/blog/tag/console-personalizzata/)
- [restrizione menu](https://www.neteye-blog.com/blog/tag/restrizione-menu/)
- [restrizione vista host](https://www.neteye-blog.com/blog/tag/restrizione-vista-host/)
- [egalstad](https://www.neteye-blog.com/blog/tag/egalstad/)
- [open source](https://www.neteye-blog.com/blog/tag/open-source/)
- [Messpc](https://www.neteye-blog.com/blog/tag/messpc/)
- [Ethernetbox](https://www.neteye-blog.com/blog/tag/ethernetbox/)
- [Monitoring discovery](https://www.neteye-blog.com/blog/tag/monitoring-discovery/)
- [discovery](https://www.neteye-blog.com/blog/tag/discovery/)
- [timeperiod](https://www.neteye-blog.com/blog/tag/timeperiod/)
- [exception](https://www.neteye-blog.com/blog/tag/exception/)
- [exclusion](https://www.neteye-blog.com/blog/tag/exclusion/)
- [Firewall](https://www.neteye-blog.com/blog/tag/firewall/)
- [cacti](https://www.neteye-blog.com/blog/tag/cacti/)
- [torino](https://www.neteye-blog.com/blog/tag/torino/)
- [piemonte](https://www.neteye-blog.com/blog/tag/piemonte/)
- [NagVis](https://www.neteye-blog.com/blog/tag/nagvis/)
- [sicurezza](https://www.neteye-blog.com/blog/tag/sicurezza/)
- [latency](https://www.neteye-blog.com/blog/tag/latency/)
- [scheduling queue](https://www.neteye-blog.com/blog/tag/scheduling-queue/)
- [Nokia](https://www.neteye-blog.com/blog/tag/nokia/)
- [SQL Server](https://www.neteye-blog.com/blog/tag/sql-server/)
- [Logon Triggers](https://www.neteye-blog.com/blog/tag/logon-triggers/)
- [Microsoft](https://www.neteye-blog.com/blog/tag/microsoft/)
- [DBA](https://www.neteye-blog.com/blog/tag/dba/)
- [log server centralizzato](https://www.neteye-blog.com/blog/tag/log-server-centralizzato/)
- [syslog](https://www.neteye-blog.com/blog/tag/syslog/)
- [log server](https://www.neteye-blog.com/blog/tag/log-server/)
- [UPS Somotec APC SNMP](https://www.neteye-blog.com/blog/tag/ups-somotec-apc-snmp/)
- [Windows](https://www.neteye-blog.com/blog/tag/windows/)
- [Exchange](https://www.neteye-blog.com/blog/tag/exchange/)
- [Sharepoint](https://www.neteye-blog.com/blog/tag/sharepoint/)
- [iPhone](https://www.neteye-blog.com/blog/tag/iphone/)
- [Windows Server](https://www.neteye-blog.com/blog/tag/windows-server/)
- [Auditing](https://www.neteye-blog.com/blog/tag/auditing/)
- [oracle](https://www.neteye-blog.com/blog/tag/oracle/)
- [Authentification logging](https://www.neteye-blog.com/blog/tag/authentification-logging/)
- [autentificazione](https://www.neteye-blog.com/blog/tag/autentificazione/)
- [sensori](https://www.neteye-blog.com/blog/tag/sensori/)
- [ambientali](https://www.neteye-blog.com/blog/tag/ambientali/)
- [InfoWorld](https://www.neteye-blog.com/blog/tag/infoworld/)
- [bossie](https://www.neteye-blog.com/blog/tag/bossie/)
- [geek stuff](https://www.neteye-blog.com/blog/tag/geek-stuff/)
- [conferenza](https://www.neteye-blog.com/blog/tag/conferenza/)
- [OSMC](https://www.neteye-blog.com/blog/tag/osmc/)
- [netways](https://www.neteye-blog.com/blog/tag/netways/)
- [Nagios monitoring](https://www.neteye-blog.com/blog/tag/nagios-monitoring/)
- [uncritical host](https://www.neteye-blog.com/blog/tag/uncritical-host/)
- [host non critico](https://www.neteye-blog.com/blog/tag/host-non-critico/)
- [non critico](https://www.neteye-blog.com/blog/tag/non-critico/)
- [htc](https://www.neteye-blog.com/blog/tag/htc/)
- [Android](https://www.neteye-blog.com/blog/tag/android/)
- [Nagroid](https://www.neteye-blog.com/blog/tag/nagroid/)
- [unico](https://www.neteye-blog.com/blog/tag/unico/)
- [case study](https://www.neteye-blog.com/blog/tag/case-study/)
- [ISF](https://www.neteye-blog.com/blog/tag/isf/)
- [informatici senza frontiere](https://www.neteye-blog.com/blog/tag/informatici-senza-frontiere/)
- [claudio pieri](https://www.neteye-blog.com/blog/tag/claudio-pieri/)
- [GLPI](https://www.neteye-blog.com/blog/tag/glpi/)
- [Domino](https://www.neteye-blog.com/blog/tag/domino/)
- [snort](https://www.neteye-blog.com/blog/tag/snort/)
- [gartner](https://www.neteye-blog.com/blog/tag/gartner/)
- [IDS](https://www.neteye-blog.com/blog/tag/ids/)
- [Intrusion detection](https://www.neteye-blog.com/blog/tag/intrusion-detection/)
- [Log auditing](https://www.neteye-blog.com/blog/tag/log-auditing/)
- [accessi amministratori](https://www.neteye-blog.com/blog/tag/accessi-amministratori/)
- [Security log](https://www.neteye-blog.com/blog/tag/security-log/)
- [Monitoring SQL Server](https://www.neteye-blog.com/blog/tag/monitoring-sql-server/)
- [Advanced SQL server monitoring](https://www.neteye-blog.com/blog/tag/advanced-sql-server-monitoring/)
- [Assoimprenditori Alto Adige](https://www.neteye-blog.com/blog/tag/assoimprenditori-alto-adige/)
- [provvedimento Generale del Garante della Privacy](https://www.neteye-blog.com/blog/tag/provvedimento-generale-del-garante-della-privacy/)
- [Valutazione delle caratteristiche soggettive](https://www.neteye-blog.com/blog/tag/valutazione-delle-caratteristiche-soggettive/)
- [Designazioni individuali](https://www.neteye-blog.com/blog/tag/designazioni-individuali/)
- [Elenco degli amministratori](https://www.neteye-blog.com/blog/tag/elenco-degli-amministratori/)
- [Verifica delle attività](https://www.neteye-blog.com/blog/tag/verifica-delle-attivita/)
- [nprobe](https://www.neteye-blog.com/blog/tag/nprobe/)
- [Luca Deri](https://www.neteye-blog.com/blog/tag/luca-deri/)
- [Network traffic monitoring](https://www.neteye-blog.com/blog/tag/network-traffic-monitoring/)
- [analizzatore traffico di rete](https://www.neteye-blog.com/blog/tag/analizzatore-traffico-di-rete/)
- [NTM](https://www.neteye-blog.com/blog/tag/ntm/)
- [analisi traffico rete](https://www.neteye-blog.com/blog/tag/analisi-traffico-rete/)
- [Ethan Galstad](https://www.neteye-blog.com/blog/tag/ethan-galstad/)
- [Tobi Oetiker](https://www.neteye-blog.com/blog/tag/tobi-oetiker/)
- [rrdtool](https://www.neteye-blog.com/blog/tag/rrdtool/)
- [mrtg](https://www.neteye-blog.com/blog/tag/mrtg/)
- [smokeping](https://www.neteye-blog.com/blog/tag/smokeping/)
- [spine](https://www.neteye-blog.com/blog/tag/spine/)
- [snmp script query](https://www.neteye-blog.com/blog/tag/snmp-script-query/)
- [HOST MIB: disk free space](https://www.neteye-blog.com/blog/tag/host-mib-disk-free-space/)
- [Network Tap](https://www.neteye-blog.com/blog/tag/network-tap/)
- [gsm failover](https://www.neteye-blog.com/blog/tag/gsm-failover/)
- [sms modem failover](https://www.neteye-blog.com/blog/tag/sms-modem-failover/)
- [Cluster service](https://www.neteye-blog.com/blog/tag/cluster-service/)
- [testcase configurator](https://www.neteye-blog.com/blog/tag/testcase-configurator/)
- [web service](https://www.neteye-blog.com/blog/tag/web-service/)
- [web 2.0](https://www.neteye-blog.com/blog/tag/web-20/)
- [Release Notes](https://www.neteye-blog.com/blog/tag/release-notes/)
- [versione 3.2](https://www.neteye-blog.com/blog/tag/versione-32/)
- [OCS](https://www.neteye-blog.com/blog/tag/ocs/)
- [NetEye User Group](https://www.neteye-blog.com/blog/tag/neteye-user-group/)
- [OTRS](https://www.neteye-blog.com/blog/tag/otrs/)
- [ITIL](https://www.neteye-blog.com/blog/tag/itil/)
- [Service Management](https://www.neteye-blog.com/blog/tag/service-management/)
- [nfsen](https://www.neteye-blog.com/blog/tag/nfsen/)
- [bolzano](https://www.neteye-blog.com/blog/tag/bolzano/)
- [TIS Bolzano](https://www.neteye-blog.com/blog/tag/tis-bolzano/)
- [conferenza su Nagios e OSS Monitoring](https://www.neteye-blog.com/blog/tag/conferenza-su-nagios-e-oss-monitoring/)
- [Garante della Privacy](https://www.neteye-blog.com/blog/tag/garante-della-privacy/)
- [monitoraggio Web 2.0](https://www.neteye-blog.com/blog/tag/monitoraggio-web-20/)
- [conferenza Nagios & OSS monitoring](https://www.neteye-blog.com/blog/tag/conferenza-nagios-oss-monitoring/)
- [Michael Medin](https://www.neteye-blog.com/blog/tag/michael-medin/)
- [Reinhard Scheck](https://www.neteye-blog.com/blog/tag/reinhard-scheck/)
- [jan josephson](https://www.neteye-blog.com/blog/tag/jan-josephson/)
- [Conferences](https://www.neteye-blog.com/blog/tag/conferences/)
- [nsclient](https://www.neteye-blog.com/blog/tag/nsclient/)
- [safed](https://www.neteye-blog.com/blog/tag/safed/)
- [NetFlow](https://www.neteye-blog.com/blog/tag/netflow/)
- [check](https://www.neteye-blog.com/blog/tag/check/)
- [file size](https://www.neteye-blog.com/blog/tag/file-size/)
- [IT Monitoring](https://www.neteye-blog.com/blog/tag/it-monitoring/)
- [exchange 2007](https://www.neteye-blog.com/blog/tag/exchange-2007/)
- [cacti template](https://www.neteye-blog.com/blog/tag/cacti-template/)
- [Nagios business process monitor](https://www.neteye-blog.com/blog/tag/nagios-business-process-monitor/)
- [Würth Phoenix](https://www.neteye-blog.com/blog/tag/wurth-phoenix/)
- [erp solutions](https://www.neteye-blog.com/blog/tag/erp-solutions/)
- [ERP](https://www.neteye-blog.com/blog/tag/erp/)
- [IT Service Management](https://www.neteye-blog.com/blog/tag/it-service-management/)
- [Help Desk](https://www.neteye-blog.com/blog/tag/help-desk/)
- [Service Desk](https://www.neteye-blog.com/blog/tag/service-desk/)
- [Ticketing System](https://www.neteye-blog.com/blog/tag/ticketing-system/)
- [ITSM](https://www.neteye-blog.com/blog/tag/itsm/)
- [VMware](https://www.neteye-blog.com/blog/tag/vmware/)
- [Virtualizzazione](https://www.neteye-blog.com/blog/tag/virtualizzazione/)
- [Cavit](https://www.neteye-blog.com/blog/tag/cavit/)
- [syslogview](https://www.neteye-blog.com/blog/tag/syslogview/)
- [syslog server](https://www.neteye-blog.com/blog/tag/syslog-server/)
- [syslog agent](https://www.neteye-blog.com/blog/tag/syslog-agent/)
- [NetEye partner](https://www.neteye-blog.com/blog/tag/neteye-partner/)
- [log search engine](https://www.neteye-blog.com/blog/tag/log-search-engine/)
- [Hakin9](https://www.neteye-blog.com/blog/tag/hakin9/)
- [nBox](https://www.neteye-blog.com/blog/tag/nbox/)
- [Conference on OSS Monitoring](https://www.neteye-blog.com/blog/tag/conference-on-oss-monitoring/)
- [perfview](https://www.neteye-blog.com/blog/tag/perfview/)
- [Perfdata](https://www.neteye-blog.com/blog/tag/perfdata/)
- [pnp](https://www.neteye-blog.com/blog/tag/pnp/)
- [NetEye Updates](https://www.neteye-blog.com/blog/tag/neteye-updates/)
- [NetMonitor](https://www.neteye-blog.com/blog/tag/netmonitor/)
- [Gateway](https://www.neteye-blog.com/blog/tag/gateway/)
- [watchdog](https://www.neteye-blog.com/blog/tag/watchdog/)
- [Agentless](https://www.neteye-blog.com/blog/tag/agentless/)
- [WMI](https://www.neteye-blog.com/blog/tag/wmi/)
- [opm](https://www.neteye-blog.com/blog/tag/opm/)
- [exend otrs](https://www.neteye-blog.com/blog/tag/exend-otrs/)
- [otrs plugins](https://www.neteye-blog.com/blog/tag/otrs-plugins/)
- [configtool](https://www.neteye-blog.com/blog/tag/configtool/)
- [traphandler](https://www.neteye-blog.com/blog/tag/traphandler/)
- [Nagios world conference europe](https://www.neteye-blog.com/blog/tag/nagios-world-conference-europe/)
- [DRBD](https://www.neteye-blog.com/blog/tag/drbd/)
- [high availability](https://www.neteye-blog.com/blog/tag/high-availability/)
- [Jens Oliver Bothe](https://www.neteye-blog.com/blog/tag/jens-oliver-bothe/)
- [modem](https://www.neteye-blog.com/blog/tag/modem/)
- [Nagios plugin](https://www.neteye-blog.com/blog/tag/nagios-plugin/)
- [Ton Voon](https://www.neteye-blog.com/blog/tag/ton-voon/)
- [realtime](https://www.neteye-blog.com/blog/tag/realtime/)
- [graphs](https://www.neteye-blog.com/blog/tag/graphs/)
- [NRPE](https://www.neteye-blog.com/blog/tag/nrpe/)
- [Interview Ethan Galstad](https://www.neteye-blog.com/blog/tag/interview-ethan-galstad/)
- [Opsview](https://www.neteye-blog.com/blog/tag/opsview/)
- [NetEye monarch nagios update](https://www.neteye-blog.com/blog/tag/neteye-monarch-nagios-update/)
- [centos neteye os update](https://www.neteye-blog.com/blog/tag/centos-neteye-os-update/)
- [neteye nagios plugins](https://www.neteye-blog.com/blog/tag/neteye-nagios-plugins/)
- [NetEye update mklivestatus](https://www.neteye-blog.com/blog/tag/neteye-update-mklivestatus/)
- [NetEye syslogview](https://www.neteye-blog.com/blog/tag/neteye-syslogview/)
- [Proxy](https://www.neteye-blog.com/blog/tag/proxy/)
- [NTLM](https://www.neteye-blog.com/blog/tag/ntlm/)
- [NetEye training](https://www.neteye-blog.com/blog/tag/neteye-training/)
- [NetEye workshop](https://www.neteye-blog.com/blog/tag/neteye-workshop/)
- [LDAP](https://www.neteye-blog.com/blog/tag/ldap/)
- [LDAP Search](https://www.neteye-blog.com/blog/tag/ldap-search/)
- [Workshop](https://www.neteye-blog.com/blog/tag/workshop/)
- [Training](https://www.neteye-blog.com/blog/tag/training/)
- [Presentations](https://www.neteye-blog.com/blog/tag/presentations/)
- [Videos](https://www.neteye-blog.com/blog/tag/videos/)
- [Safed Agent](https://www.neteye-blog.com/blog/tag/safed-agent/)
- [System Administrators](https://www.neteye-blog.com/blog/tag/system-administrators/)
- [Nagios configuration](https://www.neteye-blog.com/blog/tag/nagios-configuration/)
- [tablet](https://www.neteye-blog.com/blog/tag/tablet/)
- [mobile App](https://www.neteye-blog.com/blog/tag/mobile-app/)
- [NetEye App](https://www.neteye-blog.com/blog/tag/neteye-app/)
- [Google Maps](https://www.neteye-blog.com/blog/tag/google-maps/)
- [NetEye seminar September](https://www.neteye-blog.com/blog/tag/neteye-seminar-september/)
- [NetEye know-how](https://www.neteye-blog.com/blog/tag/neteye-know-how/)
- [NetEye training feedback](https://www.neteye-blog.com/blog/tag/neteye-training-feedback/)
- [System Management training](https://www.neteye-blog.com/blog/tag/system-management-training/)
- [Microsoft Exchange](https://www.neteye-blog.com/blog/tag/microsoft-exchange/)
- [german server](https://www.neteye-blog.com/blog/tag/german-server/)
- [Monarch](https://www.neteye-blog.com/blog/tag/monarch/)
- [neteye nagios monarch configtool GUI](https://www.neteye-blog.com/blog/tag/neteye-nagios-monarch-configtool-gui/)
- [NetEye centOS 5.7](https://www.neteye-blog.com/blog/tag/neteye-centos-5-7/)
- [script to schedule downtimes](https://www.neteye-blog.com/blog/tag/script-to-schedule-downtimes/)
- [Plugin](https://www.neteye-blog.com/blog/tag/plugin/)
- [SAP](https://www.neteye-blog.com/blog/tag/sap/)
- [Solution Manager](https://www.neteye-blog.com/blog/tag/solution-manager/)
- [syslogview 1.7.7](https://www.neteye-blog.com/blog/tag/syslogview-1-7-7/)
- [mklivestatus](https://www.neteye-blog.com/blog/tag/mklivestatus/)
- [Real User Monitoring](https://www.neteye-blog.com/blog/tag/real-user-monitoring/)
- [Cloud](https://www.neteye-blog.com/blog/tag/cloud/)
- [Application Latency](https://www.neteye-blog.com/blog/tag/application-latency/)
- [End User Experience](https://www.neteye-blog.com/blog/tag/end-user-experience/)
- [Nagios SAP monitoring](https://www.neteye-blog.com/blog/tag/nagios-sap-monitoring/)
- [CCMS](https://www.neteye-blog.com/blog/tag/ccms/)
- [SAP solution manager integration to SAP](https://www.neteye-blog.com/blog/tag/sap-solution-manager-integration-to-sap/)
- [nagios plugin apc ups check](https://www.neteye-blog.com/blog/tag/nagios-plugin-apc-ups-check/)
- [Action Launchpad](https://www.neteye-blog.com/blog/tag/action-launchpad/)
- [Command execution](https://www.neteye-blog.com/blog/tag/command-execution/)
- [CeBIT](https://www.neteye-blog.com/blog/tag/cebit/)
- [Georg Kostner](https://www.neteye-blog.com/blog/tag/georg-kostner/)
- [Open Source System Management Conference](https://www.neteye-blog.com/blog/tag/open-source-system-management-conference/)
- [Roma](https://www.neteye-blog.com/blog/tag/roma/)
- [IT System Management](https://www.neteye-blog.com/blog/tag/it-system-management/)
- [rum](https://www.neteye-blog.com/blog/tag/rum/)
- [3.3](https://www.neteye-blog.com/blog/tag/3-3/)
- [Web App](https://www.neteye-blog.com/blog/tag/web-app/)
- [OSSMC](https://www.neteye-blog.com/blog/tag/ossmc/)
- [Jeffrey Hammonf](https://www.neteye-blog.com/blog/tag/jeffrey-hammonf/)
- [Forrester Research](https://www.neteye-blog.com/blog/tag/forrester-research/)
- [Michael Schwartzkopff](https://www.neteye-blog.com/blog/tag/michael-schwartzkopff/)
- [NeDi](https://www.neteye-blog.com/blog/tag/nedi/)
- [Netowrk Discovery](https://www.neteye-blog.com/blog/tag/netowrk-discovery/)
- [NetEye pnp update](https://www.neteye-blog.com/blog/tag/neteye-pnp-update/)
- [neteye-3.3](https://www.neteye-blog.com/blog/tag/neteye-3-3/)
- [Update](https://www.neteye-blog.com/blog/tag/update/)
- [Webmin](https://www.neteye-blog.com/blog/tag/webmin/)
- [neteye-msgconsole](https://www.neteye-blog.com/blog/tag/neteye-msgconsole/)
- [MessageConsole](https://www.neteye-blog.com/blog/tag/messageconsole/)
- [services](https://www.neteye-blog.com/blog/tag/services/)
- [Groups](https://www.neteye-blog.com/blog/tag/groups/)
- [Customer companies](https://www.neteye-blog.com/blog/tag/customer-companies/)
- [Remo Rickli](https://www.neteye-blog.com/blog/tag/remo-rickli/)
- [IBM Storewize V7000](https://www.neteye-blog.com/blog/tag/ibm-storewize-v7000/)
- [check_ibm_v7000.sh](https://www.neteye-blog.com/blog/tag/check_ibm_v7000-sh/)
- [event handler](https://www.neteye-blog.com/blog/tag/event-handler/)
- [File access monitor](https://www.neteye-blog.com/blog/tag/file-access-monitor/)
- [Audit object access](https://www.neteye-blog.com/blog/tag/audit-object-access/)
- [Add-ons](https://www.neteye-blog.com/blog/tag/add-ons/)
- [drop down from DB](https://www.neteye-blog.com/blog/tag/drop-down-from-db/)
- [text area from DB](https://www.neteye-blog.com/blog/tag/text-area-from-db/)
- [query](https://www.neteye-blog.com/blog/tag/query/)
- [Business Process Monitoring](https://www.neteye-blog.com/blog/tag/business-process-monitoring/)
- [critical business element](https://www.neteye-blog.com/blog/tag/critical-business-element/)
- [NeDi @de](https://www.neteye-blog.com/de/blog/tag/nedi-de/)
- [Network traffic Management](https://www.neteye-blog.com/de/blog/tag/network-traffic-management/)
- [ComNet](https://www.neteye-blog.com/blog/tag/comnet/)
- [Düsseldorf](https://www.neteye-blog.com/blog/tag/dusseldorf/)
- [Hannover](https://www.neteye-blog.com/blog/tag/hannover/)
- [NetEye Info Days](https://www.neteye-blog.com/blog/tag/neteye-info-days/)
- [CheckPoint](https://www.neteye-blog.com/blog/tag/checkpoint/)
- [BC](https://www.neteye-blog.com/blog/tag/bc/)
- [Open Source Conference](https://www.neteye-blog.com/blog/tag/open-source-conference/)
- [Open Source Conference @it](https://www.neteye-blog.com/it/blog/tag/open-source-conference-it/)
- [Georg Kostner @it](https://www.neteye-blog.com/it/blog/tag/georg-kostner-it/)
- [Luca Deri @it](https://www.neteye-blog.com/it/blog/tag/luca-deri-it/)
- [ntop @it](https://www.neteye-blog.com/it/blog/tag/ntop-it-2/)
- [NetEye @it](https://www.neteye-blog.com/it/blog/tag/neteye-it-2/)
- [Würth Phoenix @it](https://www.neteye-blog.com/it/blog/tag/wurth-phoenix-it/)
- [Real User Experience](https://www.neteye-blog.com/de/blog/tag/real-user-experience/)
- [ntop @de](https://www.neteye-blog.com/de/blog/tag/ntop-de-2/)
- [Mauro Vettore @it](https://www.neteye-blog.com/it/blog/tag/mauro-vettore-it/)
- [Monitoraggio in Diesel S.p.A. @it](https://www.neteye-blog.com/it/blog/tag/monitoraggio-in-diesel-s-p-a-it/)
- [Nagios world conference europe @it](https://www.neteye-blog.com/it/blog/tag/nagios-world-conference-europe-it/)
- [Universities](https://www.neteye-blog.com/blog/tag/universities/)
- [Public Sector](https://www.neteye-blog.com/blog/tag/public-sector/)
- [Open Source @it](https://www.neteye-blog.com/it/blog/tag/open-source-it/)
- [monitoraggio @it](https://www.neteye-blog.com/it/blog/tag/monitoraggio-it/)
- [IT System Management @it](https://www.neteye-blog.com/it/blog/tag/it-system-management-it/)
- [Open Source System Management Conference @it](https://www.neteye-blog.com/it/blog/tag/open-source-system-management-conference-it/)
- [Projektmanagement](https://www.neteye-blog.com/de/blog/tag/projektmanagement/)
- [ITIL @de](https://www.neteye-blog.com/de/blog/tag/itil-de/)
- [OTRS @de](https://www.neteye-blog.com/de/blog/tag/otrs-de-2/)
- [PM-Forum](https://www.neteye-blog.com/de/blog/tag/pm-forum/)
- [OTRS 3.2](https://www.neteye-blog.com/blog/tag/otrs-3-2/)
- [OTRS 3.2 beta](https://www.neteye-blog.com/blog/tag/otrs-3-2-beta/)
- [Incident Management](https://www.neteye-blog.com/blog/tag/incident-management/)
- [Customer Information Center](https://www.neteye-blog.com/blog/tag/customer-information-center/)
- [rsyslog](https://www.neteye-blog.com/blog/tag/rsyslog/)
- [PNP templates](https://www.neteye-blog.com/blog/tag/pnp-templates/)
- [PNP for nagios](https://www.neteye-blog.com/blog/tag/pnp-for-nagios/)
- [maximum values](https://www.neteye-blog.com/blog/tag/maximum-values/)
- [network traffic](https://www.neteye-blog.com/blog/tag/network-traffic/)
- [Windows machines monitoring](https://www.neteye-blog.com/blog/tag/windows-machines-monitoring/)
- [NetEye team](https://www.neteye-blog.com/blog/tag/neteye-team/)
- [Merry Christmas](https://www.neteye-blog.com/blog/tag/merry-christmas/)
- [Performance monitoring](https://www.neteye-blog.com/blog/tag/performance-monitoring/)
- [server latency](https://www.neteye-blog.com/blog/tag/server-latency/)
- [impacted users](https://www.neteye-blog.com/blog/tag/impacted-users/)
- [network latency](https://www.neteye-blog.com/blog/tag/network-latency/)
- [client latency](https://www.neteye-blog.com/blog/tag/client-latency/)
- [Real User Experience Monitoring @it](https://www.neteye-blog.com/it/blog/tag/real-user-experience-monitoring-it-2/)
- [SPS](https://www.neteye-blog.com/blog/tag/sps/)
- [partnership](https://www.neteye-blog.com/blog/tag/partnership/)
- [System Management](https://www.neteye-blog.com/blog/tag/system-management/)
- [Poland](https://www.neteye-blog.com/blog/tag/poland/)
- [CeBIT @it](https://www.neteye-blog.com/it/blog/tag/cebit-it/)
- [CeBIT @de](https://www.neteye-blog.com/de/blog/tag/cebit-de/)
- [nagmap](https://www.neteye-blog.com/blog/tag/nagmap/)
- [freshness check @en](https://www.neteye-blog.com/blog/tag/freshness-check-en/)
- [Cluster](https://www.neteye-blog.com/blog/tag/cluster/)
- [redhat](https://www.neteye-blog.com/blog/tag/redhat/)
- [Soiel](https://www.neteye-blog.com/it/blog/tag/soiel/)
- [Real User Experience @it](https://www.neteye-blog.com/it/blog/tag/real-user-experience-it/)
- [Real User Experience @en](https://www.neteye-blog.com/blog/tag/real-user-experience-en/)
- [Open Source @de](https://www.neteye-blog.com/de/blog/tag/open-source-de/)
- [Open Source System Management Conference @de](https://www.neteye-blog.com/de/blog/tag/open-source-system-management-conference-de/)
- [End User Experience @de](https://www.neteye-blog.com/de/blog/tag/end-user-experience-de/)
- [Open Soruce System Management Conference](https://www.neteye-blog.com/de/blog/tag/open-soruce-system-management-conference/)
- [centos](https://www.neteye-blog.com/blog/tag/centos/)
- [Inventory](https://www.neteye-blog.com/blog/tag/inventory/)
- [Asset and Inventory Management](https://www.neteye-blog.com/blog/tag/asset-and-inventory-management/)
- [reporting](https://www.neteye-blog.com/blog/tag/reporting/)
- [NetEye Release](https://www.neteye-blog.com/de/blog/tag/neteye-release/)
- [Al'exa](https://www.neteye-blog.com/de/blog/tag/alexa/)
- [Real User Experience Monitoring @de](https://www.neteye-blog.com/de/blog/tag/real-user-experience-monitoring-de-2/)
- [monitoring @it](https://www.neteye-blog.com/it/blog/tag/monitoring-it/)
- [Andrea di Lernia](https://www.neteye-blog.com/it/blog/tag/andrea-di-lernia/)
- [syslog audit event](https://www.neteye-blog.com/blog/tag/syslog-audit-event/)
- [Eventlog auditing](https://www.neteye-blog.com/blog/tag/eventlog-auditing/)
- [Al'exa @en](https://www.neteye-blog.com/blog/tag/alexa-en/)
- [Sikuli](https://www.neteye-blog.com/blog/tag/sikuli/)
- [Application Performance Management](https://www.neteye-blog.com/blog/tag/application-performance-management/)
- [SNMP Interface Table](https://www.neteye-blog.com/blog/tag/snmp-interface-table/)
- [switch ports](https://www.neteye-blog.com/blog/tag/switch-ports/)
- [training @it](https://www.neteye-blog.com/it/blog/tag/training-it/)
- [message console](https://www.neteye-blog.com/blog/tag/message-console/)
- [Came](https://www.neteye-blog.com/blog/tag/came/)
- [usergroup](https://www.neteye-blog.com/it/blog/tag/usergroup/)
- [User Group](https://www.neteye-blog.com/it/blog/tag/user-group/)
- [IT-SA](https://www.neteye-blog.com/de/blog/tag/it-sa/)
- [Al´exa](https://www.neteye-blog.com/de/blog/tag/al´exa/)
- [User Group @en](https://www.neteye-blog.com/blog/tag/user-group-en/)
- [Cineca @en](https://www.neteye-blog.com/blog/tag/cineca-en/)
- [Al'exa @it](https://www.neteye-blog.com/it/blog/tag/alexa-it/)
- [End User Experience @it](https://www.neteye-blog.com/it/blog/tag/end-user-experience-it/)
- [rack](https://www.neteye-blog.com/blog/tag/rack/)
- [Bays Management](https://www.neteye-blog.com/blog/tag/bays-management/)
- [Network Discovery](https://www.neteye-blog.com/blog/tag/network-discovery/)
- [Java Application](https://www.neteye-blog.com/blog/tag/java-application/)
- [Java Application @it](https://www.neteye-blog.com/it/blog/tag/java-application-it/)
- [Project Management](https://www.neteye-blog.com/blog/tag/project-management/)
- [Virtual machine](https://www.neteye-blog.com/blog/tag/virtual-machine/)
- [Application Performance Monitoring](https://www.neteye-blog.com/blog/tag/application-performance-monitoring/)
- [Frohe Weihnachten](https://www.neteye-blog.com/de/blog/tag/frohe-weihnachten/)
- [ITIL request fulfillment](https://www.neteye-blog.com/blog/tag/itil-request-fulfillment/)
- [EriZone](https://www.neteye-blog.com/de/blog/tag/erizone/)
- [ITSM @de](https://www.neteye-blog.com/de/blog/tag/itsm-de/)
- [EriZone @en](https://www.neteye-blog.com/blog/tag/erizone-en/)
- [launch](https://www.neteye-blog.com/blog/tag/launch/)
- [ticketing](https://www.neteye-blog.com/blog/tag/ticketing/)
- [EriZone @it](https://www.neteye-blog.com/it/blog/tag/erizone-it/)
- [Jon maddog Hall](https://www.neteye-blog.com/blog/tag/jon-maddog-hall/)
- [Al´exa @en](https://www.neteye-blog.com/blog/tag/al´exa-en/)
- [End to End Monitoring](https://www.neteye-blog.com/de/blog/tag/end-to-end-monitoring/)
- [NetEye Training @de](https://www.neteye-blog.com/de/blog/tag/neteye-training-de/)
- [SNMP](https://www.neteye-blog.com/blog/tag/snmp/)
- [Naemon](https://www.neteye-blog.com/blog/tag/naemon/)
- [live-stream](https://www.neteye-blog.com/blog/tag/live-stream/)
- [images](https://www.neteye-blog.com/blog/tag/images/)
- [mssql](https://www.neteye-blog.com/blog/tag/mssql/)
- [ticket cc](https://www.neteye-blog.com/blog/tag/ticket-cc/)
- [Sahi](https://www.neteye-blog.com/it/blog/tag/sahi/)
- [Sahi @en](https://www.neteye-blog.com/blog/tag/sahi-en/)
- [End User Expeerience](https://www.neteye-blog.com/blog/tag/end-user-expeerience/)
- [performance](https://www.neteye-blog.com/blog/tag/performance/)
- [DigiCamere](https://www.neteye-blog.com/blog/tag/digicamere/)
- [OCS inventory](https://www.neteye-blog.com/it/blog/tag/ocs-inventory/)
- [Software Distribution](https://www.neteye-blog.com/it/blog/tag/software-distribution/)
- [Padova](https://www.neteye-blog.com/it/blog/tag/padova/)
- [2014](https://www.neteye-blog.com/it/blog/tag/2014/)
- [NeyEye](https://www.neteye-blog.com/it/blog/tag/neyeye/)
- [KPI](https://www.neteye-blog.com/it/blog/tag/kpi/)
- [TCP](https://www.neteye-blog.com/it/blog/tag/tcp/)
- [plugin @it](https://www.neteye-blog.com/it/blog/tag/plugin-it/)
- [Padua](https://www.neteye-blog.com/blog/tag/padua/)
- [Andrea di Lernia @en](https://www.neteye-blog.com/blog/tag/andrea-di-lernia-en/)
- [CMBD](https://www.neteye-blog.com/blog/tag/cmbd/)
- [CI](https://www.neteye-blog.com/blog/tag/ci/)
- [CMDB](https://www.neteye-blog.com/it/blog/tag/cmdb/)
- [shutdown](https://www.neteye-blog.com/blog/tag/shutdown/)
- [shutdown management](https://www.neteye-blog.com/blog/tag/shutdown-management/)
- [customer satisfaction @en](https://www.neteye-blog.com/blog/tag/customer-satisfaction-en/)
- [smilies](https://www.neteye-blog.com/blog/tag/smilies/)
- [emoticons](https://www.neteye-blog.com/blog/tag/emoticons/)
- [incident @en](https://www.neteye-blog.com/blog/tag/incident-en/)
- [problem @en](https://www.neteye-blog.com/blog/tag/problem-en/)
- [Interface](https://www.neteye-blog.com/blog/tag/interface/)
- [working hours](https://www.neteye-blog.com/blog/tag/working-hours/)
- [vSphere](https://www.neteye-blog.com/blog/tag/vsphere/)
- [vServer](https://www.neteye-blog.com/blog/tag/vserver/)
- [SNMP trap](https://www.neteye-blog.com/blog/tag/snmp-trap/)
- [Asset Management @it](https://www.neteye-blog.com/it/blog/tag/asset-management-it-2/)
- [upgrade](https://www.neteye-blog.com/blog/tag/upgrade/)
- [IT & Business @de](https://www.neteye-blog.com/de/blog/tag/it-business-de/)
- [Windows drive monitoring](https://www.neteye-blog.com/blog/tag/windows-drive-monitoring/)
- [nsclient drive unit change](https://www.neteye-blog.com/blog/tag/nsclient-drive-unit-change/)
- [Logstash](https://www.neteye-blog.com/blog/tag/logstash/)
- [Elasticsearch](https://www.neteye-blog.com/blog/tag/elasticsearch/)
- [Kibana](https://www.neteye-blog.com/blog/tag/kibana/)
- [new feature](https://www.neteye-blog.com/blog/tag/new-feature/)
- [cron](https://www.neteye-blog.com/blog/tag/cron/)
- [NetEye: New MySQL Audit Plugin for SyslogView @en](https://www.neteye-blog.com/blog/tag/neteye-new-mysql-audit-plugin-for-syslogview-en/)
- [Event](https://www.neteye-blog.com/blog/tag/event/)
- [fiera](https://www.neteye-blog.com/blog/tag/fiera/)
- [smau](https://www.neteye-blog.com/blog/tag/smau/)
- [DNS](https://www.neteye-blog.com/blog/tag/dns/)
- [events](https://www.neteye-blog.com/blog/tag/events/)
- [Milan](https://www.neteye-blog.com/blog/tag/milan/)
- [Soiel @en](https://www.neteye-blog.com/blog/tag/soiel-en/)
- [Event Monitoring](https://www.neteye-blog.com/blog/tag/event-monitoring/)
- [Eventhandler](https://www.neteye-blog.com/blog/tag/eventhandler/)
- [Open Source Conference @de](https://www.neteye-blog.com/de/blog/tag/open-source-conference-de/)
- [SLA-Monitoring](https://www.neteye-blog.com/blog/tag/sla-monitoring/)
- [IT-Dienste](https://www.neteye-blog.com/blog/tag/it-dienste/)
- [IT services](https://www.neteye-blog.com/blog/tag/it-services/)
- [Active Directory](https://www.neteye-blog.com/blog/tag/active-directory/)
- [update @it](https://www.neteye-blog.com/it/blog/tag/update-it/)
- [NetEye 3.5](https://www.neteye-blog.com/blog/tag/neteye-3-5/)
- [LogManager](https://www.neteye-blog.com/blog/tag/logmanager/)
- [Asset Management @de @en](https://www.neteye-blog.com/blog/tag/asset-management-de-en/)
- [VoIP](https://www.neteye-blog.com/blog/tag/voip/)
- [Integration](https://www.neteye-blog.com/blog/tag/integration/)
- [Log Management](https://www.neteye-blog.com/it/blog/tag/log-management/)
- [Log Management @en](https://www.neteye-blog.com/blog/tag/log-management-en/)
- [SMS alerts](https://www.neteye-blog.com/blog/tag/sms-alerts/)
- [network](https://www.neteye-blog.com/it/blog/tag/network/)
- [ntopng](https://www.neteye-blog.com/blog/tag/ntopng/)
- [network statistics](https://www.neteye-blog.com/blog/tag/network-statistics/)
- [EriZone @en @it](https://www.neteye-blog.com/it/blog/tag/erizone-en-it/)
- [Hannover @it](https://www.neteye-blog.com/it/blog/tag/hannover-it/)
- [EriZone @en @de](https://www.neteye-blog.com/de/blog/tag/erizone-en-de/)
- [Hannover @de](https://www.neteye-blog.com/de/blog/tag/hannover-de/)
- [Luca Deri @de](https://www.neteye-blog.com/de/blog/tag/luca-deri-de/)
- [cebit 2015](https://www.neteye-blog.com/blog/tag/cebit-2015/)
- [glpi plugin](https://www.neteye-blog.com/blog/tag/glpi-plugin/)
- [PowerShell](https://www.neteye-blog.com/blog/tag/powershell/)
- [Cluster Monitoring](https://www.neteye-blog.com/blog/tag/cluster-monitoring/)
- [Script Examples](https://www.neteye-blog.com/blog/tag/script-examples/)
- [Windows Cluster Monitoring](https://www.neteye-blog.com/blog/tag/windows-cluster-monitoring/)
- [Windows @it](https://www.neteye-blog.com/it/blog/tag/windows-it/)
- [cluster @it](https://www.neteye-blog.com/it/blog/tag/cluster-it/)
- [script](https://www.neteye-blog.com/it/blog/tag/script/)
- [nrpe @it](https://www.neteye-blog.com/it/blog/tag/nrpe-it/)
- [New Release](https://www.neteye-blog.com/blog/tag/new-release/)
- [RUE](https://www.neteye-blog.com/blog/tag/rue/)
- [APM](https://www.neteye-blog.com/blog/tag/apm/)
- [machine learning](https://www.neteye-blog.com/blog/tag/machine-learning/)
- [SSO](https://www.neteye-blog.com/blog/tag/sso/)
- [Job Scheduler](https://www.neteye-blog.com/blog/tag/job-scheduler/)
- [The NetEye & EriZone UserGroup offers opportunity to learn about the news and the future strategy of the solutions](https://www.neteye-blog.com/blog/tag/the-neteye-erizone-usergroup-offers-opportunity-to-learn-about-the-news-and-the-future-strategy-of-the-solutions/)
- [to exchange experiences and propose new areas of improvements. usergroup](https://www.neteye-blog.com/blog/tag/to-exchange-experiences-and-propose-new-areas-of-improvements-usergroup/)
- [NetEye plugin](https://www.neteye-blog.com/it/blog/tag/neteye-plugin/)
- [NetEye Network Discovery](https://www.neteye-blog.com/blog/tag/neteye-network-discovery/)
- [nmap scan](https://www.neteye-blog.com/blog/tag/nmap-scan/)
- [discover node OS](https://www.neteye-blog.com/blog/tag/discover-node-os/)
- [switch configuration backup](https://www.neteye-blog.com/blog/tag/switch-configuration-backup/)
- [IP SLA](https://www.neteye-blog.com/blog/tag/ip-sla/)
- [VOIP Monitoring](https://www.neteye-blog.com/blog/tag/voip-monitoring/)
- [service catalogue](https://www.neteye-blog.com/blog/tag/service-catalogue/)
- [Alyvix](https://www.neteye-blog.com/blog/tag/alyvix/)
- [End User Experience Monitoring](https://www.neteye-blog.com/blog/tag/end-user-experience-monitoring/)
- [monitoring remote locations](https://www.neteye-blog.com/blog/tag/monitoring-remote-locations/)
- [remote monitoring](https://www.neteye-blog.com/blog/tag/remote-monitoring/)
- [nfdump](https://www.neteye-blog.com/blog/tag/nfdump/)
- [Command line](https://www.neteye-blog.com/blog/tag/command-line/)
- [network traffic monitoring@de](https://www.neteye-blog.com/blog/tag/network-traffic-monitoringde/)
- [nfdump@de](https://www.neteye-blog.com/blog/tag/nfdumpde/)
- [EriZone@de](https://www.neteye-blog.com/blog/tag/erizonede/)
- [EriZone@it](https://www.neteye-blog.com/blog/tag/erizoneit/)
- [Network Traffic Management@de](https://www.neteye-blog.com/blog/tag/network-traffic-managementde/)
- [NetEye Reporting@de](https://www.neteye-blog.com/blog/tag/neteye-reportingde/)
- [NetEye@de](https://www.neteye-blog.com/blog/tag/neteyede/)
- [IT service](https://www.neteye-blog.com/blog/tag/it-service/)
- [BPM](https://www.neteye-blog.com/blog/tag/bpm/)
- [Process Management](https://www.neteye-blog.com/it/blog/tag/process-management/)
- [banda](https://www.neteye-blog.com/it/blog/tag/banda/)
- [Change Evaluation](https://www.neteye-blog.com/blog/tag/change-evaluation/)
- [Change](https://www.neteye-blog.com/blog/tag/change/)
- [D](https://www.neteye-blog.com/blog/tag/d/)
- [Login](https://www.neteye-blog.com/blog/tag/login/)
- [Knowledge Management](https://www.neteye-blog.com/blog/tag/knowledge-management/)
- [SKMS](https://www.neteye-blog.com/blog/tag/skms/)
- [switch](https://www.neteye-blog.com/blog/tag/switch/)
- [switch deployment](https://www.neteye-blog.com/blog/tag/switch-deployment/)
- [automated switch deployment](https://www.neteye-blog.com/blog/tag/automated-switch-deployment/)
- [E](https://www.neteye-blog.com/de/blog/tag/e/)
- [congestion@en](https://www.neteye-blog.com/blog/tag/congestionen/)
- [ECN@en](https://www.neteye-blog.com/blog/tag/ecnen/)
- [network@en](https://www.neteye-blog.com/blog/tag/networken/)
- [retransmission@en](https://www.neteye-blog.com/blog/tag/retransmissionen/)
- [RTO@en](https://www.neteye-blog.com/blog/tag/rtoen/)
- [NetEye@it](https://www.neteye-blog.com/blog/tag/neteyeit/)
- [Real User Experience@it](https://www.neteye-blog.com/blog/tag/real-user-experienceit/)
- [explicit congestion notification@en](https://www.neteye-blog.com/blog/tag/explicit-congestion-notificationen/)
- [NetEye@en](https://www.neteye-blog.com/blog/tag/neteyeen/)
- [Real User Experience@en](https://www.neteye-blog.com/blog/tag/real-user-experienceen/)
- [NeDi@en](https://www.neteye-blog.com/blog/tag/nedien/)
- [network discovery@en](https://www.neteye-blog.com/blog/tag/network-discoveryen/)
- [switch@en](https://www.neteye-blog.com/blog/tag/switchen/)
- [switch deployment@en](https://www.neteye-blog.com/blog/tag/switch-deploymenten/)
- [automated switch deployment@en](https://www.neteye-blog.com/blog/tag/automated-switch-deploymenten/)
- [Log Management@de](https://www.neteye-blog.com/blog/tag/log-managementde/)
- [RUE@it](https://www.neteye-blog.com/blog/tag/rueit/)
- [user experience@it](https://www.neteye-blog.com/blog/tag/user-experienceit/)
- [performance@it](https://www.neteye-blog.com/blog/tag/performanceit/)
- [network performance@it](https://www.neteye-blog.com/blog/tag/network-performanceit/)
- [network performance@en](https://www.neteye-blog.com/blog/tag/network-performanceen/)
- [performance@en](https://www.neteye-blog.com/blog/tag/performanceen/)
- [RUE@en](https://www.neteye-blog.com/blog/tag/rueen/)
- [user experience@en](https://www.neteye-blog.com/blog/tag/user-experienceen/)
- [network performance@de](https://www.neteye-blog.com/blog/tag/network-performancede/)
- [performance@de](https://www.neteye-blog.com/blog/tag/performancede/)
- [Real User Experience@de](https://www.neteye-blog.com/blog/tag/real-user-experiencede/)
- [RUE@de](https://www.neteye-blog.com/blog/tag/ruede/)
- [user experience@de](https://www.neteye-blog.com/blog/tag/user-experiencede/)
- [EriZone Upgrade](https://www.neteye-blog.com/blog/tag/erizone-upgrade/)
- [Inventory@de](https://www.neteye-blog.com/blog/tag/inventoryde/)
- [MS Office Key@de](https://www.neteye-blog.com/blog/tag/ms-office-keyde/)
- [Lizenzschlüssel@de](https://www.neteye-blog.com/blog/tag/lizenzschlusselde/)
- [OCS Inventory@de](https://www.neteye-blog.com/blog/tag/ocs-inventoryde/)
- [msi](https://www.neteye-blog.com/blog/tag/msi/)
- [Deployment](https://www.neteye-blog.com/blog/tag/deployment/)
- [NetEye RUE@en](https://www.neteye-blog.com/blog/tag/neteye-rueen/)
- [Zero Window@en](https://www.neteye-blog.com/blog/tag/zero-windowen/)
- [SLA@it](https://www.neteye-blog.com/blog/tag/slait/)
- [SLA report@it](https://www.neteye-blog.com/blog/tag/sla-reportit/)
- [event@it](https://www.neteye-blog.com/blog/tag/eventit/)
- [event correction@it](https://www.neteye-blog.com/blog/tag/event-correctionit/)
- [downtime@it](https://www.neteye-blog.com/blog/tag/downtimeit/)
- [SLA@en](https://www.neteye-blog.com/blog/tag/slaen/)
- [SLA report@en](https://www.neteye-blog.com/blog/tag/sla-reporten/)
- [event@en](https://www.neteye-blog.com/blog/tag/eventen/)
- [event correction@en](https://www.neteye-blog.com/blog/tag/event-correctionen/)
- [downtime@en](https://www.neteye-blog.com/blog/tag/downtimeen/)
- [downtime@de](https://www.neteye-blog.com/blog/tag/downtimede/)
- [event correction@de](https://www.neteye-blog.com/blog/tag/event-correctionde/)
- [event@de](https://www.neteye-blog.com/blog/tag/eventde/)
- [SLA report@de SLA@de](https://www.neteye-blog.com/blog/tag/sla-reportde-slade/)
- [Disk Space@it](https://www.neteye-blog.com/blog/tag/disk-spaceit/)
- [Optimization@it](https://www.neteye-blog.com/blog/tag/optimizationit/)
- [Log Management@it](https://www.neteye-blog.com/blog/tag/log-managementit/)
- [Elastic@it](https://www.neteye-blog.com/blog/tag/elasticit/)
- [Garante della Privacy@it](https://www.neteye-blog.com/blog/tag/garante-della-privacyit/)
- [Disk Space@de](https://www.neteye-blog.com/blog/tag/disk-spacede/)
- [Optimization@de](https://www.neteye-blog.com/blog/tag/optimizationde/)
- [Elastic@de](https://www.neteye-blog.com/blog/tag/elasticde/)
- [Garante della Privacy@de](https://www.neteye-blog.com/blog/tag/garante-della-privacyde/)
- [IT Orchestration](https://www.neteye-blog.com/blog/tag/it-orchestration/)
- [unlock account](https://www.neteye-blog.com/blog/tag/unlock-account/)
- [reset user password from remote](https://www.neteye-blog.com/blog/tag/reset-user-password-from-remote/)
- [EriZone OTRS Security](https://www.neteye-blog.com/blog/tag/erizone-otrs-security/)
- [SMS@de](https://www.neteye-blog.com/blog/tag/smsde/)
- [SMS Notification@de](https://www.neteye-blog.com/blog/tag/sms-notificationde/)
- [Benachrichtigungen](https://www.neteye-blog.com/blog/tag/benachrichtigungen/)
- [SMS@it](https://www.neteye-blog.com/blog/tag/smsit/)
- [SMS Notification@it](https://www.neteye-blog.com/blog/tag/sms-notificationit/)
- [notification@it](https://www.neteye-blog.com/blog/tag/notificationit/)
- [notificazioni](https://www.neteye-blog.com/blog/tag/notificazioni/)
- [Customer TouchPoint](https://www.neteye-blog.com/it/blog/tag/customer-touchpoint/)
- [Meeting](https://www.neteye-blog.com/de/blog/tag/meeting/)
- [Brennercom](https://www.neteye-blog.com/de/blog/tag/brennercom/)
- [Dispatching@it](https://www.neteye-blog.com/blog/tag/dispatchingit/)
- [Queue@it](https://www.neteye-blog.com/blog/tag/queueit/)
- [Service Dispatcher@it](https://www.neteye-blog.com/blog/tag/service-dispatcherit/)
- [Ticket@it](https://www.neteye-blog.com/blog/tag/ticketit/)
- [Incident Management@it](https://www.neteye-blog.com/blog/tag/incident-managementit/)
- [Service Reques@it](https://www.neteye-blog.com/blog/tag/service-requesit/)
- [Dispatching@de](https://www.neteye-blog.com/blog/tag/dispatchingde/)
- [Queue@de](https://www.neteye-blog.com/blog/tag/queuede/)
- [Service Dispatcher@de](https://www.neteye-blog.com/blog/tag/service-dispatcherde/)
- [Ticket@de](https://www.neteye-blog.com/blog/tag/ticketde/)
- [Incident Management@de](https://www.neteye-blog.com/blog/tag/incident-managementde/)
- [Service Reques@de](https://www.neteye-blog.com/blog/tag/service-requesde/)
- [automatic network management@it](https://www.neteye-blog.com/it/blog/tag/automatic-network-managementit/)
- [network management@it](https://www.neteye-blog.com/it/blog/tag/network-managementit/)
- [ECML-PKDD discovery challenge@it](https://www.neteye-blog.com/it/blog/tag/ecml-pkdd-discovery-challengeit/)
- [multi-class single label classification@it](https://www.neteye-blog.com/it/blog/tag/multi-class-single-label-classificationit/)
- [machine learning@it](https://www.neteye-blog.com/it/blog/tag/machine-learningit/)
- [network traffic@it](https://www.neteye-blog.com/it/blog/tag/network-trafficit-it/)
- [automatic network management@en](https://www.neteye-blog.com/blog/tag/automatic-network-managementen/)
- [network management@en](https://www.neteye-blog.com/blog/tag/network-managementen/)
- [ECML-PKDD discovery challenge@en](https://www.neteye-blog.com/blog/tag/ecml-pkdd-discovery-challengeen/)
- [multi-class single label classification@en](https://www.neteye-blog.com/blog/tag/multi-class-single-label-classificationen/)
- [network traffic@en](https://www.neteye-blog.com/blog/tag/network-trafficen/)
- [machine learning@en](https://www.neteye-blog.com/blog/tag/machine-learningen/)
- [automatic network management@de](https://www.neteye-blog.com/de/blog/tag/automatic-network-managementde/)
- [ECML-PKDD discovery challenge@de](https://www.neteye-blog.com/de/blog/tag/ecml-pkdd-discovery-challengede/)
- [machine learning@de](https://www.neteye-blog.com/de/blog/tag/machine-learningde/)
- [multi-class single label classification@de](https://www.neteye-blog.com/de/blog/tag/multi-class-single-label-classificationde/)
- [network management@de](https://www.neteye-blog.com/de/blog/tag/network-managementde/)
- [network traffic@de](https://www.neteye-blog.com/de/blog/tag/network-trafficde-de/)
- [Huawei](https://www.neteye-blog.com/de/blog/tag/huawei/)
- [monitoring](https://www.neteye-blog.com/de/blog/tag/monitoring-de/)
- [Huawei](https://www.neteye-blog.com/blog/tag/huawei-2/)
- [Huawei](https://www.neteye-blog.com/it/blog/tag/huawei-it/)
- [NetEye](https://www.neteye-blog.com/it/blog/tag/neteye-it/)
- [monitoring](https://www.neteye-blog.com/it/blog/tag/monitoring-it-2/)
- [Advanced monitoring concepts](https://www.neteye-blog.com/blog/tag/advanced-monitoring-concepts/)
- [Business Service Monitoring](https://www.neteye-blog.com/blog/tag/business-service-monitoring/)
- [Network Discovery](https://www.neteye-blog.com/blog/tag/network-discovery-2/)
- [Event Management](https://www.neteye-blog.com/blog/tag/event-management-2/)
- [fortgeschrittene Monitoring Konzepte](https://www.neteye-blog.com/de/blog/tag/fortgeschrittene-monitoring-konzepte/)
- [Netzwerk Discovery](https://www.neteye-blog.com/de/blog/tag/netzwerk-discovery/)
- [Netzwerk Traffic Monitoring](https://www.neteye-blog.com/de/blog/tag/netzwerk-traffic-monitoring/)
- [Event Management](https://www.neteye-blog.com/de/blog/tag/event-management-de/)
- [Business Service Monitoring](https://www.neteye-blog.com/de/blog/tag/business-service-monitoring-de/)
- [Facility Monitoring](https://www.neteye-blog.com/blog/tag/facility-monitoring/)
- [temperature sensor](https://www.neteye-blog.com/blog/tag/temperature-sensor/)
- [Humidity sensor](https://www.neteye-blog.com/blog/tag/humidity-sensor/)
- [contact sensor](https://www.neteye-blog.com/blog/tag/contact-sensor/)
- [smoke sensor](https://www.neteye-blog.com/blog/tag/smoke-sensor/)
- [Sensoren](https://www.neteye-blog.com/de/blog/tag/sensoren/)
- [Temperatursensor](https://www.neteye-blog.com/de/blog/tag/temperatursensor/)
- [Feuchtigkeitssensor](https://www.neteye-blog.com/de/blog/tag/feuchtigkeitssensor/)
- [Wassersensor](https://www.neteye-blog.com/de/blog/tag/wassersensor/)
- [Rauchsensor](https://www.neteye-blog.com/de/blog/tag/rauchsensor/)
- [Facility Management](https://www.neteye-blog.com/it/blog/tag/facility-management/)
- [sensore di temperatura](https://www.neteye-blog.com/it/blog/tag/sensore-di-temperatura/)
- [sensore di contatto](https://www.neteye-blog.com/it/blog/tag/sensore-di-contatto/)
- [sensore di fumo](https://www.neteye-blog.com/it/blog/tag/sensore-di-fumo/)
- [sensore di acqua](https://www.neteye-blog.com/it/blog/tag/sensore-di-acqua/)
- [Provisioning](https://www.neteye-blog.com/blog/tag/provisioning/)
- [EriZone](https://www.neteye-blog.com/blog/tag/erizone-2/)
- [Access Management](https://www.neteye-blog.com/blog/tag/access-management-2/)
- [Process Management](https://www.neteye-blog.com/blog/tag/process-management-2/)
- [Access Management](https://www.neteye-blog.com/de/blog/tag/access-management-de/)
- [Provisioning](https://www.neteye-blog.com/de/blog/tag/provisioning-de/)
- [Process Management](https://www.neteye-blog.com/de/blog/tag/process-management-de/)
- [EriZone](https://www.neteye-blog.com/it/blog/tag/erizone-it-2/)
- [Access Management](https://www.neteye-blog.com/it/blog/tag/access-management-it/)
- [Provisioning](https://www.neteye-blog.com/it/blog/tag/provisioning-it/)
- [NetEye 3.8@it](https://www.neteye-blog.com/it/blog/tag/neteye-3-8it/)
- [Release@it](https://www.neteye-blog.com/it/blog/tag/releaseit/)
- [nuova release@it](https://www.neteye-blog.com/it/blog/tag/nuova-releaseit/)
- [nuova versione@it](https://www.neteye-blog.com/it/blog/tag/nuova-versioneit/)
- [NetEye@it](https://www.neteye-blog.com/it/blog/tag/neteyeit-it/)
- [NetEye 3.8@de](https://www.neteye-blog.com/de/blog/tag/neteye-3-8de/)
- [neue Version@de](https://www.neteye-blog.com/de/blog/tag/neue-versionde/)
- [neue Release@de](https://www.neteye-blog.com/de/blog/tag/neue-releasede/)
- [NetEye@de](https://www.neteye-blog.com/de/blog/tag/neteyede-de/)
- [NetEye 3.8](https://www.neteye-blog.com/blog/tag/neteye-3-8/)
- [NetEye Release](https://www.neteye-blog.com/blog/tag/neteye-release-2/)
- [New Release](https://www.neteye-blog.com/blog/tag/new-release-2/)
- [Visual Synthetic Monitoring@it](https://www.neteye-blog.com/it/blog/tag/visual-synthetic-monitoringit/)
- [Synthetic Monitoring@it](https://www.neteye-blog.com/it/blog/tag/synthetic-monitoringit/)
- [End User Monitoring@it](https://www.neteye-blog.com/it/blog/tag/end-user-monitoringit/)
- [EUM@it](https://www.neteye-blog.com/it/blog/tag/eumit/)
- [Alyvix 2.3@it](https://www.neteye-blog.com/it/blog/tag/alyvix-2-3it/)
- [New Release@it](https://www.neteye-blog.com/it/blog/tag/new-releaseit/)
- [End User Experience Monitoring@it](https://www.neteye-blog.com/it/blog/tag/end-user-experience-monitoringit-it/)
- [Application Performance Monitoring@it](https://www.neteye-blog.com/it/blog/tag/application-performance-monitoringit-it/)
- [APM@it](https://www.neteye-blog.com/it/blog/tag/apmit-it/)
- [Alyvix@it](https://www.neteye-blog.com/it/blog/tag/alyvixit-it/)
- [Alyvix 2.3](https://www.neteye-blog.com/blog/tag/alyvix-2-3/)
- [EUM](https://www.neteye-blog.com/blog/tag/eum/)
- [Synthetic Monitoring](https://www.neteye-blog.com/blog/tag/synthetic-monitoring/)
- [Visual Synthetic Monitoring](https://www.neteye-blog.com/blog/tag/visual-synthetic-monitoring/)
- [Alyvix](https://www.neteye-blog.com/blog/tag/alyvix-2/)
- [APM](https://www.neteye-blog.com/blog/tag/apm-2/)
- [End User Experience Monitoring](https://www.neteye-blog.com/blog/tag/end-user-experience-monitoring-2/)
- [End User Monitoring](https://www.neteye-blog.com/blog/tag/end-user-monitoring-2/)
- [release](https://www.neteye-blog.com/blog/tag/release-2/)
- [Alyvix 2.3@de](https://www.neteye-blog.com/de/blog/tag/alyvix-2-3de/)
- [EUM@de](https://www.neteye-blog.com/de/blog/tag/eumde/)
- [New Release@de](https://www.neteye-blog.com/de/blog/tag/new-releasede/)
- [Synthetic Monitoring@de](https://www.neteye-blog.com/de/blog/tag/synthetic-monitoringde/)
- [Visual Synthetic Monitoring@de](https://www.neteye-blog.com/de/blog/tag/visual-synthetic-monitoringde/)
- [Alyvix@de](https://www.neteye-blog.com/de/blog/tag/alyvixde-de/)
- [APM@de](https://www.neteye-blog.com/de/blog/tag/apmde-de/)
- [Application Performance Monitoring@de](https://www.neteye-blog.com/de/blog/tag/application-performance-monitoringde-de/)
- [End User Experience Monitoring@de](https://www.neteye-blog.com/de/blog/tag/end-user-experience-monitoringde-de/)
- [end user monitoring@de](https://www.neteye-blog.com/de/blog/tag/end-user-monitoringde-de/)
- [release](https://www.neteye-blog.com/de/blog/tag/release-de/)
- [Design@it](https://www.neteye-blog.com/it/blog/tag/designit/)
- [Stile@it](https://www.neteye-blog.com/it/blog/tag/stileit/)
- [Component Library@it](https://www.neteye-blog.com/it/blog/tag/component-libraryit/)
- [EriZone@it](https://www.neteye-blog.com/it/blog/tag/erizoneit-it/)
- [Design@en](https://www.neteye-blog.com/blog/tag/designen/)
- [Component Library@en](https://www.neteye-blog.com/blog/tag/component-libraryen/)
- [EriZone@en](https://www.neteye-blog.com/blog/tag/erizoneen-2/)
- [Design@de](https://www.neteye-blog.com/de/blog/tag/designde/)
- [Component Library@de](https://www.neteye-blog.com/de/blog/tag/component-libraryde/)
- [EriZone@de](https://www.neteye-blog.com/de/blog/tag/erizonede-de/)
- [Automated shutdown](https://www.neteye-blog.com/blog/tag/autmized-shutdown/)
- [Shutdown procedure](https://www.neteye-blog.com/blog/tag/shutdown-procedure/)
- [Shutdown@de](https://www.neteye-blog.com/de/blog/tag/shutdownde/)
- [Shutdown Management@de](https://www.neteye-blog.com/de/blog/tag/shutdown-managementde/)
- [automatisches Shutdown@de](https://www.neteye-blog.com/de/blog/tag/automatisches-shutdownde/)
- [geordnetes Shutdown@de](https://www.neteye-blog.com/de/blog/tag/geordnetes-shutdownde/)
- [Shutdown Prozedur@de](https://www.neteye-blog.com/de/blog/tag/shutdown-prozedurde/)
- [Shutdown Prozess@de](https://www.neteye-blog.com/de/blog/tag/shutdown-prozessde/)
- [Shutdown@it](https://www.neteye-blog.com/it/blog/tag/shutdownit/)
- [Shutdown Management@it](https://www.neteye-blog.com/it/blog/tag/shutdown-managementit/)
- [shutdown automatizzato@it](https://www.neteye-blog.com/it/blog/tag/shutdown-automatizzatoit/)
- [procedura di shutdown@it](https://www.neteye-blog.com/it/blog/tag/procedura-di-shutdownit/)
- [Nagios](https://www.neteye-blog.com/de/blog/tag/nagios-de/)
- [script to schedule downtimes](https://www.neteye-blog.com/de/blog/tag/script-to-schedule-downtimes-de/)
- [Nagios](https://www.neteye-blog.com/it/blog/tag/nagios-it/)
- [script to schedule downtimes](https://www.neteye-blog.com/it/blog/tag/script-to-schedule-downtimes-it/)
- [DBA](https://www.neteye-blog.com/de/blog/tag/dba-de/)
- [Logon Triggers](https://www.neteye-blog.com/de/blog/tag/logon-triggers-de/)
- [Microsoft](https://www.neteye-blog.com/de/blog/tag/microsoft-de/)
- [SQL Server](https://www.neteye-blog.com/de/blog/tag/sql-server-de/)
- [DBA](https://www.neteye-blog.com/it/blog/tag/dba-it/)
- [Logon Triggers](https://www.neteye-blog.com/it/blog/tag/logon-triggers-it/)
- [Microsoft](https://www.neteye-blog.com/it/blog/tag/microsoft-it/)
- [SQL Server](https://www.neteye-blog.com/it/blog/tag/sql-server-it/)
- [testcase configurator](https://www.neteye-blog.com/de/blog/tag/testcase-configurator-de/)
- [web 2.0](https://www.neteye-blog.com/de/blog/tag/web-20-de/)
- [web service](https://www.neteye-blog.com/de/blog/tag/web-service-de/)
- [webinject](https://www.neteye-blog.com/de/blog/tag/webinject-de/)
- [Netzwerk@de](https://www.neteye-blog.com/de/blog/tag/netzwerkde/)
- [Latenz@de](https://www.neteye-blog.com/de/blog/tag/latenzde/)
- [hohe Latenz@de](https://www.neteye-blog.com/de/blog/tag/hohe-latenzde/)
- [Real User Experience@de](https://www.neteye-blog.com/de/blog/tag/real-user-experiencede-de/)
- [RUE](https://www.neteye-blog.com/de/blog/tag/rue-de/)
- [Latency@en](https://www.neteye-blog.com/blog/tag/latencyen/)
- [network latency@en](https://www.neteye-blog.com/blog/tag/network-latencyen/)
- [high latency@en](https://www.neteye-blog.com/blog/tag/high-latencyen/)
- [Real User Experience@en](https://www.neteye-blog.com/blog/tag/real-user-experienceen-2/)
- [RUE](https://www.neteye-blog.com/blog/tag/rue-2/)
- [network@en](https://www.neteye-blog.com/blog/tag/networken-2/)
- [Netzwerk@it](https://www.neteye-blog.com/it/blog/tag/netzwerkit/)
- [Latenz@it](https://www.neteye-blog.com/it/blog/tag/latenzit/)
- [hohe Latenz@it](https://www.neteye-blog.com/it/blog/tag/hohe-latenzit/)
- [Real User Experience@it](https://www.neteye-blog.com/it/blog/tag/real-user-experienceit-it/)
- [RUE@it](https://www.neteye-blog.com/it/blog/tag/rueit-it/)
- [Luca Deri](https://www.neteye-blog.com/de/blog/tag/luca-deri-de-2/)
- [netflow](https://www.neteye-blog.com/de/blog/tag/netflow-de/)
- [Luca Deri](https://www.neteye-blog.com/it/blog/tag/luca-deri-it-2/)
- [netflow](https://www.neteye-blog.com/it/blog/tag/netflow-it-2/)
- [safed](https://www.neteye-blog.com/de/blog/tag/safed-de/)
- [syslog](https://www.neteye-blog.com/de/blog/tag/syslog-de/)
- [syslog server](https://www.neteye-blog.com/de/blog/tag/syslog-server-de/)
- [syslogview](https://www.neteye-blog.com/de/blog/tag/syslogview-de/)
- [safed](https://www.neteye-blog.com/it/blog/tag/safed-it/)
- [syslog](https://www.neteye-blog.com/it/blog/tag/syslog-it/)
- [syslog server](https://www.neteye-blog.com/it/blog/tag/syslog-server-it/)
- [syslogview](https://www.neteye-blog.com/it/blog/tag/syslogview-it/)
- [syslog agent](https://www.neteye-blog.com/de/blog/tag/syslog-agent-de/)
- [syslog agent](https://www.neteye-blog.com/it/blog/tag/syslog-agent-it/)
- [Conference on OSS Monitoring](https://www.neteye-blog.com/de/blog/tag/conference-on-oss-monitoring-de/)
- [Hakin9](https://www.neteye-blog.com/de/blog/tag/hakin9-de/)
- [nBox](https://www.neteye-blog.com/de/blog/tag/nbox-de-2/)
- [Conference on OSS Monitoring](https://www.neteye-blog.com/it/blog/tag/conference-on-oss-monitoring-it/)
- [Hakin9](https://www.neteye-blog.com/it/blog/tag/hakin9-it/)
- [nBox](https://www.neteye-blog.com/it/blog/tag/nbox-it-2/)
- [nagios perfdata](https://www.neteye-blog.com/de/blog/tag/nagios-perfdata-de/)
- [perfdata](https://www.neteye-blog.com/de/blog/tag/perfdata-de/)
- [perfview](https://www.neteye-blog.com/de/blog/tag/perfview-de/)
- [pnp](https://www.neteye-blog.com/de/blog/tag/pnp-de/)
- [nagios perfdata](https://www.neteye-blog.com/it/blog/tag/nagios-perfdata-it/)
- [perfdata](https://www.neteye-blog.com/it/blog/tag/perfdata-it/)
- [perfview](https://www.neteye-blog.com/it/blog/tag/perfview-it/)
- [pnp](https://www.neteye-blog.com/it/blog/tag/pnp-it/)
- [Garante della Privacy](https://www.neteye-blog.com/de/blog/tag/garante-della-privacy-de/)
- [gateway](https://www.neteye-blog.com/de/blog/tag/gateway-de/)
- [NetEye](https://www.neteye-blog.com/de/blog/tag/neteye-de-2/)
- [sms](https://www.neteye-blog.com/de/blog/tag/sms-de/)
- [watchdog](https://www.neteye-blog.com/de/blog/tag/watchdog-de/)
- [ldap](https://www.neteye-blog.com/de/blog/tag/ldap-de/)
- [ldap search](https://www.neteye-blog.com/de/blog/tag/ldap-search-de/)
- [neteye nagios plugins](https://www.neteye-blog.com/de/blog/tag/neteye-nagios-plugins-de/)
- [ldap](https://www.neteye-blog.com/it/blog/tag/ldap-it-2/)
- [ldap search](https://www.neteye-blog.com/it/blog/tag/ldap-search-it/)
- [neteye nagios plugins](https://www.neteye-blog.com/it/blog/tag/neteye-nagios-plugins-it/)
- [System Administrators](https://www.neteye-blog.com/de/blog/tag/system-administrators-de/)
- [cacti template](https://www.neteye-blog.com/it/blog/tag/cacti-template-it/)
- [german server](https://www.neteye-blog.com/it/blog/tag/german-server-it/)
- [microsoft exchange](https://www.neteye-blog.com/it/blog/tag/microsoft-exchange-it/)
- [NetEye know-how](https://www.neteye-blog.com/de/blog/tag/neteye-know-how-de/)
- [NetEye seminar September](https://www.neteye-blog.com/de/blog/tag/neteye-seminar-september-de/)
- [NetEye training](https://www.neteye-blog.com/de/blog/tag/neteye-training-de-2/)
- [NetEye training feedback](https://www.neteye-blog.com/de/blog/tag/neteye-training-feedback-de/)
- [NetEye workshop](https://www.neteye-blog.com/de/blog/tag/neteye-workshop-de/)
- [System Management training](https://www.neteye-blog.com/de/blog/tag/system-management-training-de/)
- [Plugin](https://www.neteye-blog.com/de/blog/tag/plugin-de-2/)
- [SAP](https://www.neteye-blog.com/de/blog/tag/sap-de/)
- [Solution Manager](https://www.neteye-blog.com/de/blog/tag/solution-manager-de/)
- [CCMS](https://www.neteye-blog.com/de/blog/tag/ccms-de/)
- [Nagios SAP monitoring](https://www.neteye-blog.com/de/blog/tag/nagios-sap-monitoring-de/)
- [SAP solution manager integration to SAP](https://www.neteye-blog.com/de/blog/tag/sap-solution-manager-integration-to-sap-de/)
- [CCMS](https://www.neteye-blog.com/it/blog/tag/ccms-it/)
- [Nagios SAP monitoring](https://www.neteye-blog.com/it/blog/tag/nagios-sap-monitoring-it/)
- [SAP solution manager integration to SAP](https://www.neteye-blog.com/it/blog/tag/sap-solution-manager-integration-to-sap-it/)
- [3.3](https://www.neteye-blog.com/de/blog/tag/3-3-de/)
- [Action Launchpad](https://www.neteye-blog.com/de/blog/tag/action-launchpad-de/)
- [cacti](https://www.neteye-blog.com/de/blog/tag/cacti-de/)
- [IT System Management](https://www.neteye-blog.com/de/blog/tag/it-system-management-de-2/)
- [NagVis](https://www.neteye-blog.com/de/blog/tag/nagvis-de-2/)
- [OCS](https://www.neteye-blog.com/de/blog/tag/ocs-de-2/)
- [OTRS](https://www.neteye-blog.com/de/blog/tag/otrs-de/)
- [Real User Monitoring](https://www.neteye-blog.com/de/blog/tag/real-user-monitoring-de/)
- [release notes](https://www.neteye-blog.com/de/blog/tag/release-notes-de-2/)
- [Web App](https://www.neteye-blog.com/de/blog/tag/web-app-de/)
- [balancer](https://www.neteye-blog.com/de/blog/tag/balancer-de/)
- [load](https://www.neteye-blog.com/de/blog/tag/load-de/)
- [nprobe](https://www.neteye-blog.com/de/blog/tag/nprobe-de/)
- [rum](https://www.neteye-blog.com/de/blog/tag/rum-de-2/)
- [customer companies](https://www.neteye-blog.com/de/blog/tag/customer-companies-de/)
- [groups](https://www.neteye-blog.com/de/blog/tag/groups-de/)
- [opm](https://www.neteye-blog.com/de/blog/tag/opm-de/)
- [services](https://www.neteye-blog.com/de/blog/tag/services-de/)
- [customer companies](https://www.neteye-blog.com/it/blog/tag/customer-companies-it/)
- [groups](https://www.neteye-blog.com/it/blog/tag/groups-it/)
- [opm](https://www.neteye-blog.com/it/blog/tag/opm-it/)
- [OTRS](https://www.neteye-blog.com/it/blog/tag/otrs-it/)
- [services](https://www.neteye-blog.com/it/blog/tag/services-it/)
- [audit object access](https://www.neteye-blog.com/de/blog/tag/audit-object-access-de/)
- [File access monitor](https://www.neteye-blog.com/de/blog/tag/file-access-monitor-de/)
- [Safed Agent](https://www.neteye-blog.com/de/blog/tag/safed-agent-de/)
- [business process monitoring](https://www.neteye-blog.com/it/blog/tag/business-process-monitoring-it/)
- [critical business element](https://www.neteye-blog.com/it/blog/tag/critical-business-element-it/)
- [add-ons](https://www.neteye-blog.com/de/blog/tag/add-ons-de/)
- [drop down from DB](https://www.neteye-blog.com/de/blog/tag/drop-down-from-db-de/)
- [GLPI](https://www.neteye-blog.com/de/blog/tag/glpi-de-2/)
- [query](https://www.neteye-blog.com/de/blog/tag/query-de/)
- [text area from DB](https://www.neteye-blog.com/de/blog/tag/text-area-from-db-de/)
- [Jens Oliver Bothe](https://www.neteye-blog.com/de/blog/tag/jens-oliver-bothe-de/)
- [Nagios world conference europe](https://www.neteye-blog.com/de/blog/tag/nagios-world-conference-europe-de/)
- [Jens Oliver Bothe](https://www.neteye-blog.com/it/blog/tag/jens-oliver-bothe-it/)
- [Nagios world conference europe](https://www.neteye-blog.com/it/blog/tag/nagios-world-conference-europe-it-2/)
- [exend otrs](https://www.neteye-blog.com/it/blog/tag/exend-otrs-it/)
- [otrs plugins](https://www.neteye-blog.com/it/blog/tag/otrs-plugins-it/)
- [BC](https://www.neteye-blog.com/de/blog/tag/bc-de/)
- [CheckPoint](https://www.neteye-blog.com/de/blog/tag/checkpoint-de/)
- [Nokia](https://www.neteye-blog.com/de/blog/tag/nokia-de/)
- [BC](https://www.neteye-blog.com/it/blog/tag/bc-it/)
- [CheckPoint](https://www.neteye-blog.com/it/blog/tag/checkpoint-it/)
- [Nokia](https://www.neteye-blog.com/it/blog/tag/nokia-it/)
- [NetEye Sahi Sahipro webtest](https://www.neteye-blog.com/blog/tag/neteye-sahi-sahipro-webtest/)
- [neteye sahi sahipro webtest](https://www.neteye-blog.com/de/blog/tag/neteye-sahi-sahipro-webtest-de/)
- [neteye sahi sahipro webtest](https://www.neteye-blog.com/it/blog/tag/neteye-sahi-sahipro-webtest-it/)
- [user](https://www.neteye-blog.com/it/blog/tag/user/)
- [group](https://www.neteye-blog.com/it/blog/tag/group/)
- [Würth Phoenix@it](https://www.neteye-blog.com/it/blog/tag/wuerth-phoenixit/)
- [NetCla Challenge@it](https://www.neteye-blog.com/it/blog/tag/netcla-challengeit/)
- [EDML-PKDD@it](https://www.neteye-blog.com/it/blog/tag/edml-pkddit/)
- [ML@it](https://www.neteye-blog.com/it/blog/tag/mlit/)
- [Würth Phoenix@en](https://www.neteye-blog.com/blog/tag/wuerth-phoenixen/)
- [NetCla Challenge@en](https://www.neteye-blog.com/blog/tag/netcla-challengeen/)
- [EDML-PKDD@en](https://www.neteye-blog.com/blog/tag/edml-pkdden/)
- [ML@en](https://www.neteye-blog.com/blog/tag/mlen/)
- [NetCla Challenge@de](https://www.neteye-blog.com/de/blog/tag/netcla-challengede/)
- [EDML-PKDD@de](https://www.neteye-blog.com/de/blog/tag/edml-pkddde/)
- [ML@de](https://www.neteye-blog.com/de/blog/tag/mlde/)
- [Würth Phoenix@de](https://www.neteye-blog.com/de/blog/tag/wuerth-phoenixde/)
- [Ferrari](https://www.neteye-blog.com/it/blog/tag/ferrari/)
- [IT security](https://www.neteye-blog.com/blog/tag/it-security/)
- [Data Security](https://www.neteye-blog.com/blog/tag/data-security-2/)
- [South Tyrol Free Software Conference](https://www.neteye-blog.com/blog/tag/south-tyrol-free-software-conference/)
- [ML](https://www.neteye-blog.com/blog/tag/ml/)
- [Susanne Greiner](https://www.neteye-blog.com/blog/tag/susanne-greiner/)
- [Francesco Melchiori](https://www.neteye-blog.com/blog/tag/francesco-melchiori/)
- [Machine Learning and Advanced Statistics for Performance Monitoring](https://www.neteye-blog.com/blog/tag/machine-learning-and-advanced-statistics-for-performance-monitoring/)
- [End User Experience Monitoring for Cloud Applications](https://www.neteye-blog.com/blog/tag/end-user-experience-monitoring-for-cloud-applications/)
- [SFScon](https://www.neteye-blog.com/blog/tag/sfscon-2/)
- [Machine learning](https://www.neteye-blog.com/blog/tag/machine-learning-2/)
- [SFScon@de](https://www.neteye-blog.com/de/blog/tag/sfsconde/)
- [South Tyrol Free Software Conference@de](https://www.neteye-blog.com/de/blog/tag/south-tyrol-free-software-conferencede/)
- [Performance Monitoring@de](https://www.neteye-blog.com/de/blog/tag/performance-monitoringde/)
- [Susanne Greiner@de](https://www.neteye-blog.com/de/blog/tag/susanne-greinerde/)
- [Francesco Melchiori@de](https://www.neteye-blog.com/de/blog/tag/francesco-melchioride/)
- [Machine Learning and Advanced Statistics for Performance Monitoring@de](https://www.neteye-blog.com/de/blog/tag/machine-learning-and-advanced-statistics-for-performance-monitoringde/)
- [End User Experience Monitoring for Cloud Applications@de](https://www.neteye-blog.com/de/blog/tag/end-user-experience-monitoring-for-cloud-applicationsde/)
- [Alyvix](https://www.neteye-blog.com/de/blog/tag/alyvix-de/)
- [SFScon@it](https://www.neteye-blog.com/it/blog/tag/sfsconit/)
- [South Tyrol Free Software Conference@it](https://www.neteye-blog.com/it/blog/tag/south-tyrol-free-software-conferenceit/)
- [Performance Monitoring@it](https://www.neteye-blog.com/it/blog/tag/performance-monitoringit/)
- [Susanne Greiner@it](https://www.neteye-blog.com/it/blog/tag/susanne-greinerit/)
- [Francesco Melchiori@it](https://www.neteye-blog.com/it/blog/tag/francesco-melchioriit/)
- [Machine Learning and Advanced Statistics for Performance Monitoring@it](https://www.neteye-blog.com/it/blog/tag/machine-learning-and-advanced-statistics-for-performance-monitoringit/)
- [End User Experience Monitoring for Cloud Applications@it](https://www.neteye-blog.com/it/blog/tag/end-user-experience-monitoring-for-cloud-applicationsit/)
- [Alyvix](https://www.neteye-blog.com/it/blog/tag/alyvix-it/)
- [SOAP](https://www.neteye-blog.com/blog/tag/soap/)
- [Data exchange](https://www.neteye-blog.com/blog/tag/data-exchange/)
- [SOAP@de](https://www.neteye-blog.com/de/blog/tag/soapde/)
- [Datenaustausch@de](https://www.neteye-blog.com/de/blog/tag/datenaustauschde/)
- [SOAP@it](https://www.neteye-blog.com/it/blog/tag/soapit/)
- [scambio dati@it](https://www.neteye-blog.com/it/blog/tag/scambio-datiit/)
- [Simulation](https://www.neteye-blog.com/blog/tag/simulation/)
- [Automation](https://www.neteye-blog.com/blog/tag/automation/)
- [Recurring](https://www.neteye-blog.com/blog/tag/recurring/)
- [Anomaly Detection@de](https://www.neteye-blog.com/de/blog/tag/anomaly-detectionde/)
- [Performance Management@de](https://www.neteye-blog.com/de/blog/tag/performance-managementde/)
- [Alarme@de](https://www.neteye-blog.com/de/blog/tag/alarmede/)
- [Anomaly detection](https://www.neteye-blog.com/blog/tag/anomaly-detection/)
- [Performance Management](https://www.neteye-blog.com/blog/tag/performance-management/)
- [Alarms](https://www.neteye-blog.com/blog/tag/alarms/)
- [smart alarms](https://www.neteye-blog.com/blog/tag/smart-alarms/)
- [Anomaly detection@it](https://www.neteye-blog.com/it/blog/tag/anomaly-detectionit/)
- [Performance Management@it](https://www.neteye-blog.com/it/blog/tag/performance-managementit/)
- [allarmi@it](https://www.neteye-blog.com/it/blog/tag/allarmiit/)
- [allarmi intelligenti@it](https://www.neteye-blog.com/it/blog/tag/allarmi-intelligentiit/)
- [simulazioni@it](https://www.neteye-blog.com/it/blog/tag/simulazioniit/)
- [automazione@it](https://www.neteye-blog.com/it/blog/tag/automazioneit/)
- [operazioni ripetitive@it](https://www.neteye-blog.com/it/blog/tag/operazioni-ripetitiveit/)
- [Recurring Tasks](https://www.neteye-blog.com/blog/tag/recurring-tasks/)
- [Simulation@de](https://www.neteye-blog.com/de/blog/tag/simulationde/)
- [Automation@de](https://www.neteye-blog.com/de/blog/tag/automationde/)
- [wiederkehrende Tasks@de](https://www.neteye-blog.com/de/blog/tag/wiederkehrende-tasksde/)
- [GLPI@de](https://www.neteye-blog.com/de/blog/tag/glpide/)
- [Plugin@de](https://www.neteye-blog.com/de/blog/tag/pluginde/)
- [Tutorial@de](https://www.neteye-blog.com/de/blog/tag/tutorialde/)
- [Development@de](https://www.neteye-blog.com/de/blog/tag/developmentde/)
- [Tutorial](https://www.neteye-blog.com/blog/tag/tutorial/)
- [Development](https://www.neteye-blog.com/blog/tag/development/)
- [GLPI@it](https://www.neteye-blog.com/it/blog/tag/glpiit/)
- [Plugin@it](https://www.neteye-blog.com/it/blog/tag/pluginit/)
- [Tutorial@it](https://www.neteye-blog.com/it/blog/tag/tutorialit/)
- [Development@it](https://www.neteye-blog.com/it/blog/tag/developmentit/)
- [SAP monitoring](https://www.neteye-blog.com/de/blog/tag/sap-monitoring/)
- [check_sap_health](https://www.neteye-blog.com/de/blog/tag/check_sap_health/)
- [sapcontrol](https://www.neteye-blog.com/de/blog/tag/sapcontrol/)
- [EriZone 3.6@de](https://www.neteye-blog.com/de/blog/tag/erizone-3-6de/)
- [Ticket-Sequenzen@de](https://www.neteye-blog.com/de/blog/tag/ticket-sequenzende/)
- [Activity Management@de](https://www.neteye-blog.com/de/blog/tag/activity-managementde/)
- [EriZone 3.6@it](https://www.neteye-blog.com/it/blog/tag/erizone-3-6it/)
- [Activity Management@it](https://www.neteye-blog.com/it/blog/tag/activity-managementit/)
- [EriZone 3.6](https://www.neteye-blog.com/blog/tag/erizone-3-6/)
- [Activity Management](https://www.neteye-blog.com/blog/tag/activity-management/)
- [Agile](https://www.neteye-blog.com/blog/tag/agile/)
- [Agile Transformation](https://www.neteye-blog.com/blog/tag/agile-transformation/)
- [Agile@de](https://www.neteye-blog.com/de/blog/tag/agilede/)
- [Agile Transformation@de](https://www.neteye-blog.com/de/blog/tag/agile-transformationde/)
- [Agile@it](https://www.neteye-blog.com/it/blog/tag/agileit/)
- [Agile Transformation@it](https://www.neteye-blog.com/it/blog/tag/agile-transformationit/)
- [Logstash@de](https://www.neteye-blog.com/de/blog/tag/logstashde/)
- [Filter@de](https://www.neteye-blog.com/de/blog/tag/filterde/)
- [Elsatic-Stack@de](https://www.neteye-blog.com/de/blog/tag/elsatic-stackde/)
- [Log Management@de](https://www.neteye-blog.com/de/blog/tag/log-managementde-de/)
- [Logstash@it](https://www.neteye-blog.com/it/blog/tag/logstashit/)
- [Filter@it](https://www.neteye-blog.com/it/blog/tag/filterit/)
- [Elsatic-Stack@it](https://www.neteye-blog.com/it/blog/tag/elsatic-stackit/)
- [Log Management@it](https://www.neteye-blog.com/it/blog/tag/log-managementit-it/)
- [Filter](https://www.neteye-blog.com/blog/tag/filter/)
- [Elsatic-Stack](https://www.neteye-blog.com/blog/tag/elsatic-stack/)
- [Logstash](https://www.neteye-blog.com/blog/tag/logstash-2/)
- [Log Management](https://www.neteye-blog.com/blog/tag/log-management-2/)
- [Budget](https://www.neteye-blog.com/blog/tag/budget/)
- [Budget Management](https://www.neteye-blog.com/blog/tag/budget-management/)
- [Budget Templates](https://www.neteye-blog.com/blog/tag/budget-templates/)
- [Budget Splitting](https://www.neteye-blog.com/blog/tag/budget-splitting/)
- [ITIL@de](https://www.neteye-blog.com/de/blog/tag/itilde/)
- [Budget@de](https://www.neteye-blog.com/de/blog/tag/budgetde/)
- [Budget Management@de](https://www.neteye-blog.com/de/blog/tag/budget-managementde/)
- [Budget Templates@de](https://www.neteye-blog.com/de/blog/tag/budget-templatesde/)
- [Budget Splitting@de](https://www.neteye-blog.com/de/blog/tag/budget-splittingde/)
- [IT Service Management@de](https://www.neteye-blog.com/de/blog/tag/it-service-managementde-de/)
- [Budget Management@it](https://www.neteye-blog.com/it/blog/tag/budget-managementit/)
- [Budget Splitting@it](https://www.neteye-blog.com/it/blog/tag/budget-splittingit/)
- [Budget Templates@it](https://www.neteye-blog.com/it/blog/tag/budget-templatesit/)
- [Budget@it](https://www.neteye-blog.com/it/blog/tag/budgetit/)
- [ITIL@it](https://www.neteye-blog.com/it/blog/tag/itilit/)
- [IT Service Management@it](https://www.neteye-blog.com/it/blog/tag/it-service-managementit-it/)
- [Remote Banking](https://www.neteye-blog.com/blog/tag/remote-banking/)
- [Authentication](https://www.neteye-blog.com/blog/tag/authentication/)
- [Remote Banking@de](https://www.neteye-blog.com/de/blog/tag/remote-bankingde/)
- [Benutzererlebnis@de](https://www.neteye-blog.com/de/blog/tag/benutzererlebnisde/)
- [Anwendererfahrung@de](https://www.neteye-blog.com/de/blog/tag/anwendererfahrungde/)
- [End User Experience@de](https://www.neteye-blog.com/de/blog/tag/end-user-experiencede-de/)
- [Tickets@it](https://www.neteye-blog.com/it/blog/tag/ticketsit/)
- [Ticket View@it](https://www.neteye-blog.com/it/blog/tag/ticket-viewit/)
- [Company Ticket@it](https://www.neteye-blog.com/it/blog/tag/company-ticketit/)
- [ITSM@it](https://www.neteye-blog.com/it/blog/tag/itsmit-it/)
- [Tickets](https://www.neteye-blog.com/blog/tag/tickets/)
- [Ticket View](https://www.neteye-blog.com/blog/tag/ticket-view/)