-
Notifications
You must be signed in to change notification settings - Fork 197
Optimize profiler #1743
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
AlyaGomaa
wants to merge
153
commits into
develop
Choose a base branch
from
alya/fix-latency/optimize_profiler
base: develop
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Optimize profiler #1743
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
…of in each worker
…econd of input and profiler
- Add comprehensive dataset documentation with two workflows: - Summarization workflow (event summaries and behavior analysis) - Risk analysis workflow (root cause and risk assessment) - Add detailed workflow implementation guides for both pipelines - Add LLM evaluation framework and results documentation - Add DAG parser technical reference documentation - Organize all documentation under new "Datasets & LLM Training" section in Immune.md - Fix broken cross-references between documentation files - Preserve legacy documentation for historical reference
- Create 'Security & Network Configuration' section for ARP and traffic routing docs - These were incorrectly nested under 'Datasets & LLM Training' section
… before Datasets - Security & Network Configuration section now appears before Datasets & LLM Training - This provides better logical flow in the documentation navigation
Immune dataset documentation
…file in redis since it's no longer used in slips
…, they don't do diff things
…shmap to be able to access their dports later by the portscan modules
…le to import it anywhere (in the db and in the modules that may need it)
…ortscan detectors
…rator of profiles and tws
…ections to use it by the db and the modules
…ble to retreive the needed info in O(1)
…redis channel (new_zeek_fields_line) the recognized indices so other profiler workers know about it
…' line processors from the db instead of the channel because msgs published in that channel won't be accessible by the new worker
…attack starttime when setting an evidence
…r_module to slips_utils to be used by all modules
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Closes #1738