• Completed

    1

    Easy way to integrate with threat reputation services and data

    Sentinel needs a way for the administrator to configure integrations to threat reputation sources. These sources typically supply IP addresses with threat scores to let ...

  • Completed

    5

    STIX/TAXII data ingestion

    Be able to take in STIX/TAXII data by automate-able means and map fields to such as MD5 to a MD5 field in sentinel. With the current feeds model, you typically import ...

  • Completed

    1

    New correlation rule operator: Not match subnet

    Hi, Currently in Sentinel it is quite impossible to create whitelist correlation rules with TargetIP. We have a use case that requires if TargetIP does not match certain ...

  • Completed

    3

    AD parser should parse "Service Name" from event "A Kerberos service ...

    Hi, I think AD parser need an enhancement. It should parser "Service Name" from event "A Kerberos service ticket was requested". Usually that field contains an account ...

  • Completed

    2

    Fortianalyzer collector

    Many Prospects and Customers uses Fortianalyzer to centralize events from Firewall. The actual collector is not able to read events from FortiAnalyzer