-
Completed
1
Easy way to integrate with threat reputation services and data
Sentinel needs a way for the administrator to configure integrations to threat reputation sources. These sources typically supply IP addresses with threat scores to let ...
Comments (0) | by: Ted E. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Completed
5
STIX/TAXII data ingestion
Be able to take in STIX/TAXII data by automate-able means and map fields to such as MD5 to a MD5 field in sentinel. With the current feeds model, you typically import ...
Comments (3) | by: cameron s. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Completed
1
New correlation rule operator: Not match subnet
Hi, Currently in Sentinel it is quite impossible to create whitelist correlation rules with TargetIP. We have a use case that requires if TargetIP does not match certain ...
Comments (2) | by: Timo S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Completed
3
AD parser should parse "Service Name" from event "A Kerberos service ...
Hi, I think AD parser need an enhancement. It should parser "Service Name" from event "A Kerberos service ticket was requested". Usually that field contains an account ...
Comments (2) | by: Timo S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Completed
2
Fortianalyzer collector
Many Prospects and Customers uses Fortianalyzer to centralize events from Firewall. The actual collector is not able to read events from FortiAnalyzer
Comments (1) | by: Ted E. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations