• Votes

    3

    Support for RELP (Reliable Event Logging Protocol)

    One of our customer was trying to use rsyslog with Relp to securly send events to Sentinel. Since Relp seems to become a quite common it would be a good thing if Sentinel ...

  • Votes

    3

    Microsoft ATA

    Create and release to test a new Microsoft ATA collector plugin for Sentinel 7/8 to integrate with leading edge threat analytics platforms

  • Planned

    10

    Support for Oracle Service names instead of SID

    A company may standardize on using service names because when using Oracle RAC. The Sentinel Data Synchronization to Oracle feature is only possible by using the SID of ...

  • Votes

    0

    Plugin for IBM TDS

    We work with IBM TDS here and we would like collect these logs

  • Votes

    3

    Sentinel plugin for Log4j

    It is a popular implementation to log application data

  • Votes

    1

    Symantec DPL Connector

    A connector to connect Symantec Data Loss Protection is urgently needed. Clients have requested it.

  • Votes

    2

    support pure-ftpd access log

    I hope to be able to target pure-ftp log to parsing, because many of my customers use novell ftp to access nss volume, and novell ftp uses pure-ftpd service, so audit ...

  • Planned

    4

    Sentinel User Permissions for Web Interface and REST API procedure ...

    A recent investigation into the automation of creating new event source objects within Sentinel via external sources has revealed that the permissions necessary to invoke ...

  • Planned

    12

    Add ability to WECS to read from newer "Vista-style" Event Logs

    Sentinel lacks an ability that many of your leading competitors offer to grab events from the newer "Windows Vista" style Event Logs on all new Windows operating systems ...

  • Planned

    7

    Mechanism to customize, per event type, fields of interest that ...

    Sentinel needs a means to get common-interest fields to automatically show-up when “More” is selected on an individual event or “Show more details” is ...

  • Planned

    6

    Airwatch Collector

    AirWatch is probably one of if not "the" top MDM solutions on the market today. With no Sentinel Collector, that's a significant blindspot of device and user activity in ...

  • Planned

    12

    Time scheduling for Sentinel connectors

    Connected systems like databases or others have maintenance times during the night or weekend, when they are shut down. Installed connectors (for DB2 for instance) then ...

  • Votes

    4

    Syslog over TCP needs to recognize NULL characters as message ...

    Some products like Juniper Netscreen use NULL character as a Syslog message delimiter. Our Syslog connector does not treat NULL char as a delimiter and as a result, ...

  • Votes

    6

    Normalize severity against a standard severity scale rather than ...

    Different vendors attribute different severities to certain types of events based on their own internal way of looking at the data. When Sentinel sets the severity, it ...

  • Votes

    6

    Support for eStreamer via Cisco nCore client

    Cisco is in the process of releasing a client for collecting via eStreamer that is supported and maintained by them rather than asking their consumers to write custom ...

  • Votes

    7

    VMWare vCenter logs

    vCenter makes most of it's logging available in the Windows Event log for software-based installations, and via Syslog for appliance (VCSA) installations, at least from ...

  • Votes

    0

    Enable file connector to retain delimiter characters

    Originally tracked as in Bug 708645: https://bugzilla.netiq.com/show_bug.cgi?id=708645 The file connector chops off the record delimiter. While this is ok for line ...

  • Votes

    1

    Expose important rotating file information from the file connector

    Originally tracked in Bug https://bugzilla.netiq.com/show_bug.cgi?id=779084 The RotatingFile event currently only uses the message field (e.g. "Rotating file from ...

  • Votes

    2

    Enable file connector to read compressed files

    Originally tracked in bug: https://bugzilla.netiq.com/show_bug.cgi?id=779043 The customer's Blue Coat proxy appliance stores logs to disk. If they grow to more then 10 ...

  • Votes

    0

    Enable file connector to be extended with end user code

    Originally tracked as bug: https://bugzilla.netiq.com/show_bug.cgi?id=708647 The Identity Manager Drivers for SOAP and Delimted Text provide a number of extensions ...