• Votes

    7

    Configurable Alarm View

    there is only a non-configurable Alarm view. It would be great to have it configurabel to have other/more table rows. e.g. in the Alarm View list it would very helpful ...

  • Votes

    3

    Change Guardian Agent install

    In CG version 5.1 there is no more build in option to do a agent install via software distribution software. There is a cool solution: ...

  • Votes

    5

    EVT/EVTX file via Agent Manager Agent

    In agent manager you can read a Single Line Log. It would be a great enhancement to read also evt/evtx files, because there are several software products that write ...

  • Votes

    1

    Proxy Setting in Sentinel

    There is no "offical" proxy setting in Sentinel. There should be a configuration option in the GUI to setup Sentinel to use a Proxy also with user/password and this ...

  • Votes

    3

    Data Synchronization enhancement

    Enhance the data synchronization feature to allow the user to specify a start and finish date. Additionally, allow the user to kick-off the job on a specific date/time ...

  • Votes

    2

    Correlation Rules Firing - Scheduled Email Alerts

    The ability to have emails from correlation rule event firing to go to a different (or additional) email address during a certain time period would be invaluable. e..g ...

  • Votes

    3

    Improve NoDataAlert

    Is there a way to improve this event? Currently it gets logged as a generic 'Internal' event and all of the data is in the message field with none of it parsed out. ...

  • Votes

    1

    General users should be able to view Health Status Info

    General users should be able to view but not edit or modify the following collection - Overview & Event sources Storage - Health, report jobs, search jobs When ...

  • Votes

    3

    Have a deployment or installation guide specific for AWS

    It would be great to have a specific deployment or installation guide with all steps needed to be followed to install Sentinel on AWS. Today many customers are moving ...

  • Votes

    5

    Update SSL Certificates

    Please either allow or build in a function to allow the update of an SSL certificate issued from either a third party CA or an internal CA for website functionality. In ...

  • Votes

    1

    IBM zOS Collector

    IBM zOS mainframe collector to help parse and correlate the logs sent to sentinel. This type of collector would help translate RACF logs and Type80 send logs in CEF ...

  • Votes

    7

    CheckPoint LEA Connector missing critical pieces of information

    I've spotted some flaws on CheckPoint collector. I'm giving one example from blade "URL Filtering" in CheckPoint These fields are : appi_name, matched_category, ...

  • Votes

    1

    Customer needs Microsoft Radius data to be parsed correctly.

    A customer has Microsoft Radius server and they need to be able to search on the mac address. Unfortunately all other systems use a format like this: 00:AA:00:12:34:56, ...

  • Votes

    3

    CG reports (.csv) should print events line by line without any report ...

    When the CG reports are generated, the output of the report with the selected events will be displayed in the proper report specific format. Whereas, when the events ...

  • Planned

    4

    Support security features provided by SNMP v3

    Authentication in SNMP v1 and v2 is nothing but community string sent in clear text. SNMPv3 does not use community strings, but uses password based authentication and ...

  • Votes

    2

    389 Directory Server plugins

    The goal is to parse 389 Directory Server logs

  • Votes

    1

    it could be interesting for performance pupose to deactivate graphical ...

    when the number of nodes is too high, the graphical view can take time before automatic deactivation (once there are more than 5000 nodes, the graph view will ...

  • Votes

    4

    Alphabetical ordering of actions in action manager

    it is sometimes difficult to find an action in Action manager. could be interesting to order alphabeticaly

  • Votes

    3

    Generating Security Intelligence Graph with Custom Field for Y-axis

    Currently Sentinel able to generates security intelligence graph using event per seconds as Y-axis. Suggest to enable graph generating with custom integer as Y-axis (as ...

  • Votes

    1

    Event Export Filters

    When exporting the Events from a Search query, there is only "Select All"/"Clear All". More often than not, a user would export the same fields for queries they run ...