• Votes

    3

    CG reports (.csv) should print events line by line without any report ...

    When the CG reports are generated, the output of the report with the selected events will be displayed in the proper report specific format. Whereas, when the events ...

  • Planned

    4

    Support security features provided by SNMP v3

    Authentication in SNMP v1 and v2 is nothing but community string sent in clear text. SNMPv3 does not use community strings, but uses password based authentication and ...

  • Votes

    2

    389 Directory Server plugins

    The goal is to parse 389 Directory Server logs

  • Votes

    1

    it could be interesting for performance pupose to deactivate graphical ...

    when the number of nodes is too high, the graphical view can take time before automatic deactivation (once there are more than 5000 nodes, the graph view will ...

  • Votes

    4

    Alphabetical ordering of actions in action manager

    it is sometimes difficult to find an action in Action manager. could be interesting to order alphabeticaly

  • Votes

    3

    Generating Security Intelligence Graph with Custom Field for Y-axis

    Currently Sentinel able to generates security intelligence graph using event per seconds as Y-axis. Suggest to enable graph generating with custom integer as Y-axis (as ...

  • Votes

    1

    Event Export Filters

    When exporting the Events from a Search query, there is only "Select All"/"Clear All". More often than not, a user would export the same fields for queries they run ...

  • Votes

    2

    Adding comments/notes to an Event Routing Rule

    Our customer would like to add note (or comment) to an Event Routing Rule, but currently it is not possible. Please, add this new field to Sentinel

  • Votes

    5

    Aruba Mobility Controller with younger OS

    We downloaded the latest SmartConnector package (ArcSight-7.11.0.8139.0-Connector-Linux64.bin). Customer would like to collect data (with Aruba SC) from their Aruba ...

  • Votes

    6

    Ability to recreate an empty database (Postgres, mongo)

    Normally running the 'backup_util.sh' is the part of the daily routine to make a backup about the required components (mainly the config, SI, alerts, etc...) In a case ...

  • Votes

    5

    Need some more granularity for user permissions

    There are some features/functions, which only accessible for "super-users", e.g. creating/maintaining Actions, configuring Storage, etc... Our main issue currently, how ...

  • Votes

    1

    file connector

    In Event Source Management, when processing a file with the file connector, once processing begins under connection information, it states "Reading file..." this is good ...

  • Votes

    2

    Certify the use of BigIP together with Sentinel, SAM and UAM

    Because a SAM Central Computer only can connect to one Collector Manager. It would be nice if it was supported adding a BigIP between SAMservers and Collector Managers. ...

  • Votes

    5

    Import event sources

    We have more than 200 servers which need to be created in multiple collectors. It would be great to import them via a CSV.

  • Votes

    3

    Configure connection when cloning event source

    When cloning an event source, it will keep the connection to the source server, which is useless. When we create a template event source, which we would like to apply to ...

  • Votes

    3

    Disable dashboard

    It would be great to disable the dashboard or have an automated forward to the main interface. Nobody of us is using the dashboard, its always an additional click which ...

  • Votes

    2

    Send full message field when fired by Correlation Rules

    Correlation Rules: Actions -> Send Email (Full Customization of all fields) Normally, the message field is not recommended to be used with Correlation Rules due to the ...

  • Votes

    2

    Prevent transmission of report/e-mail when the report is blank

    We need option to prevent the transmission of e-mail alert when the scheduled report generated is blank in reporting module

  • Votes

    5

    Tenant based roles to allow to run remote searches or manage ...

    Customer reported that they are planning to deploy a multi tenant Sentinel system. They would like to use multi-tier architecture, where they have multiple Sentinel for ...

  • Votes

    1

    Allow to comment on each event in an alert separately

    In some cases to differentiate events that are attached to an alert analysts have to document some information for each event separately (i.e. each event having different ...