• Votes

    3

    Disable dashboard

    It would be great to disable the dashboard or have an automated forward to the main interface. Nobody of us is using the dashboard, its always an additional click which ...

  • Votes

    2

    Send full message field when fired by Correlation Rules

    Correlation Rules: Actions -> Send Email (Full Customization of all fields) Normally, the message field is not recommended to be used with Correlation Rules due to the ...

  • Votes

    2

    Prevent transmission of report/e-mail when the report is blank

    We need option to prevent the transmission of e-mail alert when the scheduled report generated is blank in reporting module

  • Votes

    5

    Tenant based roles to allow to run remote searches or manage ...

    Customer reported that they are planning to deploy a multi tenant Sentinel system. They would like to use multi-tier architecture, where they have multiple Sentinel for ...

  • Votes

    1

    Allow to comment on each event in an alert separately

    In some cases to differentiate events that are attached to an alert analysts have to document some information for each event separately (i.e. each event having different ...

  • Votes

    12

    Certify Sentinel for High availability on Red Hat Linux

    High availability/Clustering for Sentinel is only supported and certified on SLES or SLES appliances. There is no supported high availability option available for ...

  • Votes

    5

    Sentinel does not provide an explicit logout message

    Please provide the following enhancement to the NetIQ Sentinel web interface: An explicit logout message indicating that the authenticated communications session has been ...

  • Votes

    2

    Extend windows event logs possibilities in SAM

    It could be interesting to extend windows logs (currently limited to secuity ad system logs) to others services/software like sysmon logs; powershell logs, RDP logs in ...

  • Votes

    2

    Palo Alto NGFW

    Today, the operation system version of the Palo Alto NGFW is PAN-OS 8.1. However, the version we support is 6.0 in https://www.netiq.com/support/sentinel/plugins/ Do we ...

  • Votes

    3

    Appliance based Elastic Nodes for event visualisation

    The requirement to build your own elastic nodes to provide event visualisation, means this is not a full product, this then requires additional Server OS licencing. All ...

  • Votes

    1

    Limit concurrent user sessions

    Need option to limit concurrent user sessions in Sentinel Client Request

  • Votes

    1

    Disable User - Improved

    Current Process: Edit User Disable user account Save ERROR Save user failed ERROR Passwords don't match *Have to set password just to disable. Why? Proposed Process 1: ...

  • Votes

    1

    User Inactivity Timeout

    Need User Inactivity Timeout option. Session timeout exists but will kill session while user is actively working. GUI 'Security' section preferred.

  • Votes

    1

    ArcSight CEF CustomFieldMap

    Need to include CEF Custom String and Number Labels out of the box. Labels are different for each product. ~~Sentinel Event Field~~,~~Input Record Field~~ ...

  • Votes

    1

    Central Computer Temporary Storage Max

    Increase maximum from 500 MB (500000 KB) to something much larger

  • Votes

    1

    Solution Designer - Bulk Copy

    Need a method to capture all custom content in single click. Currently have to copy one item at a time. Group by group. Very time consuming. Option A: Ctrl/Shift+Left ...

  • Votes

    3

    Configuring Sentinel Web Console Settings From Red Hat/RestAPI

    Please provide the means to automate or configure the following Sentinel Web Console settings via Red Hat or RestAPI: -Secondary Storage location -Primary Storage ...

  • Votes

    5

    Make correlation event retention length configurable separately from ...

    Provide the means to configure correlation event retention to a different period than data event retention in order to prevent the PostgreSQL from growing too large.

  • Votes

    1

    Fix your post 8.2.2.0 installer to require 4 CPUs

    Sentinel 8.2.2.0 will not successfully install on Linux without 4 cores assigned to the box. I recently spent around a week trying to get a clean 8.2.2.0 install to work ...

  • Votes

    4

    Fix your post 8.2.2.0 installer to require 4 CPUs

    Sentinel 8.2.2.0 will not successfully install on Linux without 4 cores assigned to the box. I recently spent around a week trying to get a clean 8.2.2.0 install to work ...