• Planned

    2

    Forcepoint's Data Leak Prevention (DLP) AP-Data collector

    Forcepoint's Data Leak Prevention (DLP) AP-Data is well know in this space. With no Sentinel Collector, that's a significant blindspot of device and user activity in our ...

  • Planned

    5

    Forcepoint's web gateways AP-Web collector

    Forcepoint's web gateways AP-Web is well know in this space. With no Sentinel Collector, that's a significant blindspot of device and user activity in our network.

  • Planned

    6

    Carbon Black Enterprise Response collector

    Carbon Black Enterprise Response is well know in this space. With no Sentinel Collector, that's a significant blindspot of device and user activity in our network.

  • Votes

    7

    Enable Users to Toggle Case Sensitivity in Dynamic Lists

    When leveraging values in dynamic lists, Sentinel currently enforces case sensitivity when using those values in correlation rules. In some cases, this can be misleading ...

  • Votes

    8

    Sentinel Windows Agent Should Handle Rotating Application Logs

    Currently, the file connector has the capability to process rotating logs but that requires the ability to set up shares for Sentinel to access those logs remotely or ...

  • Votes

    2

    Ability to Export\Import Routing Rules

    In some environments there may be many routing rules configured in Sentinel to do things like forward events via Sentinel link, tag events, or forward to another syslog ...

  • Votes

    4

    Use Email lists in correlation events

    If you have multiple recipients for correlation event alarms, you have to create from CC's action manager an action for each recipient or add multiple addresses to the ...

  • Votes

    2

    Correlation dropped error reporter

    It should be configurable per event source if you want it to alert if the events don't come to Sentinel in the correct time window. At the moment the system writes these ...

  • Votes

    10

    Postgres collector

    Have the ability to collect, store, and read postgres logs via Sentinel. Working with the military, we have a requirement to store audit and database logs in 1 location. ...

  • Votes

    6

    To support report for ISO 27002, year 2013.

    Current version is ISO 27002, year 2005. When sentinel can support 2013?

  • Votes

    2

    iSeries agent for Sentinel Agent Manager 8.0

    Request to build iSeries agent for Sentinel Agent Manager 8.0

  • Votes

    3

    VMware NSX Collector for Sentinel

    There is no supported collector for VMware NSX in Sentinel. Create a collector that supports the VMware NSX platform/technology. VMware's Network virtualization ...

  • Votes

    6

    WTMP Agent RPM

    Worlking at Worldline in a Sentinel project. Worldline has already a Linuy based "Siem" for Linux events, that the buils on Linux scripting. Now they build a Sentinel ...

  • Votes

    8

    Customisation WebUI

    Like in other Soltware solutions there should be a possibility to customise the Login Page of Sentinel. There should be two things: - customize the login page with the ...

  • Votes

    3

    bintec Collector

    A collector for bintec router/VPN devices would be fine

  • Votes

    5

    Dashboard / Visualization from other Sentine Server

    I need an option to use the Data Federation not only on searches and Reports, but also on Dashboards and Visualization. This is very important for scalability issues to ...

  • Votes

    1

    Option to Stopp Collector and delete all incoming Events

    When a collector ist stopped the incoming events are stored (PageFiles) and a filesystem can be filled with this files. So an second option would be very usefull: The ...

  • Votes

    4

    Export configuration in clear text

    Customer HELAB need a tool to export the complete configuration in clear text or pdf to have a documentation of their system. This is needed because of regulation ...

  • Votes

    5

    Agent Manager Agent shoud send Heartbeat Events to detekt that it is ...

    There should be a possiblity to detect that an Agent Manager Agent is running independent from sending events to Sentinel. I think one possibilty would be to have a ...

  • Votes

    6

    Read only user

    There should be a posibility to create a read omly user in Sentinel. This is important for Auditors to check the system. This user should have the rights to see ...