• Votes

    18

    View single raw data event in the WebUI

    Sometimes I miss the ability to quickly preview a single raw data (event) related to the event I want to check. Customers are asking for this too.

  • Votes

    17

    Customize Email-Alert fields

    Situation: in the js-email-alert function you can choose between "Important Data", "All-Data", and "Minimal Data". If you use CustomVariable or need some other variables ...

  • Planned

    16

    Export PDF reports with password protection in Sentinel

    The possibility to export reports (CSV, PDF or other format) with password protection to increase security and sending by email.

  • Votes

    14

    EPS level alert, monitoring and visualization

    Currently Sentinel does not have any method to monitor EPS levels properly. It would good to have some way to monitor EPS levels and have an alert if e.g. system ...

  • Planned

    14

    Run correlation rules on history data

    It would be nice to have the ability to run correlation rule againt history data and let the rule fire alerts. Now it is only possible to test the rule, but not to have ...

  • Votes

    13

    Need Collector Plugin for Splunk

    Hi, I have an issues when Splunk SIEM forwards the logs towards Sentinel Collector. I received the logs coming from 1 node which have multiple logs per devices(Palo Alto ...

  • Votes

    13

    Multiple roles for users

    Current user role allocation supports well administration, but how to allocate rights easily in user environment (for users that only go there to search events and run ...

  • Planned

    12

    Time scheduling for Sentinel connectors

    Connected systems like databases or others have maintenance times during the night or weekend, when they are shut down. Installed connectors (for DB2 for instance) then ...

  • Planned

    12

    Add ability to WECS to read from newer "Vista-style" Event Logs

    Sentinel lacks an ability that many of your leading competitors offer to grab events from the newer "Windows Vista" style Event Logs on all new Windows operating systems ...

  • Votes

    12

    Certify Sentinel for High availability on Red Hat Linux

    High availability/Clustering for Sentinel is only supported and certified on SLES or SLES appliances. There is no supported high availability option available for ...

  • Votes

    11

    Need Collector Plugin for Event Source from SentinelOne product

    Hi, I have forwarded log from SentinelOne device via syslog message. The problem is, the Event Source naming display incorrectly then it should be. It produces multiple ...

  • Votes

    10

    Cyber Ark Collector

    I would like to request a collector for Cyber Ark. I have seen this asked by multiple customers.

  • Votes

    10

    make searching for "lateral movement" easier in the WebUI

    I really like the feature of being able clicking on fields to add a new criteria to the search query. When analyzing events, I often need to find similar events and do a ...

  • Votes

    10

    Postgres collector

    Have the ability to collect, store, and read postgres logs via Sentinel. Working with the military, we have a requirement to store audit and database logs in 1 location. ...

  • Votes

    10

    Make Sentinel 8 CentOS 7 "compatible"

    Hi, Sometimes I want to install Sentinel to CentOS (e.g no hassle with licensing in labs). Sentinel 7.4 series run fine in Centos 6.x. Would developers make Sentinel 8 ...

  • Planned

    10

    Support for Oracle Service names instead of SID

    A company may standardize on using service names because when using Oracle RAC. The Sentinel Data Synchronization to Oracle feature is only possible by using the SID of ...

  • Votes

    9

    pseudonymization of user identifiers

    Data privacy laws and regulations in certain areas prohibit the use of subject’s real names or identifiers which can easily be attributed to a subject (e.g. account names ...

  • Votes

    9

    Search results sorting

    Currenty search results are sorted descending according to Event Time. But when two same events have the Event Time parameter same, the order of these events is wrong. ...

  • Votes

    9

    CM backup

    Customers are asking why we do not have official backup/restore script or other CLI method to export/import CM configuration.

  • Votes

    8

    Sentinel Windows Agent Should Handle Rotating Application Logs

    Currently, the file connector has the capability to process rotating logs but that requires the ability to set up shares for Sentinel to access those logs remotely or ...