• Votes

    3

    Microsoft ATA

    Create and release to test a new Microsoft ATA collector plugin for Sentinel 7/8 to integrate with leading edge threat analytics platforms

  • Votes

    3

    Data Synchronization enhancement

    Enhance the data synchronization feature to allow the user to specify a start and finish date. Additionally, allow the user to kick-off the job on a specific date/time ...

  • Votes

    3

    Add the ID field to the message logs under all information

    I think it would beneficial to take the information from the TIPS area in sentinel and populate it in the details of the logs when you select all. Add the ID tag to the ...

  • Planned

    3

    Meraki Firewall Collector Plugin development

    The Cisco Meraki proprietary packet processing engine analyzes network traffic up to and including layer 7. Cisco Meraki's next generation firewall controls evasive, ...

  • Votes

    3

    authorization for actions

    Allow actions to have access controls and be aware of the user running the action. I may have users in role 1 that I with to allow to disable switch ports through an ...

  • Votes

    2

    syslog connector to route events based on CEF Vendor Product

    Add an an additional “CEFVendorProduct” Package Policy, which works just like “Application ID” but uses the two CEF header fields for routing decision. The precedence of ...

  • Votes

    2

    Enable file connector to read compressed files

    Originally tracked in bug: https://bugzilla.netiq.com/show_bug.cgi?id=779043 The customer's Blue Coat proxy appliance stores logs to disk. If they grow to more then 10 ...

  • Votes

    2

    Bulk plugin download

    Updating and downloading plugins is a time consuming and manual process. It is especially difficult as you need to download each one individually. It is also challenging ...

  • Votes

    2

    support pure-ftpd access log

    I hope to be able to target pure-ftp log to parsing, because many of my customers use novell ftp to access nss volume, and novell ftp uses pure-ftpd service, so audit ...

  • Votes

    2

    Ability to Export\Import Routing Rules

    In some environments there may be many routing rules configured in Sentinel to do things like forward events via Sentinel link, tag events, or forward to another syslog ...

  • Votes

    2

    CheckPoint R80.xx: LogExporter Collector is needed

    CheckPoint has migrated from LEA-protocol to LogExporter (syslog) to integrate with SIEM products. At the same time the log event format has changed. Therefore a new ...

  • Votes

    2

    Sentinel 8.2.2.0 database upgrade failure due to older orphaned jar ...

    During an upgrade from Sentinel 8.2.0.0 the database upgrade failed, after the main Sentinel upgrade failed. After investigation, it was determined that there were some ...

  • Votes

    2

    Extend windows event logs possibilities in SAM

    It could be interesting to extend windows logs (currently limited to secuity ad system logs) to others services/software like sysmon logs; powershell logs, RDP logs in ...

  • Votes

    2

    Adding comments/notes to an Event Routing Rule

    Our customer would like to add note (or comment) to an Event Routing Rule, but currently it is not possible. Please, add this new field to Sentinel

  • Votes

    2

    Certify the use of BigIP together with Sentinel, SAM and UAM

    Because a SAM Central Computer only can connect to one Collector Manager. It would be nice if it was supported adding a BigIP between SAMservers and Collector Managers. ...

  • Votes

    2

    Correlation dropped error reporter

    It should be configurable per event source if you want it to alert if the events don't come to Sentinel in the correct time window. At the moment the system writes these ...

  • Votes

    2

    Prevent transmission of report/e-mail when the report is blank

    We need option to prevent the transmission of e-mail alert when the scheduled report generated is blank in reporting module

  • Votes

    2

    Request for incremental backup options in the backup script for ...

    Provide the backup script the ability to create an differential (incremental) update of the backup since time the last backup was performed. This reduces the time and ...

  • Votes

    2

    Detect anomaly's in user logon activity

    The ability to detect anomaly's in user logon activity, ie logging on to a system they have never used before.

  • Votes

    2

    Palo Alto NGFW

    Today, the operation system version of the Palo Alto NGFW is PAN-OS 8.1. However, the version we support is 6.0 in https://www.netiq.com/support/sentinel/plugins/ Do we ...