• Votes

    2

    Sentinel should have the capailty to add a tag within the agent ...

    Sentinel should have the capability to add a tag to devices and groups within the agent manager sentinel GUI Currently you can only add a tag in event sources. It would ...

  • Votes

    2

    brocade collector

    Sentinel does not currently have a brocade collector plugin.

  • Votes

    2

    iSeries agent for Sentinel Agent Manager 8.0

    Request to build iSeries agent for Sentinel Agent Manager 8.0

  • Votes

    2

    Correlation Rules Firing - Scheduled Email Alerts

    The ability to have emails from correlation rule event firing to go to a different (or additional) email address during a certain time period would be invaluable. e..g ...

  • Votes

    2

    Kafka connector

    Our client has centralized data storage created on Hadoop. They are transferring data from self designed applications through Apache Kafka. It would be nice to have ...

  • Votes

    2

    Supporting Syslog TCP with Octet Counting Framing

    This framing mode is yet to have a wide acceptance. Also, the latest rsyslog does have an optional mode for this --> ...

  • Planned

    2

    Forcepoint's Data Leak Prevention (DLP) AP-Data collector

    Forcepoint's Data Leak Prevention (DLP) AP-Data is well know in this space. With no Sentinel Collector, that's a significant blindspot of device and user activity in our ...

  • Votes

    2

    Use Delta RPMs for Appliance

    The size of the current RPMs is very significant, both to download/bandwidth and the temporary disk requirements. This is extremely slow and often unreliable when ...

  • Votes

    2

    Integrate with Serena tools for IT service management

    Companies who handle their ITIL processes using Serena want to do the same for their incident response process. The "Computer Security Incident Response Plan Management" ...

  • Votes

    2

    Email zipped events in notification when correlation rule hits.

    We need the events to be zipped in mail notification as it becomes easier to analyze events if there are too many events.

  • Planned

    2

    Forwarding of netflow data

    The ability to forward raw netflow data using spoofed or non spoofed source address. Allowing additional tools to get flow data

  • Votes

    1

    Solution Designer - Bulk Copy

    Need a method to capture all custom content in single click. Currently have to copy one item at a time. Group by group. Very time consuming. Option A: Ctrl/Shift+Left ...

  • Votes

    1

    Proxy Setting in Sentinel

    There is no "offical" proxy setting in Sentinel. There should be a configuration option in the GUI to setup Sentinel to use a Proxy also with user/password and this ...

  • Votes

    1

    Central Computer Temporary Storage Max

    Increase maximum from 500 MB (500000 KB) to something much larger

  • Votes

    1

    Integrate the 9443 console certificate mechanism of the Sentinel 8.2.0 ...

    Appliances created with SUSE studio have a security certificate mechanism integrated into the port 9443 administration console. This mechanism greatly simplifies the ...

  • Votes

    1

    Fix your post 8.2.2.0 installer to require 4 CPUs

    Sentinel 8.2.2.0 will not successfully install on Linux without 4 cores assigned to the box. I recently spent around a week trying to get a clean 8.2.2.0 install to work ...

  • Votes

    1

    Option to Stopp Collector and delete all incoming Events

    When a collector ist stopped the incoming events are stored (PageFiles) and a filesystem can be filled with this files. So an second option would be very usefull: The ...

  • Votes

    1

    Read SAP Security Audit Log via RSAU_API_GET_ALERTS

    From SAP Note 2191612 - FAQ | Use of Security Audit Log as of SAP NetWeaver 7.50 42. Can recorded events be promptly transferred to a central alert cockpit? The RFC ...

  • Votes

    1

    Disable User - Improved

    Current Process: Edit User Disable user account Save ERROR Save user failed ERROR Passwords don't match *Have to set password just to disable. Why? Proposed Process 1: ...

  • Votes

    1

    ArcSight CEF CustomFieldMap

    Need to include CEF Custom String and Number Labels out of the box. Labels are different for each product. ~~Sentinel Event Field~~,~~Input Record Field~~ ...