-
Votes
6
Ability to recreate an empty database (Postgres, mongo)
Normally running the 'backup_util.sh' is the part of the daily routine to make a backup about the required components (mainly the config, SI, alerts, etc...) In a case ...
Comments (0) | by: Erno P. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
1
Customer needs Microsoft Radius data to be parsed correctly.
A customer has Microsoft Radius server and they need to be able to search on the mac address. Unfortunately all other systems use a format like this: 00:AA:00:12:34:56, ...
Comments (0) | by: Henk T. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
6
Read only user
There should be a posibility to create a read omly user in Sentinel. This is important for Auditors to check the system. This user should have the rights to see ...
Comments (1) | by: Ulrich S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Agent Manager Agent shoud send Heartbeat Events to detekt that it is ...
There should be a possiblity to detect that an Agent Manager Agent is running independent from sending events to Sentinel. I think one possibilty would be to have a ...
Comments (1) | by: Ulrich S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
12
Certify Sentinel for High availability on Red Hat Linux
High availability/Clustering for Sentinel is only supported and certified on SLES or SLES appliances. There is no supported high availability option available for ...
Comments (0) | by: Matthew R. | over a year ago | Last activity over a year ago | Status changed over a year ago | Installation/Deployment
-
Votes
2
389 Directory Server plugins
The goal is to parse 389 Directory Server logs
Comments (0) | by: david a. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
5
Tenant based roles to allow to run remote searches or manage ...
Customer reported that they are planning to deploy a multi tenant Sentinel system. They would like to use multi-tier architecture, where they have multiple Sentinel for ...
Comments (0) | by: Piotr G. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Prevent transmission of report/e-mail when the report is blank
We need option to prevent the transmission of e-mail alert when the scheduled report generated is blank in reporting module
Comments (0) | by: Santhiya S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Manage alerts from multiple sentinel deployment using single ...
In the client's environment, they have multiple Sentinel deployments (Prod, Test, DMZ etc) Each of the environments have their own alerts that they can investigate and ...
Comments (0) | by: Khris F. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
2
Send full message field when fired by Correlation Rules
Correlation Rules: Actions -> Send Email (Full Customization of all fields) Normally, the message field is not recommended to be used with Correlation Rules due to the ...
Comments (0) | by: Brian M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
allow additional links to be added to app navigation bar
The left nav bar in the Sentinel app currently has links for home, main, search and (at the bottom) security health. This leaves a lot of room that could be used to add ...
Comments (0) | by: Norbert K. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
2
Correlation dropped error reporter
It should be configurable per event source if you want it to alert if the events don't come to Sentinel in the correct time window. At the moment the system writes these ...
Comments (0) | by: Jari V. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
Distributed search for All Identity Tracking Reports
All Identity Tracking Reports (Account Tracking, Recent Activity, Password changes, Suspicious activity overview ) have hardcoded Database in the selection of data source ...
Comments (1) | by: Khris F. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
3
Have a deployment or installation guide specific for AWS
It would be great to have a specific deployment or installation guide with all steps needed to be followed to install Sentinel on AWS. Today many customers are moving ...
Comments (0) | by: Hugo H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Supported Platforms
-
Votes
10
Cyber Ark Collector
I would like to request a collector for Cyber Ark. I have seen this asked by multiple customers.
Comments (1) | by: James H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
3
Disable dashboard
It would be great to disable the dashboard or have an automated forward to the main interface. Nobody of us is using the dashboard, its always an additional click which ...
Comments (1) | by: Andreas H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
3
Configure connection when cloning event source
When cloning an event source, it will keep the connection to the source server, which is useless. When we create a template event source, which we would like to apply to ...
Comments (0) | by: Andreas H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Import event sources
We have more than 200 servers which need to be created in multiple collectors. It would be great to import them via a CSV.
Comments (1) | by: Andreas H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Detect anomaly's in user logon activity
The ability to detect anomaly's in user logon activity, ie logging on to a system they have never used before.
Comments (1) | by: John G. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
0
"Status Details" statistics do not persist on Sentinel service restart
Within the Sentinel Control Center (SCC) --> Event Source Management --> Live View... --> Table tab --> expand any Collector Manager. The statistics do not persist upon ...
Comments (0) | by: John G. | over a year ago | Last activity over a year ago | Status changed over a year ago | Installation/Deployment