-
Votes
0
Enable file connector to retain delimiter characters
Originally tracked as in Bug 708645: https://bugzilla.netiq.com/show_bug.cgi?id=708645 The file connector chops off the record delimiter. While this is ok for line ...
Comments (0) | by: Brandon L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
3
Customize the search result fields
Search result display a set of attributes ie sn: sip: , this can be expanded upon by selecting the more option and you can view all the results by selecting the All ...
Comments (1) | by: Al K. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
4
Every JDBC database log source requires their own collector --> One ...
Hi, Currently JDBC database implementation needs a collector per single logsource. Even if the query is the same between servers. The offset value seems to be stored in ...
Comments (2) | by: Timo S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
2
exclude results in sentinel through the fields area
it would be great if you could exclude results with a check mark in the refine fields area. instead of selecting what you want to see, you need to have the ability to ...
Comments (0) | by: James H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
2
Sentinel should have the capailty to add a tag within the agent ...
Sentinel should have the capability to add a tag to devices and groups within the agent manager sentinel GUI Currently you can only add a tag in event sources. It would ...
Comments (0) | by: James H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
6
Customer needs the ability to process EVTX files from netapp
Sentinel should be capable of ingesting evtx files from netapp
Comments (3) | by: James H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
3
Generating Security Intelligence Graph with Custom Field for Y-axis
Currently Sentinel able to generates security intelligence graph using event per seconds as Y-axis. Suggest to enable graph generating with custom integer as Y-axis (as ...
Comments (1) | by: Azizah A. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
4
Add FQDN host fields
Currently Sentinel splits fully qualified DNS names into a Hostname and the Domain part. That makes it diffucult to use thread intelligence feeds in dynamic lists, as ...
Comments (0) | by: Norbert K. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
6
F5 parser Event Name in clear text ...
Hi, This Collector has been added to support High Speed logging. The collector uses log message ID numbers as Event Name. This is not clear text and clear to understand. ...
Comments (0) | by: Timo S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
6
Support for eStreamer via Cisco nCore client
Cisco is in the process of releasing a client for collecting via eStreamer that is supported and maintained by them rather than asking their consumers to write custom ...
Comments (2) | by: Brandon L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
3
Support for RELP (Reliable Event Logging Protocol)
One of our customer was trying to use rsyslog with Relp to securly send events to Sentinel. Since Relp seems to become a quite common it would be a good thing if Sentinel ...
Comments (0) | by: Lennart J. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Planned
4
Support security features provided by SNMP v3
Authentication in SNMP v1 and v2 is nothing but community string sent in clear text. SNMPv3 does not use community strings, but uses password based authentication and ...
Comments (3) | by: Srinivas R. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
3
CG reports (.csv) should print events line by line without any report ...
When the CG reports are generated, the output of the report with the selected events will be displayed in the proper report specific format. Whereas, when the events ...
Comments (3) | by: Mahantesh H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualizations
-
Votes
7
VMWare vCenter logs
vCenter makes most of it's logging available in the Windows Event log for software-based installations, and via Syslog for appliance (VCSA) installations, at least from ...
Comments (1) | by: Brandon L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
2
brocade collector
Sentinel does not currently have a brocade collector plugin.
Comments (2) | by: James H. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
2
Micro Focus should have a MS Dynamics collector +
Micro Focus should have a collector that supports MS Dynamics in the cloud but preferrably all services that a Sentinel customer is using from MS Azure. Here's MS page ...
Comments (0) | by: Pekka L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
1
Salesforce collector
Micro Focus should have a Salesforce collector. this from Salesforce describes a very typical usecase: ...
Comments (0) | by: Pekka L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
6
Checksum for eventdata
Currently Sentinel creates checksum only for rawdata in secondary storage. There are some cases where checksum is needed to event data as well. -Br, TimoS
Comments (5) | by: Timo S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
7
CheckPoint LEA Connector missing critical pieces of information
I've spotted some flaws on CheckPoint collector. I'm giving one example from blade "URL Filtering" in CheckPoint These fields are : appi_name, matched_category, ...
Comments (2) | by: Pat S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
2
Supporting Syslog TCP with Octet Counting Framing
This framing mode is yet to have a wide acceptance. Also, the latest rsyslog does have an optional mode for this --> ...
Comments (0) | by: Pradeep K. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other