• Votes

    1

    Proxy Setting in Sentinel

    There is no "offical" proxy setting in Sentinel. There should be a configuration option in the GUI to setup Sentinel to use a Proxy also with user/password and this ...

  • Votes

    1

    syslog connector to route events based on CEF Vendor Product

    Add an an additional “CEFVendorProduct” Package Policy, which works just like “Application ID” but uses the two CEF header fields for routing decision. The precedence of ...

  • Votes

    2

    RedHat 8

    Hi, RedHat 8 is published and many vendors and companies are planning to jump from RHEL6 to RHEL8. Is there any plans to make Sentinel8 RHEL8 compatible? -Br, TimoS

  • Votes

    3

    Configuring Sentinel Web Console Settings From Red Hat/RestAPI

    Please provide the means to automate or configure the following Sentinel Web Console settings via Red Hat or RestAPI: -Secondary Storage location -Primary Storage ...

  • Votes

    1

    Central Computer Temporary Storage Max

    Increase maximum from 500 MB (500000 KB) to something much larger

  • Votes

    2

    CheckPoint R80.xx: LogExporter Collector is needed

    CheckPoint has migrated from LEA-protocol to LogExporter (syslog) to integrate with SIEM products. At the same time the log event format has changed. Therefore a new ...

  • Votes

    2

    MSG Field size to 16kB

    The message field size should be bigger. Some of custom log event sources require bigger msg size.

  • Votes

    1

    Integrate the 9443 console certificate mechanism of the Sentinel 8.2.0 ...

    Appliances created with SUSE studio have a security certificate mechanism integrated into the port 9443 administration console. This mechanism greatly simplifies the ...

  • Votes

    2

    Better LDAP integration

    Currently the LDAP integration is extremely basic. It requires far too much work to get it to work with an LDAP load balancer. The best LDAP integrations automatically ...

  • Votes

    2

    Sentinel 8.2.2.0 database upgrade failure due to older orphaned jar ...

    During an upgrade from Sentinel 8.2.0.0 the database upgrade failed, after the main Sentinel upgrade failed. After investigation, it was determined that there were some ...

  • Votes

    4

    Fix your post 8.2.2.0 installer to require 4 CPUs

    Sentinel 8.2.2.0 will not successfully install on Linux without 4 cores assigned to the box. I recently spent around a week trying to get a clean 8.2.2.0 install to work ...

  • Votes

    1

    Fix your post 8.2.2.0 installer to require 4 CPUs

    Sentinel 8.2.2.0 will not successfully install on Linux without 4 cores assigned to the box. I recently spent around a week trying to get a clean 8.2.2.0 install to work ...

  • Votes

    5

    Make correlation event retention length configurable separately from ...

    Provide the means to configure correlation event retention to a different period than data event retention in order to prevent the PostgreSQL from growing too large.

  • Votes

    4

    Export configuration in clear text

    Customer HELAB need a tool to export the complete configuration in clear text or pdf to have a documentation of their system. This is needed because of regulation ...

  • Votes

    1

    Option to Stopp Collector and delete all incoming Events

    When a collector ist stopped the incoming events are stored (PageFiles) and a filesystem can be filled with this files. So an second option would be very usefull: The ...

  • Votes

    1

    Read SAP Security Audit Log via RSAU_API_GET_ALERTS

    From SAP Note 2191612 - FAQ | Use of Security Audit Log as of SAP NetWeaver 7.50 42. Can recorded events be promptly transferred to a central alert cockpit? The RFC ...

  • Votes

    5

    EVT/EVTX file via Agent Manager Agent

    In agent manager you can read a Single Line Log. It would be a great enhancement to read also evt/evtx files, because there are several software products that write ...

  • Votes

    1

    ArcSight CEF CustomFieldMap

    Need to include CEF Custom String and Number Labels out of the box. Labels are different for each product. ~~Sentinel Event Field~~,~~Input Record Field~~ ...

  • Votes

    1

    User Inactivity Timeout

    Need User Inactivity Timeout option. Session timeout exists but will kill session while user is actively working. GUI 'Security' section preferred.

  • Votes

    1

    Disable User - Improved

    Current Process: Edit User Disable user account Save ERROR Save user failed ERROR Passwords don't match *Have to set password just to disable. Why? Proposed Process 1: ...