• Votes

    5

    Dashboard / Visualization from other Sentine Server

    I need an option to use the Data Federation not only on searches and Reports, but also on Dashboards and Visualization. This is very important for scalability issues to ...

  • Votes

    6

    Configurable Alarm View

    there is only a non-configurable Alarm view. It would be great to have it configurabel to have other/more table rows. e.g. in the Alarm View list it would very helpful ...

  • Votes

    5

    Aruba Mobility Controller with younger OS

    We downloaded the latest SmartConnector package (ArcSight-7.11.0.8139.0-Connector-Linux64.bin). Customer would like to collect data (with Aruba SC) from their Aruba ...

  • Votes

    6

    Customisation WebUI

    Like in other Soltware solutions there should be a possibility to customise the Login Page of Sentinel. There should be two things: - customize the login page with the ...

  • Votes

    5

    WTMP Agent RPM

    Worlking at Worldline in a Sentinel project. Worldline has already a Linuy based "Siem" for Linux events, that the buils on Linux scripting. Now they build a Sentinel ...

  • Votes

    2

    bintec Collector

    A collector for bintec router/VPN devices would be fine

  • Planned

    12

    Add ability to WECS to read from newer "Vista-style" Event Logs

    Sentinel lacks an ability that many of your leading competitors offer to grab events from the newer "Windows Vista" style Event Logs on all new Windows operating systems ...

  • Votes

    3

    Sentinel does not provide an explicit logout message

    Please provide the following enhancement to the NetIQ Sentinel web interface: An explicit logout message indicating that the authenticated communications session has been ...

  • Votes

    2

    Adding comments/notes to an Event Routing Rule

    Our customer would like to add note (or comment) to an Event Routing Rule, but currently it is not possible. Please, add this new field to Sentinel

  • Votes

    5

    allow additional links to be added to app navigation bar

    The left nav bar in the Sentinel app currently has links for home, main, search and (at the bottom) security health. This leaves a lot of room that could be used to add ...

  • Votes

    9

    pseudonymization of user identifiers

    Data privacy laws and regulations in certain areas prohibit the use of subject’s real names or identifiers which can easily be attributed to a subject (e.g. account names ...

  • Votes

    10

    make searching for "lateral movement" easier in the WebUI

    I really like the feature of being able clicking on fields to add a new criteria to the search query. When analyzing events, I often need to find similar events and do a ...

  • Votes

    16

    View single raw data event in the WebUI

    Sometimes I miss the ability to quickly preview a single raw data (event) related to the event I want to check. Customers are asking for this too.

  • Votes

    6

    Ability to recreate an empty database (Postgres, mongo)

    Normally running the 'backup_util.sh' is the part of the daily routine to make a backup about the required components (mainly the config, SI, alerts, etc...) In a case ...

  • Votes

    2

    Improve NoDataAlert

    Is there a way to improve this event? Currently it gets logged as a generic 'Internal' event and all of the data is in the message field with none of it parsed out. ...

  • Votes

    2

    Palo Alto NGFW

    Today, the operation system version of the Palo Alto NGFW is PAN-OS 8.1. However, the version we support is 6.0 in https://www.netiq.com/support/sentinel/plugins/ Do we ...

  • Votes

    1

    File Connector: File missing log event should contain event source ...

    When file connector reports file missing. The event should contain event source information. This event is created in /var/opt/novell/sentinel/server0.0.log file.

  • Votes

    1

    Event Export Filters

    When exporting the Events from a Search query, there is only "Select All"/"Clear All". More often than not, a user would export the same fields for queries they run ...

  • Votes

    3

    Change Guardian Agent install

    In CG version 5.1 there is no more build in option to do a agent install via software distribution software. There is a cool solution: ...

  • Votes

    5

    Support for eStreamer via Cisco nCore client

    Cisco is in the process of releasing a client for collecting via eStreamer that is supported and maintained by them rather than asking their consumers to write custom ...