It would be nice to have the ability to share useful filters with other users. Alternatively, filters that should be accessible by all users could have a flag to set the filter as "global." Some of the framework seems to be in place already as the out-of-box filters appear for all users who access the SEM web GUI.
In previous versions of SEM, we were able to schedule searches and have reports sent to our emails that were in excel format. Now, with the current versions of SEM, the system will compress the data into a zip file and attempt to email that. Our exchange server policies are configured to block .zip files and we are not…
Would be great to add custom tags to Rules.
Working whit FIM connector when it is required to use a large number of custom paths for FIM on several servers, it is necessary to create templates to speed up the assignment of FIM monitoring using the template import function. However, in the event that it is necessary to make any adjustments to the paths, delete or add…
Hello Everyone, I would like the ability to edit node names. Some of our nodes are returning ip addresses or ".gateway" and the ability to correctly name them would be nice.
I'd like to see if we could get support for Google Cloud Platform. I know AWS and Azure are already supported, but I'd like to see if we could add Google's cloud to this list.
Prefer SNMP because more data is available from the Meraki system, but would accept Syslog. https://documentation.meraki.com/General_Administration/Monitoring_and_Reporting/Meraki_Device_Reporting_-_Syslog%2C_SNMP%2C_and_API…
We all receive lists of IOCs that are targetted at our industry sectors. You can upload IOCs to most EDR products, but I do not see a way to uplaod these to SEM, which would make a lot of sense. Pre-defined rules could also be created to make use of the IOC lists.
Our system is monitoring Kaspersky endpoint protection with SEM 2021.4. SEM collects logs through a connector that looks at Kaspersky Windows event log. Whenever a user disable the antivirus or antivrus stops working, SEM will email alert us. It was working good on Kaspesky Endpoint 11.6 but when version 11.9 came out, it…
It looks like you're new here. Sign in or register to get started.