The "Event Data partitions are currently not searchable" message is displayed in the Sentinel dashboard even after re-indexing the secondary partition.
Environment
Sentinel 8.6.1.1 Red Hat Enterprise Linux (RHEL) 8.9
Situation
The…
This KM described how to remove the managed/unmanaged agents from the Agent Manager console when the Uninstall button not visible.
Environment
NetIQ Sentinel appliance 8.6.1 Agent Manager 8.6.1 OS SLES 12 SP5
Situation
Managed/Umanged…
Sentinel service is operational (up and running), but unable to connect the Sentinel dashboard.
Environment
Sentinel 8.6.1.0
Situation
The Sentinel service is operational, but the Sentinel dashboard fails to load. The following error…
Summary Fix Mexico day light saving issue.
Products Sentinel Enterprise,Sentinel Log Manager Environment Sentinel 8.5.0 Sentinel 8.5.1
Solution The following mentioned steps can be followed as a workaround to fix Mexico day light saving issue. This…
Summary End users are unable to launch control center or solution designer. It hangs on: "Authorizing with Single Sign on technology" then errors out with "Unable to access application."
Products Sentinel Enterprise,Sentinel Log Manager Environment…
Summary:
Sentinel server is affected by Log4j vulnerability (CVE-2021-44228)
URL Name:
KM000003122
Products:
Sentinel Enterprise
Situation:
Click here to access full Support Tip details
ArcSight SmartConnector -> Universal Common Event Format
*Most CEF events parse properly but as an ArcSight SME I needed a few more in Sentinel.
Two examples - Cisco Firepower - McAfee ePO
Get Raw Data
- Option 1: Sentinel webUI “Get Raw Data…