SG UTM
Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.
-
Provide link for checksums along with firmware download
As far as I can see, there are no checksums provided for firmware downloads for Cyberoam UTM devices. Providing hashes using a known strong algorithm (e.g. SHA256) is standard practice, and is especially important for firmware upgrades for critical security infrastructure. This is trivial to implement and it would be nice to have a link to hashes added in the notification banner for firmware upgrades. Bonus points for signing it with a GPG key.
It's possible that these are available, but they should be more apparent and be located in the same place as the firmware file or with the…
2 votes -
fw-notify.net DKIM signing for notifications
Many email systems are blocking messages sent without DKIM authentication. If possible, please consider adding local DKIM ability or preferably, global DKIM ability (that's tough because of the private key required) for message signing). My ISP is now classifying all email sent from fw-notify.net as SPAM because the messages lack DKIM.
1 vote -
Change name filed FROM of notification mail sender
For those who manage several SG UTM Firewalls it would be very useful to be able to change the name in the sender field of the notification emails sent by the Sophos Firewall in order to immediately identify the Sophos Firewall that sent the notification without opening the email.
Now you can see in your Mail Client simply "Firewall Notification System".
It would be very useful for those who receive notifications on their smartphone to identify the Firewall without having to open the email6 votes -
Designation of the origin of transmission address
I want to appoint an origin of transmission address of the isolation report email from Sophos UTM.
Sophos UTMからの隔離レポートメールの送信元アドレスを指定できるようにしてほしい。
1 vote -
Email format of Quarantine Report
I want to appoint the format of the isolation report email from Sophos UTM.
In the case of an HTML form, I am garbled.I want the format conversion function of the isolation report email.
Sophos UTMからの隔離レポートメールのフォーマットを指定できるようにしてほしい。
HTML形式の場合、文字化けする。
隔離レポートメールのフォーマット変換機能が欲しい。1 vote -
Email Notification that shows user downloaded data over 500MB
email notification if user has reached or downloaded more than 500 MB for instance . so the admin will know that someone is downloading more than their daily usual data.
4 votes -
Reflexion
Reflexion should have a more robust notification system. For instance, if an incoming message is deferred for more than x minutes I should be notified. or if x number of incoming messages are deferred I should be able to send a notification. The list goes on.
The fact Reflexion is an important part of my client's ecosystem and isn't able to provide important data is very problematic.
2 votes -
Notification settings for more IDs
WARN-129, among others, is not available in the notifications section.
To keep the list short, a custom text form or dropdown would be nice:
Simply enter or select the unlisted ID you want to configure for notifications and add it to the list of common IDs.2 votes -
notification disk going fail
There is no Monitor/Notification which would send information for harddisks going to fail in a few days/week. Maybe using S.M.A.R.T.?
And there ist no notification about failed single disks, only in RAID like "CRIT-060 Raid degraded: harddisk replacement needed".
Please add a notification for single disks (without RAID) in case of failure or a few days earlier.
Thank you.10 votes -
Notify user when they have used all of there Network Traffic Quota
setup a report that can email a user when they have used a percentage of there network traffic quota. Example: "You have used 50% of your Monthly Data Allowance"
5 votes -
Dual antivirus engine alerts/notification.
The Avira Scanner died on the Customer's UTM for the 2nd time.
It then fixed itself a week after.
Customer did not receive any notification to say that only 50% of his AV scanning was functional (dual scanning turned on).
Dashboard was showing a green tick next to antivirus.
The only reason why customer noticed the issue was because they had issues with other module and they were going through the logs via backend.4 votes -
SUM notification - [INFO-913] Global resource level limit exceeded
The SUM server often sends an email notification on behalf of a managed UTM with the subject: [INFO-913] Global resource level limit exceeded, but doesn't say what limit has been exceeded. It's necessary to logon on to the UTM and check through the logs to determine what caused the alert. It would be good if the notification from the SUM contained some additional information to save time on identifying the cause.
Thanks.31 votes -
In IPS alerts, give the Attack Pattern group name that triggered the alert.
The description of the intrusion doesn't match the list of attack pattern group names.
3 votes -
Change the Notification text from "Message delivery incomplete"
If the sender send me an e-mail with a forbidden file extension he gets the following notification:
"Betreff: Message delivery incompleteYour message to the following recipients was quarantined:
<xyz@web.de>, quarantine reason: File Extension (zip)
Please contact your IT administrator for further assistance."
The idea would be change this text of the alert.
12 votes -
Notifications: Role based Notifications
Implement the ability to create multiple E-Mail recipience for various UTM Notifications
Depending on Roles it would be greate to create different Notifiction selections.
Roles:
Support Ticketing: System relevant Notifications
IT Administrator: Everything
SuperUser from Company: Just Warnings and Critical Notifications19 votes -
Editable notification subject for admin notifications
Please make the admin notifications subject editable.
Some service-systems can't handle the square brackets at the notification header.
Customization for the design of this header would be helpfull in those cases.(btw. it would definitely help already, if there would be just one dropdown field, where you can change the square brackets into a normal bracket, a pipe or a simple slash).
Thanks
Felix10 votes -
Customization of quarantine notification emails
We would like to be able to customize the notification emails that are being sent to users when an outgoing email has been quarantined.
Currently it says:
Subject: "Message delivery incomplete"
Text: "Your message to the following recipients was quarantined: [...] quarantine reason: [...] Please contact your IT administrator for further assistance."It would be nice to change the text or even the layout to fit our corporate identity.
29 votes -
Reflexion
Add denied outbound emails to Total Control email. Otherwise sender (Outlook/Exchange) is blind to the failure.
1 vote -
Make Quarantine Report responsive
I would very much like to be able to review and process quarantine reports on my mobile device.
The current format requires lots of zooming and panning on a mobile device...
3 votes -
new suggestion
The notification from IPS about web browser - MS Edge iare not carried similar to IE or FireFox.
This cause tousand of @ from IPS. Normally I can disable such category on Notification Tab, but for exapmle RIG Exploit Kit (Network Trojan) also shares the same category (CRIT-852), which about it I prefer to have awareness.
CRIT-852] Intrusion Prevention Alert (Packet dropped)
Message........: BROWSER-IE Microsoft Edge SIMD memory corruption attempt
Message........: BROWSER-IE Microsoft Edge Array.concat type confusion attempt3 votes
- Don't see your idea?