In the query module of MVision ePO, there is no possibility to filter on Analyzer Rule ID. The option is really missing and we do use this a lot.. e.g. for following-up newly generated ENSTP rules. In our migration from on-prem to MVision ePO, this is a real show stopper.
Solved! Go to Solution.
Hi @YvesK ,
Thanks for the update. I believe you can raise a Product Enhancement Request by following the instructions in the link below.
How to submit product idea - https://kc.mcafee.com/corporate/index?page=content&id=KB60021
Mvision Ideas Page - https://community.mcafee.com/t5/MVISION-ePO-Ideas/idb-p/MVISION-ePO-Ideas/tab/most-recent
Hope it helps.
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!
Hi @YvesK ,
Thank you for your post. I checked it as well, Analyzer Rule ID is missing under Filters for Threat Events query.
I would suggest to log a ticket with McAfee technical support for deeper investigation. Perhaps the feature is missing.
Thanks
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!
Hi @Pravas
The first action for me was logging a support ticket. They asked me to raise the question in this community.
Hi @YvesK ,
Thanks for the update. I believe you can raise a Product Enhancement Request by following the instructions in the link below.
How to submit product idea - https://kc.mcafee.com/corporate/index?page=content&id=KB60021
Mvision Ideas Page - https://community.mcafee.com/t5/MVISION-ePO-Ideas/idb-p/MVISION-ePO-Ideas/tab/most-recent
Hope it helps.
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.
Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership: