Released on 18 Oct 2017

11.8 Build 11080 – Standalone Edition

New Features:

The Correlation Engine has been completely upgraded to bring you complex attack detection across all devices on your network, enhanced field-level correlation, improved incident reports with timeline view, and much more:

  • Multiple log format support: Correlation is now carried out across multiple log formats, enabling you to correlate logs from Windows and Unix systems, network devices, and more.
  • Enhanced field-level correlation: Correlation can be done based on multiple log field values to provide fine-grained attack detection.
  • Predefined rules: The module is packaged with 25 predefined complex attack patterns.
  • Custom rule builder: The custom correlation rule builder has been upgraded to include over 250 predefined network actions and advanced filters.
    1. Check for unique, constant, or shared field values among the actions that make up a rule.
    2. Use multiple comparison conditions for fields, namely ‘equals’, ‘not equal to’, ‘starts with’, or ‘ends with’.
    3. Create rules for individual log types using specific network actions, or rules common to all log types with generic network actions.
  • Incident management integration: All correlation alerts can be viewed and managed with the in-built incident management console.

Enhancements

  • The correlation user interface has been upgraded with an all new look and feel, incorporating all the above new features.
  • The time between each individual pair of actions can now be specified when creating a rule.

GA Release of EventLog Analyzer 11.8 Build 11080 – Distributed Edition

  • The new features, enhancements, and issue fixes for the Distributed Edition – Managed Server are the same as above.

Signature Image

Build Release

You may be interested in these other recent articles

18 Dec

Last Week Best ManageEngine Updates – Part 31

18 December 2023 | Nazim Nadir


Right before Christmas, ManageEngine is giving out their quality of life updates. From ServiceDesk Plus to M365 Manager Plus, you will see plenty of updates…

Read more
6 Dec

Last Week’s Best ManageEngine Updates – Part 30

6 December 2023 | Nazim Nadir


ManageEngine is named a strong performer for 2023 in last week updates. There are also new updates to their suite of applications and they have…

Read more
27 Nov

Last Week’s Best ManageEngine Updates – Part 29

27 November 2023 | Nazim Nadir


Exciting news of ManageEngine Linkedin Live webinar has been announced alongside some application updates and the release of a new E-Book. Whether you’re new to…

Read more