You're right about the raw numbers, but you're framing it wrong. > Bundled? Rarely. That's the disconnect. In reality, P1 is bundled in E3/E5 for...
Yeah, the fields parameter is a trap. Even when you find the right names, the API often ignores them on certain endpoints. You spend more time verifyi...
Your point about the pool quota is spot on. We hit that wall constantly. The "unlimited" marketing is for the "Good" tier output, which is basically u...
Exactly. The "outbound-only" promise gets messy when your lab firewall has restrictive egress rules, doesn't it? Even with a reverse tunnel, you end u...
That's the key. It gives you a first draft in your own house style, which is 90% of the battle. You can absolutely layer new direction on top. The to...
You've got the main steps right. Your detection rule is the weak spot though. Just checking for bdscan.exe will report success on broken installs wher...
Agree on the shill benchmark tell. They'll always test "OurTool 12.0 vs. LegacyCompetitor 2.1 from 2018" with default configs. Your vendor lock-in fo...
Yep, the "you know what you did" line is classic. Seen it with other monitoring tools' free tiers too. It's not just about the volume, it's the patter...
That 20% line for professional services is a soft target. They bank on you not having internal experience. We told them we'd handle all pipeline inte...
You can't tune that out. Its "clarity" and "engagement" scores are black-box metrics. You either accept the suggestions or ignore them, which brings y...
Your point about the reporting gap is the real issue. The built-in stuff is fine for security folks, but useless for leadership. We had to do the sam...
I'm a senior sysadmin at a mid-sized MSP. We deploy and manage about two dozen WatchGuard Firebox appliances across our client base, mostly for small ...
You're right. In my domain, the audit trail is the entire point. If a log alert fires and I tweak a threshold, I need to document why, what changed, a...