IBM QRadar

IBM QRadar

Join this online topic group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.


#Security
#QRadar
#SecuringhybridcloudandAI
 View Only
  • 1.  QRadar Deployment Intelligence App update 3.0.0

    Posted 05/21/21 05:16 PM

    Hey all,

    This is a quick update for everyone that the dev team released a new version of QDI yesterday as v3.0.0. The QDI 3.0.0 release is ONLY FOR CERTAIN VERSIONS OF QRADAR (7.3.3 Fix Pack 5 or 7.4.1 Fix Pack 1 or earlier). There is another release pending for 3.0.1 if you are on newer QRadar releases.

    The difference between these two versions is that 3.0.1 uses the new Universal Base Image 8 for QRadar app development. QRadar admins who are on the most recent releases of QRadar will need to wait for 3.0.1.

    If you use QDI and plan to upgrade to the latest version, be aware that there is a known issue linked on that page that users might want to pay attention to. If you use the health reports that are saved within the QDI app over time, you need to run a utility to ensure they those reports are migrated to persistent storage before you upgrade to QDI 3.0.0. If you install QDI without running the support utility, the older reports are no longer available after you upgrade. Running the utility will allow reports in the older version to be on the new Reports tab when you upgrade to 3.0.0 or 3.0.1 when released.

    Support wrote a tech note on this issue here: https://www.ibm.com/support/pages/node/6454155

    We wanted to call this out for QDI app users to be visible and that if you heavily use QDI to watch for 3.0.1 which is expected sometime later this month*.

    *Release dates are determined by pending QA approvals.



    #QRadar
    #Support
    #SupportMigration


  • 2.  RE: QRadar Deployment Intelligence App update 3.0.0

    Posted 05/21/21 05:17 PM

    QDI version 3.0.0 change list:

    • QRadar Deployment Intelligence now uses the IBM Carbon UI/UX Design, which includes a fully customizable dashboard view. You can add, remove, resize and move the charts on the dashboard.
    • Introduced dark and light themes.
    • The new Hosts page is now the landing page for QDI.
    • Reports page where users can preview and download reports.Dedicated Configuration page accessible from the Home page.
    • Advanced Health Query page has been redesigned.
    • Migrated to PostgreSQL.
    • Fixed QDI database cleanup process.
    • Fixed Advanced Health Query to accurately map the Managed Hosts primary IP.
    • Fixed Deployment Disk Usage chart not displaying data on QRadar versions:7.4.0/7.4.1
    • Top Events/Flows Lucene Indexing Time charts are now enabled on QRadar version 7.3.2 Patch 4.
    • The App Framework Memory Utilization chart now displays data on QRadar version 7.4.2+
    • Coalescing Ratio chart is now enabled for Event Collector managed hosts.
    • Fully compatible with QRadar On Cloud offerings.
    • QDI Daily Health Reports are now stored in persistent storage. See https://www.ibm.com/support/pages/node/6454155 before you upgrade from QDI 2.x versions if you leverage health reports in your organization.
    • Added Top/Bottom – N Hosts- Flow Sources by Network Traffic.


    #QRadar
    #Support
    #SupportMigration