Hi,
I’m not entirely an expert, but looking at the overlapping issue, I think you should check out Domain Management to solve this.
Since QRadar uses the IP range as a unique identifier in the Network Hierarchy, it blocks duplicate entries. To get around this, you can:
Once you’ve assigned the data sources to a domain, QRadar creates a 'context' for that traffic. This allows you to define the same 192.168.10.0/24 subnet multiple times in the Network Hierarchy one for each domain, so QRadar can finally separate the flows correctly.
Hope this helps!"