Skip to content

[Defend Workflows] [Enhancement] Complete error message is not shown for the Response actions(Isolate/Release) for SentinelOne Alerts via Alerts Details Flyout #202873

Open
@sukhwindersingh-qasource

Description

Describe the Enhancement

  • Complete error message is not shown for the Response actions(Isolate/Release) for SentinelOne Alerts which can be performed via Alerts Details Flyout (for faulty Situations)
  • Even after clicking on the show full error , it doesn't shows the full error
  • It should be showing the proper error as it is showing on the response console tab

Build Details:

VERSION: 8.17.0 BC2
BUILD: 80427
COMMIT: 2421fb67e0069e7e2c3036cb4e9077fceb4a587a

Login Credentials

Browser:
-Firefox

Preconditions

  • Kibana should be running.
  • Sentinel Alerts should be present
  • Connector should not be added for the SentinelOne ( This is to create a faulty situation for the error message)

Steps to Reproduce

  • Navigate to Alerts tab
  • Click on the Alerts details icon
  • Click on the Take Action Button
  • Select the Isolate Host
  • Observe Complete error message is not shown for the Response actions(Isolate/Release) for SentinelOne Alerts which can be performed Alerts Details Flyout (for faulty situations)

Actual result

  • Complete error message is not shown for the Response actions(Isolate/Release) for SentinelOne Alerts via Alerts Details Flyout (for faulty situations)

Expected Result

  • Complete error message should be shown for the Response actions(Isolate/Release) for SentinelOne Alerts via Alerts Details Flyout
  • It should be showing the proper error message as it is showing on the response console tab

Occurring on the Old stack 8.16.0

  • Yes , it is Occurring on the Old stack 8.16.0 ✔

Screen-cast

Alerts.-.Kibana.Mozilla.Firefox.2024-12-04.12-40-32.mp4

Image

Logs

  • N/A

AC

  •  Complete error message for isolate and release in flyout is shown when opening the Show more dialog.

Metadata

Assignees

Labels

OLM SprintTeam: SecuritySolutionSecurity Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.Team:Defend Workflows“EDR Workflows” sub-team of Security SolutionenhancementNew value added to drive a business resultv8.17.0

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions