Skip to content

Conversation

@randomuserid
Copy link
Contributor

@randomuserid randomuserid commented Apr 29, 2020

Summary

Increase lookback to 15 minutes for latency in the 15 endpoint signal rules as decided during testing. 1 minute is not always sufficient.

Checklist

Delete any items that are not applicable to this PR.

For maintainers

increase lookback to 15 minutes for latency in endpoint signal rules
@elasticmachine
Copy link
Contributor

Pinging @elastic/siem (Team:SIEM)

@randomuserid randomuserid added the release_note:skip Skip the PR/issue when compiling release notes label Apr 29, 2020
@randomuserid randomuserid requested a review from spong April 29, 2020 20:52
Copy link
Member

@spong spong left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The human in me appreciates the human-readability of these lookbacks. Thanks @randomuserid -- LGTM 👍 🤖

@kibanamachine
Copy link
Contributor

💚 Build Succeeded

To update your PR or re-run it, just comment with:
@elasticmachine merge upstream

@randomuserid randomuserid merged commit 671d750 into master Apr 30, 2020
randomuserid added a commit to randomuserid/kibana that referenced this pull request Apr 30, 2020
increase lookback to 15 minutes for latency in endpoint signal rules
randomuserid added a commit that referenced this pull request Apr 30, 2020
increase lookback to 15 minutes for latency in endpoint signal rules
randomuserid added a commit that referenced this pull request Apr 30, 2020
increase lookback to 15 minutes for latency in endpoint signal rules
@rw-access
Copy link
Contributor

rw-access commented Apr 30, 2020

@randomuserid was this supposed to target master or 7.7?

@MindyRS MindyRS added the Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. label Sep 23, 2021
@elasticmachine
Copy link
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

@spalger spalger deleted the 77-lookback-increase branch May 8, 2022 21:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

release_note:skip Skip the PR/issue when compiling release notes Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:SIEM v7.7.0 v7.8.0 v8.0.0

Projects

None yet

Development

Successfully merging this pull request may close these issues.

7 participants