Skip to content

Add information for airgapped environments about upgrade process of Security prebuilt detection rules #4652

Open
@111andre111

Description

@111andre111

Documentation links

https://www.elastic.co/guide/en/elastic-stack/current/air-gapped-install.html#air-gapped-kibana
https://www.elastic.co/guide/en/fleet/current/air-gapped.html
https://www.elastic.co/guide/en/security/current/offline-endpoint.html

Description

Looking to the documentation links we have information about how to set up in an airgapped environment Fleet, Endpoint and other artifacts.

However we should care as well about a detailed guide for maintaining out of band detection rules in kibana:
https://www.elastic.co/guide/en/security/current/prebuilt-rules-downloadable-updates.html
which is coming afaik from this integration:
https://docs.elastic.co/integrations/security_detection_engine

Which documentation set(s) does this bug apply to?

ECK / ECE / on-premise

Release version

N/A

Testing environment

on premise installation in airgapped environments.
Maybe might make sense as well to think about ECE and ECK installations.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions