-
Notifications
You must be signed in to change notification settings - Fork 201
[8.18] Rule gaps and manual rule runs #6649
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
A documentation preview will be available soon. Request a new doc build by commenting
If your PR continues to fail for an unknown reason, the doc build pipeline may be broken. Elastic employees can check the pipeline status here. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Left a few optional suggestions, otherwise LGTM!
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks good, left one note about time-dependency for unfilled gaps duration.
* First draft * Formatting * Some deduping * Revisions * New images * image updates * Minor edits * em dash * Moved more content around * Tweak * Grammar fix * Missing space * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc * Update docs/detections/rules-ui-manage.asciidoc * Update docs/detections/rules-ui-monitor.asciidoc * Feedback from technical review * Update docs/detections/rules-ui-monitor.asciidoc * Update docs/detections/rules-ui-manage.asciidoc * Kseniia's feedback * One more change * revert changes * uppercase * Table name --------- Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit edf1ec0)
Contributes to elastic/security-docs#6493, #287, and #888 by providing 9.0 and Serverless docs for rule gaps and updating docs for manual runs. See twin 8.18 PR (elastic/security-docs#6649) for a breakdown of changes. **NOTE:** This PR also contains minor fixes to other Serverless pages to remove errors like double spaces. Previews: - [Rule Monitoring tab](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/892/solutions/security/detect-and-alert/monitor-rule-executions) - [Execution results tab](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/892/solutions/security/detect-and-alert/monitor-rule-executions#rule-execution-logs) - [Gaps table](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/892/solutions/security/detect-and-alert/monitor-rule-executions#gaps-table) - [Manual runs table](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/892/solutions/security/detect-and-alert/monitor-rule-executions#manual-runs-table) - [Manage detection rules | Run rules manually](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/892/solutions/security/detect-and-alert/manage-detection-rules#manually-run-rules) --------- Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
* First draft * Formatting * Some deduping * Revisions * New images * image updates * Minor edits * em dash * Moved more content around * Tweak * Grammar fix * Missing space * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/detections/rules-ui-monitor.asciidoc * Update docs/detections/rules-ui-manage.asciidoc * Update docs/detections/rules-ui-monitor.asciidoc * Feedback from technical review * Update docs/detections/rules-ui-monitor.asciidoc * Update docs/detections/rules-ui-manage.asciidoc * Kseniia's feedback * One more change * revert changes * uppercase * Table name --------- Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit edf1ec0) Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Addresses #6493, elastic/docs-content#287, and elastic/docs-content#888 by providing 8.18 docs for rule gaps and updating docs for manual runs. Note that I also shifted some manual run content around for better flow or to provide more context where it was lacking.
Twin 9.0 and Serverless PR: elastic/docs-content#892
Previews: