-
Notifications
You must be signed in to change notification settings - Fork 208
[8.19] Prebuilt rule reversion documentation #6937
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
A documentation preview will be available soon. Request a new doc build by commenting
If your PR continues to fail for an unknown reason, the doc build pipeline may be broken. Elastic employees can check the pipeline status here. |
dplumlee
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This language looks good to me @nastasha-solomon, do you think it's worth putting any documentation for the "missing base version" case where we suggest they update the rule instead? Can't remember exactly how we split that description up in the rule upgrade docs but we have similar levels of explanation between the two features in-app
|
Ooh, yeah good idea. I'll add that in a few hours. Thanks! |
…2175) Contributes to #1940 by documenting how to check modified prebuilt rule fields and revert them. Previews: - [Modify existing rules settings](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/2175/solutions/security/detect-and-alert/manage-detection-rules#edit-rules-settings) - Added a note to the end about how to spot and view modified fields on prebuilt rules. - [Revert modifications to prebuilt rules](https://docs-v3-preview.elastic.dev/elastic/docs-content/pull/2175/solutions/security/detect-and-alert/manage-detection-rules#revert-rule-changes) - New section **Corresponding 8.19 PR**: elastic/security-docs#6937
Contributes to elastic/docs-content#1940 by documenting how to check modified prebuilt rule fields and revert them.
Previews:
Corresponding 9.19 and Serverless docs: elastic/docs-content#2175