Skip to content

Commit 6ffc406

Browse files
authored
Merge branch 'main' into DOCS-1110
2 parents f5d0664 + 9b024a0 commit 6ffc406

File tree

21 files changed

+211
-82
lines changed

21 files changed

+211
-82
lines changed

blog-csoar/2025-09-10-application-update.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@ import useBaseUrl from '@docusaurus/useBaseUrl';
1212

1313
### New feature: Test nodes in playbooks
1414

15-
The new **Test Node** toggle on nodes allows you to test individual nodes in playbooks without having to run the entire playbook, offering greater control over node configuration and troubleshooting.
15+
The new **Test Mode** toggle on nodes allows you to test individual nodes in playbooks without having to run the entire playbook, offering greater control over node configuration and troubleshooting.
1616

1717
What's new:
1818
* Provide mock values for variables used in the node, and run the results to see the output and any errors.

cid-redirects.json

Lines changed: 9 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -59,7 +59,7 @@
5959
"/01Start-Here/Library/Library_Filters": "/docs/get-started/library",
6060
"/01Start-Here/Library/Library-Keyboard-Shortcuts": "/docs/get-started/keyboard-shortcuts",
6161
"/01Start-Here/Library/Move-Content-Personal-Folder": "/docs/get-started/library",
62-
"/01Start-Here/Library/Pinned-Searches": "/docs/get-started/library",
62+
"/01Start-Here/Library/Pinned-Searches": "/docs/search/get-started-with-search/search-page/pin-a-search",
6363
"/01Start-Here/Library/Recent-Searches": "/docs/get-started/library",
6464
"/01Start-Here/Library/Search-the-Library": "/docs/get-started/library",
6565
"/01Start-Here/Library/Share-a-Saved-Search-from-the-Library": "/docs/get-started/library",
@@ -274,6 +274,7 @@
274274
"/03Send-Data/Sources/02Sources-for-Hosted-Collectors/Amazon-Web-Services/AWS-S3-Scan-Interval-for-Sources": "/docs/send-data/hosted-collectors/amazon-aws/aws-s3-scan-interval-sources",
275275
"/03Send-Data/Sources/02Sources-for-Hosted-Collectors/Amazon-Web-Services/AWS-S3-Source": "/docs/send-data/hosted-collectors/amazon-aws/aws-s3-source",
276276
"/docs/send-data/hosted-collectors/amazon-aws/aws-security-data-lake-source": "/docs/send-data/hosted-collectors/amazon-aws/amazon-security-lake-source",
277+
"/docs/send-data/hosted-collectors/amazon-aws/cloudwatch-source": "/docs/send-data/hosted-collectors/amazon-aws/amazon-cloudwatch-source-metrics",
277278
"/03Send-Data/Sources/02Sources-for-Hosted-Collectors/Amazon-Web-Services/Collection_from_AWS_GovCloud": "/docs/send-data/hosted-collectors/amazon-aws/collection-aws-govcloud",
278279
"/03Send-Data/Sources/02Sources-for-Hosted-Collectors/Amazon-Web-Services/Configuring-your-AWS-Source-with-CloudFormation": "/docs/send-data/hosted-collectors/amazon-aws/configure-your-aws-source-cloudformation",
279280
"/03Send-Data/Sources/02Sources-for-Hosted-Collectors/Amazon-Web-Services/Grant-Access-to-an-AWS-Product": "/docs/send-data/hosted-collectors/amazon-aws/grant-access-aws-product",
@@ -376,7 +377,7 @@
376377
"/05Search/Library/Export-and-Import-Content-in-the-Library": "/docs/get-started/library",
377378
"/05Search/Library/Favorites": "/docs/get-started/library",
378379
"/Search/Library/Library_Keyboard_Shortcuts": "/docs/get-started/keyboard-shortcuts",
379-
"/05Search/Library/Pinned-Searches": "/docs/get-started/library",
380+
"/05Search/Library/Pinned-Searches": "/docs/search/get-started-with-search/search-page/pin-a-search",
380381
"/05Search/Library/Share-a-Saved-Search-from-the-Library": "/docs/get-started/library",
381382
"/03Send-Data/Sources/03Use-JSON-to-Configure-Sources/Local-Configuration-File-Management/View-or-Download-Source-JSON-Configuration": "/docs/send-data/use-json-configure-sources/local-configuration-file-management/view-download-source-json-configuration",
382383
"/05Search/Anomaly-Detection/Anomalies-Page/Drill-Down-into-Events": "/docs/dashboards/drill-down-to-discover-root-causes",
@@ -1401,6 +1402,7 @@
14011402
"/APIs/Collector-Management-API/Upgrade-or-Downgrade-Collectors-Using-the-API": "/docs/api/collector-management/upgrade-downgrade-collectors",
14021403
"/APIs/Content_Permissions_API": "/docs/api/content-permissions",
14031404
"/APIs/Content-Management-API": "/docs/api/content-management",
1405+
"/docs/api/content": "/docs/api/content-management",
14041406
"/APIs/Dashboard_(New)_Management_API": "/docs/api/dashboard",
14051407
"/APIs/Data_Forwarding_Management_API": "/docs/api/logs-data-forwarding",
14061408
"/docs/api/data-forwarding": "/docs/api/logs-data-forwarding",
@@ -3002,6 +3004,7 @@
30023004
"/Cloud_SIEM_Enterprise/CSE_Rules/Import_YARA_Rules": "/docs/cse/rules/import-yara-rules",
30033005
"/Cloud_SIEM_Enterprise/CSE_Rules/Normalized_Authentication_Rules": "/docs/cse/rules/normalized-authentication-rules",
30043006
"/Cloud_SIEM_Enterprise/CSE_Rules/Normalized_Threat_Rules": "/docs/cse/rules/normalized-threat-rules",
3007+
"/docs/cse/rules/rule-expression-syntax": "/docs/cse/rules/cse-rules-syntax",
30053008
"/Cloud_SIEM_Enterprise/CSE_Rules/Rule_Tuning_Expressions": "/docs/cse/rules/rule-tuning-expressions",
30063009
"/Cloud_SIEM_Enterprise/CSE_Rules/Tailor_a_Global_Rule": "/docs/cse/rules/tailor-global-rule",
30073010
"/docs/cse/rules/first-seen-rule": "/docs/cse/rules/write-first-seen-rule",
@@ -3048,6 +3051,7 @@
30483051
"/Cloud_SIEM_Enterprise/Match_Lists_and_Suppressed_Lists": "/docs/cse/match-lists-suppressed-lists",
30493052
"/Cloud_SIEM_Enterprise/Match_Lists": "/docs/cse/match-lists-suppressed-lists",
30503053
"/Cloud_SIEM_Enterprise/Match_Lists/Standard_Match_Lists": "/docs/cse/match-lists-suppressed-lists/standard-match-lists",
3054+
"/docs/cse/match-lists": "/docs/cse/match-lists-suppressed-lists",
30513055
"/docs/cse/match-lists-suppressed-lists/standard-match-list": "/docs/cse/match-lists-suppressed-lists/standard-match-lists",
30523056
"/docs/cse/match-lists-suppressed": "/docs/cse/match-lists-suppressed-lists",
30533057
"/Cloud_SIEM_Enterprise/Match_Lists_and_Suppressed_Lists/Create_a_Match_List": "/docs/cse/match-lists-suppressed-lists/create-match-list",
@@ -3367,6 +3371,7 @@
33673371
"/Manage/Security/Audit_Event_Index": "/docs/manage/security/audit-indexes/audit-event-index",
33683372
"/docs/audit/audit-events": "/docs/manage/security/audit-indexes",
33693373
"/Manage/Security/Audit-Index": "/docs/manage/security/audit-indexes/audit-index",
3374+
"/Manage/Security/Cloud_Security_Events": "/docs/cse",
33703375
"/Manage/Security/Create-an-Allowlist-for-IP-or-CIDR-Addresses": "/docs/manage/security/create-allowlist-ip-cidr-addresses",
33713376
"/Manage/Security/Create-a-Whitelist-for-IP-or-CIDR-Addresses": "/docs/manage/security/create-allowlist-ip-cidr-addresses",
33723377
"/Manage/Security/Data_Access_Level_for_Shared_Dashboards": "/docs/manage/security/data-access-level-shared-dashboards",
@@ -3587,6 +3592,7 @@
35873592
"/Observability_Solution/Kubernetes_Solution/zDrill_down_to_discover_root_causes": "/docs/observability/kubernetes",
35883593
"/Observability_Solution/Kubernetes_Solution/zSumo_Logic_Dashboards_for_Kubernetes": "/docs/observability/kubernetes",
35893594
"/Observability_Solution/05Diagnose_with_the_Observability_Solution": "/docs/observability/diagnose-issues",
3595+
"/docs/observability/cloud-infrastructure-application-monitoring/integrations/azure/azure-application-gateway": "/docs/integrations/microsoft-azure/azure-application-gateway",
35903596
"/Observability_Solution/06Troubleshoot_with_Observability_Solution": "/docs/observability/troubleshoot",
35913597
"/Observability_Solution/Reliability_Management": "/docs/observability/reliability-management-slo",
35923598
"/Observability_Solution/Reliability_Management/About_SLO": "/docs/observability/reliability-management-slo",
@@ -4496,6 +4502,7 @@
44964502
"/docs/manage/manage-subscription/manage-org-settings": "/docs/manage/manage-subscription/create-and-manage-orgs/manage-org-settings",
44974503
"/docs/integrations/amazon-aws/elastic-load-balancing": "/docs/integrations/amazon-aws/classic-load-balancer",
44984504
"/docs/integrations/microsoft-azure/microsoft-defender-for-cloud": "/docs/integrations/microsoft-azure/azure-security-defender-for-cloud",
4505+
"/docs/integrations/microsoft-azure/microsoft-defender-for-office-365": "/docs/integrations/microsoft-azure/microsoft-defender-for-cloud-apps",
44994506
"/docs/integrations/azure": "/docs/integrations/microsoft-azure",
45004507
"/docs/search/copilot": "/docs/search/mobot",
45014508
"/docs/search/copilot-unstructured-logs-beta": "/docs/search/mobot-unstructured-logs-beta",

docs/dashboards/panels/map-charts.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ To add a panel with a Cluster or Heatmap:
2929
1. Click the **Add to Dashboard** button on the top right of the window to add the panel to your dashboard.<br/><img src={useBaseUrl('/img/dashboards/create-dashboard/Add-to-Dashboard-button.png')} alt="Add to Dashboard button" style={{border: '1px solid gray'}} width="300"/>
3030

3131
### Limitations
32-
* Map charts have a display limit of 10,000 results.
32+
* Map charts queries have a display limit of 1440 results. If your query exceeds this limit, consider refining your query to see all results in the chart.
3333
* Colors of map markers cannot be changed.
3434

3535
## Missile map

docs/get-started/library.md

Lines changed: 2 additions & 56 deletions
Original file line numberDiff line numberDiff line change
@@ -179,63 +179,9 @@ The Home page lists all currently running searches and any searches performed ov
179179

180180
### Pinned searches
181181

182-
The **Pinned Search** feature allows you to start a search, then pin it, so it will continue running in the background independent of the browser session. Then, you can close the Search tab or log out and find your results later in the library on the [Recent](#recent-searches) tab in a folder named Pinned Searches.
182+
The *pinned search* feature allows you to start a search, then "pin" it, so it will continue running in the background independent of the browser session. Then, you can close the **Search** page or log out and find your results later.
183183

184-
Once pinned, a search will run in the background for up to 24 hours. If it has not finished by then, it will be paused. There is no notification when your search is paused, but you can just restart the search to continue the query. Search results are available for three days.
185-
186-
There is a limit of ten pinned searches per user. Also, queries that use the [save operator](/docs/search/search-query-language/search-operators/save) cannot be pinned.
187-
188-
A search must be started in order for the pin button to show up in the Search tab. Once a search is pinned, you can easily unpin it, or remove it from the Pinned Searches tab. In the Pinned Searches folder, you can view the **Name****Status****Elapsed Time**, and monitor the **Progress** of each search.
189-
190-
There is a known issue that may cause Pinned Searches to be lost when Sumo Logic performs an upgrade. For information on Scheduled Maintenance for your deployment, see [Sumo Logic Status](http://status.sumologic.com)
191-
192-
#### Pin and unpin a search
193-
194-
1. Enter a query in the search box and click **Start**.
195-
1. Click the three-dot kebab icon and click **Pin** from the provided options. <br/> <img src={useBaseUrl('img/get-started/library/pin-search-option.png')} alt="pin-search-option.png" width="325"/>
196-
1. A message displays that tells you where you can find it later in the library. The Pinned Search is named by default with the name of the search tab. <br/>![pinmessage.png](/img/get-started/library/pinmessage.png)
197-
1. To change the name of the pinned search, double-click the **Search** tab to activate the name field and enter a new name.
198-
1. To preserve the pinned search, follow the steps in Save a pinned search.
199-
1. To unpin the search, click **Unpin** in the menu bar. <br/><img src={useBaseUrl('img/get-started/library/unpin-search-option.png')} alt="pin-search-option.png" width="300"/>
200-
201-
#### Save a pinned search
202-
203-
When you save a pinned search, it appears in your personal folder in the left navigation bar.
204-
205-
1. Click the name of the search to open it in the **Search** tab.
206-
1. In the **Search** tab, click the three-vertical dot icon and click **Save As** from the provided options. The Save Item dialog appears.
207-
1. Enter a unique **Name** in the text field. In our example below, we entered Invoke Frequency.
208-
1. Optionally, enter a **Description**.
209-
1. Click **Save**. <br/>![Save_As_Search_dialog.png](/img/get-started/library/Save_As_Search_dialog.png)
210-
211-
The search is saved to your **Personal** folder.
212-
213-
#### Manage pinned searches
214-
215-
This section shows you how to open previously pinned searches, rename a pinned search, and remove a search from the pinned search list,
216-
217-
To open a previously pinned search:
218-
219-
1. In the **Pinned Searches** tab, click the name of the search.
220-
1. The search query and any existing results are displayed in the **Search** tab.
221-
1. To run a new instance of the search, change the Time Range Expression, and click **Start**.
222-
223-
To rename a pinned search:
224-
225-
1. In the **Pinned Searches** tab, click the name of the search.
226-
1. The search query and any existing results are displayed in the **Search** tab.
227-
1. Double-click the **Search** tab to reactivate the name field.
228-
1. Enter a new name and press **Enter**.
229-
230-
To remove a search from the pinned search List:
231-
232-
1. Hover over the search, then click the three-dot kebab menu icon to the right of the name.
233-
1. Click **Unpin**.
234-
1. In the **Confirm** dialog, click **OK**.
235-
236-
The search is removed from the list of Pinned Searches.
237-
238-
Removing an instance of a Saved Search from the list in the Pinned Searches tab does not delete the Saved Search from your Personal folder.
184+
For more information, see [Pin a Search](/docs/search/get-started-with-search/search-page/pin-a-search).
239185

240186
### Share a saved search from the library
241187

docs/get-started/sumo-logic-ui-classic.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -195,7 +195,7 @@ To pin a search, do the following:
195195
1. A message appears telling you the location of your pinned search in the Library. The Pinned Search takes the name of the Search tab by default.<br/> ![pinmessage.png](/img/get-started/ui/pinmessage.png)
196196
1. To change the name of a Pinned Search, double-click the Search tab and enter a new name in the name field.
197197

198-
For information on how to manage pinned searches, see the [Pinned Searches](/docs/get-started/library#pinned-searches) page.
198+
For information on how to manage pinned searches, see [Pin a Search](/docs/search/get-started-with-search/search-page/pin-a-search).
199199

200200
### Manage your personal account preferences
201201

docs/get-started/sumo-logic-ui.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -192,7 +192,7 @@ You must start a search for the **Pin** option to appear. To pin a search, do t
192192
193193
Once a search is pinned, it cannot be unpinned, but you can remove it from the **Pinned Searches** tab. You can pin up to 10 searches at a time. Queries that use the [`save` operator](/docs/search/search-query-language/search-operators/save) cannot be pinned.
194194
195-
For more information, see [Pinned Searches](/docs/get-started/library/#pinned-searches).
195+
For more information, see [Pin a Search](/docs/search/get-started-with-search/search-page/pin-a-search).
196196
197197
198198
## Administrator tasks

docs/integrations/sumo-apps/data-volume.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -62,7 +62,7 @@ Use this dashboard to:
6262
The **Data Volume - Metrics** dashboard allows you to view your metrics ingested, identifies ingest outliers/spikes, and helps predict what ingestion is going to be.
6363

6464
Use this dashboard to:
65-
* Determine the ingested DPM by various dimensions their
65+
* Determine the ingested DPM by various dimensions.
6666
* Examine trends over time.
6767
* Identify the spikes where current hour ingestion is above 50% from the last hour.
6868
* Identify ingestion outliers and forecast data ingestion, analyze the comparison of your current ingestion to your capacity, and review any overages. You must configure the “Metric_DPM_Ingest_Capacity” variable that needs to be configured based on Account Subscription. If you have a Credit-based plan, please check with your account executive to determine these values for your account. Otherwise, see the [**Account Overview**](/docs/manage/manage-subscription/sumo-logic-credits-accounts/#account-overview) page to see your Capacity Values.

0 commit comments

Comments
 (0)