Skip to content

Commit 68f6806

Browse files
authored
Update beta_program.mdx
More details about torterra beta
1 parent 5f8fa98 commit 68f6806

File tree

1 file changed

+26
-7
lines changed

1 file changed

+26
-7
lines changed

crowdsec-docs/unversioned/beta_program.mdx

Lines changed: 26 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -22,18 +22,37 @@ To join the CrowdSec Beta program, click the [Beta opt-in option directly in the
2222

2323
### CrowdSec Threat Forecast Blocklist - Beta starts 2024-10-25
2424

25-
#### What is it ?
25+
#### What is it and what to expect?
2626

27-
The Threat Forecast Blocklist is a dynamic, adaptive blocklist customized to your organization's signals. By identifying attacks on similar profiles, it predicts threats that will likely target your organization in the coming days.
27+
The **Threat Forecast Blocklist** is a dynamic, adaptive blocklist customized to your organization's signals.
28+
By identifying attacks on similar profiles, it predicts threats that will likely target your organization in the coming days.
29+
It will update every 24 hours, and the signals of all your Security Engines will be considered to build the prediction.
2830

29-
The Threat Forecast Blocklist will update every 24 hours, and the signals of all your Security Engines will be considered to build the prediction.
31+
It's tailored to your organization; hence, we expect that it should allow preemptive remediation, resulting in a **drop in the number of alerts**.
32+
Optionally, if you have an iptables of nftables remediation component, you'll be able to see some [metrics about this blocklist's efficiency](https://docs.crowdsec.net/docs/next/observability/usage_metrics)
3033

31-
#### Who will have access to it ?
34+
#### Who will have access to it?
3235

33-
If you have at least one enrolled security engine with an average of more than 100 alerts a week (total on your organization) you have a chance to be invited.
34-
You'll receive an email on Friday October the 25th 2024.
36+
If you have at least one enrolled security engine with an average of more than 100 alerts a week (total for your organization) you have a chance to be invited.
37+
You'll receive an email on Friday, October the 25th, 2024.
3538

36-
**Important note**: You will have 15 days to start using the Threat Forecast Blocklist and 30 days total starting today to test it out. If you do not use it within 15 days, your access will be reallocated to someone else.
39+
**Important note**: You will have 15 days to start using the Threat Forecast Blocklist and 30 days in total starting today to test it out. If you do not use it within 15 days, your access will be reallocated to someone else.
40+
41+
#### How to subscribe to this blocklist
42+
43+
- Log into your console account
44+
- Go to the blocklist catalog and search "forecast": https://app.crowdsec.net/blocklists?page=1&q=forecast
45+
- If you're part of the this beta, you should see the **Threat Forecast Blocklist**
46+
- Click on it
47+
- You should have landed in the details page for this blocklist
48+
- Click on subscribe
49+
- In the subscription popup
50+
- Select the tab "Security Engines"
51+
- Chose one or more engines to subscribe to this blocklist
52+
- Select the desired remediation (we recommend **Ban**)
53+
- Click confirm subscription
54+
55+
Note that you must have a [remediation component](https://doc.crowdsec.net/u/bouncers/intro) on those engines to effectively block the IPs.
3756

3857
## Your feedback is key
3958

0 commit comments

Comments
 (0)