Skip to content

Commit a43722f

Browse files
move privileges out of tables
1 parent a43e3cb commit a43722f

File tree

1 file changed

+30
-6
lines changed

1 file changed

+30
-6
lines changed

solutions/security/advanced-entity-analytics/entity-risk-scoring-requirements.md

Lines changed: 30 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -23,9 +23,18 @@ To turn on the risk scoring engine, you need the following:
2323

2424
### Privileges [_privileges]
2525

26-
| Cluster | Index | {{kib}} |
27-
| --- | --- | --- |
28-
| - `manage_index_templates`<br>- `manage_transform`<br> | `all` privilege for `risk-score.risk-score-*` | **Read** for the **Security** feature |
26+
#### Cluster
27+
28+
- `manage_index_templates`
29+
- `manage_transform`
30+
31+
#### Index
32+
33+
`All` privilege for `risk-score.risk-score-*`
34+
35+
#### {{kib}}
36+
37+
**Read** for the **Security** feature
2938

3039
### Predefined roles [ers_roles]
3140

@@ -82,8 +91,23 @@ To use asset criticality, you need the following:
8291

8392
To enable the entity store, you need the following privileges:
8493

85-
| Cluster | Index | {{kib}} |
86-
| --- | --- | --- |
87-
| - `manage_enrich`<br>- `manage_index_templates`<br>- `manage_ingest_pipelines`<br>- `manage_transform`<br> | - `read` and `view_index_metadata` for `.asset-criticality.asset-criticality-*`<br>- `read` and `manage` for `risk-score.risk-score-*`<br>- `read` and `manage` for `.entities.v1.latest.*`<br>- `read` and `view_index_metadata` for all {{elastic-sec}} indices<br> | **All** for the **Security** and **Saved Objects Management** features |
94+
#### Cluster
95+
96+
- `manage_enrich`
97+
- `manage_index_templates`
98+
- `manage_ingest_pipelines`
99+
- `manage_transform`
100+
101+
#### Index
102+
103+
- `read` and `view_index_metadata` for `.asset-criticality.asset-criticality-*`
104+
- `read` and `manage` for `risk-score.risk-score-*`
105+
- `read` and `manage` for `.entities.v1.latest.*`
106+
- `read` and `view_index_metadata` for all {{elastic-sec}} indices
107+
108+
#### {{kib}}
109+
110+
**All** for the **Security** and **Saved Objects Management** features
111+
88112

89113
% pending info about user roles / custom role privileges needed for entity store in serverless

0 commit comments

Comments
 (0)