Skip to content

[Internal]: Endpoint exceptions no longer running in Detection Engine #2737

@yctercero

Description

@yctercero

Description

Defend Workflows is taking ownership of Endpoint Exceptions. There will be a bunch of UI/UX changes that I'm sure they're already working with docs on. Specific to Detection Engine, however, we will no longer include endpoint exceptions within the Detection Engine logic. In other words, these exceptions will now just be utilized on endpoints.

We need to document this change for the user.

Resources

See ticket: https://github.com/elastic/security-team/issues/13777

Which documentation set does this change impact?

Elastic On-Prem and Cloud (all)

Feature differences

See description.

What release is this request related to?

9.2

Serverless release

Unsure.

Collaboration model

The documentation team

Point of contact.

Main contact: @yctercero

Stakeholders: @approksiu @nkhristinin @dasansol92

Metadata

Metadata

Assignees

No one assigned

    Labels

    Team:ExperienceIssues owned by the Experience Docs Team

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions