-
Notifications
You must be signed in to change notification settings - Fork 8.5k
Closed
Closed
Enhancement
Copy link
Labels
8.19 candidate9.1 candidateFeature:Prebuilt Detection RulesSecurity Solution Prebuilt Detection Rules areaSecurity Solution Prebuilt Detection Rules areaFeature:Rule DetailsSecurity Solution Detection Rule Details pageSecurity Solution Detection Rule Details pageTeam: SecuritySolutionSecurity Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.Team:Detection Rule ManagementSecurity Detection Rule Management TeamSecurity Detection Rule Management TeamTeam:Detections and RespSecurity Detection Response TeamSecurity Detection Response TeamUX: UI/UX DesignsRequires design mocks before development and UX lead approval on PR before merge.Requires design mocks before development and UX lead approval on PR before merge.enhancementNew value added to drive a business resultNew value added to drive a business result
Description
Epic: #179907
Summary
To help users understand what changes were made to the prebuilt Elastic rule, we want to indicate that field was customised, and allow to see the previous field version.
Telemetry:
- collect events for viewing previous field version
Acceptance criteria
- every modified field of the Elastic Prebuilt rule is clearly indicated in UI
- User can view the previous Elastic version of the field
- user cannot see any previous custom field modifications.
Design
Release progress
- UX design is done by @ARWNightingale.
- Test plan is written and approved by the team.
- Initial implementation is done.
- Automated tests are written based on the test plan.
- Acceptance testing is done by @approksiu and @ARWNightingale.
- Exploratory testing is done by
@pborgonovi@chetnarajput-qasource. - UI copies are suggested by @nastasha-solomon and ready to be implemented (link to the ticket)
- Feature is fully implemented and is ready to be released.
- Documentation is written for Serverless and ESS by @nastasha-solomon (ticket).
- Feature is released in Serverless.
Planned release in Serverless: DONE.
Planned release in ESS: v8.19.0, v9.1.0.
Metadata
Metadata
Assignees
Labels
8.19 candidate9.1 candidateFeature:Prebuilt Detection RulesSecurity Solution Prebuilt Detection Rules areaSecurity Solution Prebuilt Detection Rules areaFeature:Rule DetailsSecurity Solution Detection Rule Details pageSecurity Solution Detection Rule Details pageTeam: SecuritySolutionSecurity Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.Team:Detection Rule ManagementSecurity Detection Rule Management TeamSecurity Detection Rule Management TeamTeam:Detections and RespSecurity Detection Response TeamSecurity Detection Response TeamUX: UI/UX DesignsRequires design mocks before development and UX lead approval on PR before merge.Requires design mocks before development and UX lead approval on PR before merge.enhancementNew value added to drive a business resultNew value added to drive a business result