Skip to content

Commit 34c2b51

Browse files
Update max limit of notes (#7113)
1 parent a742418 commit 34c2b51

File tree

2 files changed

+1
-7
lines changed

2 files changed

+1
-7
lines changed

docs/events/add-manage-notes.asciidoc

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33

44
Incorporate notes into your investigative workflows to coordinate responses, conduct threat hunting, and share investigative findings. You can attach notes to alerts, events, and Timelines and manage them from the **Notes** page.
55

6-
NOTE: Configure the `securitySolution:maxUnassociatedNotes` <<max-notes-alerts-events,advanced setting>> to specify the maximum number of notes that you can attach to alerts and events.
6+
NOTE: You can attach up to 100 notes to alerts and events. The number of notes you can attach to Timelines is unlimited.
77

88
[discrete]
99
[[notes-privileges]]

docs/getting-started/advanced-setting.asciidoc

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -177,12 +177,6 @@ By default, Elastic prebuilt rules in the *Rules* and *Rule Monitoring* tables i
177177

178178
The `securitySolution:alertTags` field determines which options display in the alert tag menu. The default alert tag options are `Duplicate`, `False Positive`, and `Further investigation required`. You can update the alert tag menu by editing these options or adding more. To learn more about using alert tags, refer to <<apply-alert-tags>>.
179179

180-
[discrete]
181-
[[max-notes-alerts-events]]
182-
== Set the maximum notes limit for alerts and events
183-
184-
The `securitySolution:maxUnassociatedNotes` field determines the maximum number of <<add-manage-notes,notes>> that you can attach to alerts and events. The maximum limit and default value is 10000.
185-
186180
[discrete]
187181
[[exclude-cold-frozen-data-rule-executions]]
188182
== Exclude cold and frozen data from rules

0 commit comments

Comments
 (0)