Skip to content

Commit af8aca0

Browse files
KDKHDbenironside
andauthored
[Security Solution] [AI assistant] Docs for AI assistant esql generation with self healing (#6934)
* Include in documentation changes to ES|QL generation in the security AI assistant * Update docs/AI-for-security/ai-security-assistant.asciidoc Co-authored-by: Benjamin Ironside Goldstein <[email protected]> * Update docs/AI-for-security/ai-security-assistant.asciidoc --------- Co-authored-by: Benjamin Ironside Goldstein <[email protected]>
1 parent dc0af2e commit af8aca0

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

docs/AI-for-security/ai-security-assistant.asciidoc

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -162,6 +162,8 @@ The **Knowledge base** tab of the **Security AI settings** page allows you to en
162162

163163
Elastic AI Assistant allows you to take full advantage of the {elastic-sec} platform to improve your security operations. It can help you write an {esql} query for a particular use case, or answer general questions about how to use the platform. Its ability to assist you depends on the specificity and detail of your questions. The more context and detail you provide, the more tailored and useful its responses will be.
164164

165+
NOTE: AI Assistant has access to index names and field metadata from your cluster. This contextual information helps improve {{esql}} generation, however it may slightly increase response times compared to previous Kibana versions.
166+
165167
To maximize its usefulness, consider using more detailed prompts or asking for additional information. For instance, after asking for an {esql} query example, you could ask a follow-up question like, “Could you give me some other examples?” You can also ask for clarification or further exposition, for example "Please provide comments explaining the query you just gave."
166168

167169
In addition to practical advice, AI Assistant can offer conceptual advice, tips, and best practices for enhancing your security measures. You can ask it, for example:

0 commit comments

Comments
 (0)