Skip to content

Commit d54d126

Browse files
mergify[bot]nastasha-solomongithub-actions[bot]
authored
[8.x] [Serverless][8.16] New notes experience - Impacted screenshots and misc updates (backport #6072) (#6078)
* [Serverless][8.16] New notes experience - Impacted screenshots and misc updates (#6072) * Re-adds images * Adds notes to landing page for investigative tools * Fix Serverless TOC * Fixes threat intel images * Adds size configs * fixes file name * Minor tweaks (cherry picked from commit 1b13703) # Conflicts: # docs/serverless/alerts/view-alert-details.asciidoc # docs/serverless/images/interactive-investigation-guides/-detections-ig-alert-flyout-invest-tab.png # docs/serverless/images/interactive-investigation-guides/-detections-ig-alert-flyout.png # docs/serverless/images/interactive-investigation-guides/-detections-ig-timeline-query.png # docs/serverless/images/interactive-investigation-guides/-detections-ig-timeline.png # docs/serverless/images/timeline-templates-ui/-events-create-a-timeline-template-field.png # docs/serverless/images/timelines-ui/-events-correlation-tab-eql-query.png # docs/serverless/images/timelines-ui/-events-timeline-sidebar.png # docs/serverless/images/timelines-ui/-events-timeline-ui-renderer.png # docs/serverless/images/timelines-ui/-events-timeline-ui-updated.png # docs/serverless/images/view-alert-details/-detections-alert-details-flyout-preview-panel.gif # docs/serverless/images/view-alert-details/-detections-alert-details-flyout-right-panel.png # docs/serverless/images/view-alert-details/-detections-expand-details-button.png # docs/serverless/images/view-alert-details/-detections-expanded-correlations-view.png # docs/serverless/images/view-alert-details/-detections-expanded-entities-view.png # docs/serverless/images/view-alert-details/-detections-expanded-prevalence-view.png # docs/serverless/images/view-alert-details/-detections-expanded-threat-intelligence-view.png # docs/serverless/images/view-alert-details/-detections-open-alert-details-flyout.gif # docs/serverless/index.asciidoc # docs/serverless/investigate/investigate-events.asciidoc # docs/serverless/investigate/timeline-templates-ui.asciidoc # docs/serverless/investigate/timelines-ui.asciidoc # docs/serverless/osquery/invest-guide-run-osquery.asciidoc # docs/serverless/rules/interactive-investigation-guides.asciidoc * Delete docs/serverless directory and its contents --------- Co-authored-by: Nastasha Solomon <[email protected]> Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
1 parent 2523bd2 commit d54d126

19 files changed

+7
-7
lines changed

docs/detections/alerts-view-details.asciidoc

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -52,7 +52,7 @@ IMPORTANT: If you've enabled grouping on the Alerts page, the alert details flyo
5252
[[preview-panel]]
5353
=== Preview panel
5454

55-
Some areas in the flyout provide previews when you click on them. For example, clicking **Show rule summary** in the rule description displays a preview of the rule's details. To close the preview, click **x**.
55+
Some areas in the flyout provide previews when you click on them. For example, clicking **Show rule summary** in the rule description displays a preview of the rule's details. To close the preview, click **Back** or **x**.
5656

5757
[role="screenshot"]
5858
image::images/alert-details-flyout-preview-panel.gif[Preview panel of the alert details flyout, 65%]
@@ -67,13 +67,13 @@ The left panel provides an expanded view of what's shown in the right panel. To
6767
+
6868

6969
[role="screenshot"]
70-
image::images/expand-details-button.png[Expand details button at the top of the alert details flyout, 45%]
70+
image::images/expand-details-button.png[Expand details button at the top of the alert details flyout, 65%]
7171

7272
* Click one of the section titles on the **Overview** tab within the right panel.
7373
+
7474

7575
[role="screenshot"]
76-
image::images/alert-details-flyout-left-panel.png[Left panel of the alert details flyout, 45%]
76+
image::images/alert-details-flyout-left-panel.png[Left panel of the alert details flyout, 65%]
7777

7878
[discrete]
7979
[[about-section]]
@@ -201,7 +201,7 @@ From the right panel, click **Threat intelligence** to open the expanded Threat
201201
NOTE: The expanded threat intelligence view queries indices specified in the `securitySolution:defaultThreatIndex` advanced setting. Refer to <<update-threat-intel-indices, Update default Elastic Security threat intelligence indices>> to learn more about threat intelligence indices.
202202

203203
[role="screenshot"]
204-
image::images/expanded-threat-intelligence-view.png[Expanded view of threat intelligence on the alert, 70%]
204+
image::images/expanded-threat-intelligence-view.png[Expanded view of threat intelligence on the alert, 80%]
205205

206206
The expanded Threat intelligence view shows individual indicators within the alert document. You can expand and collapse indicator details by clicking the arrow button at the end of the indicator label. Each indicator is labeled with values from the `matched.field` and `matched.atomic` fields and displays the threat intelligence provider.
207207

@@ -256,7 +256,7 @@ NOTE: To access data about alerts related by process ancestry, you must have a h
256256
From the right panel, click **Correlations** to open the expanded Correlations view within the left panel.
257257

258258
[role="screenshot"]
259-
image::images/expanded-correlations-view.png[Expanded view of correlation data, 65%]
259+
image::images/expanded-correlations-view.png[Expanded view of correlation data, 75%]
260260

261261
In the expanded view, corelation data is organized into several tables:
262262

-46.9 KB
Loading
-61.4 KB
Loading
-9.62 KB
Loading
89.7 KB
Loading
-34.4 KB
Loading
-82.9 KB
Loading
21.2 KB
Loading
20.9 KB
Loading
-12 KB
Loading

0 commit comments

Comments
 (0)