-
Notifications
You must be signed in to change notification settings - Fork 206
Closed
Labels
Feature: RulesTeam: Detections/ResponseDetections and ResponseDetections and ResponseTeam: Docsv8.3.0
Description
Description
The rule execution logs table now includes an Actions column with an icon for creating a filter based on that particular rule execution id. This adds the filter to the main page-level KQL bar and removes any other previously active filters, and it resets the main timepicker to the range of that rule execution.
- [Security Solution][Detections] Adds rule execution log table kibana#126215 - I think the filter icon was originally added as part of the initial rollout of rule execution logs, but didn't get released in 8.2. Some fixes came later:
Screenshot
Metadata
Metadata
Assignees
Labels
Feature: RulesTeam: Detections/ResponseDetections and ResponseDetections and ResponseTeam: Docsv8.3.0
