-
Notifications
You must be signed in to change notification settings - Fork 206
Closed
Labels
Feature: ExceptionsTeam: Detections/ResponseDetections and ResponseDetections and ResponseTeam: Security PlatformIncludes Cyber Threat Intelligence (CTI) teamIncludes Cyber Threat Intelligence (CTI) teamTeam: Security Solutionv8.5.0
Description
Description
We are updating the exceptions UI/UX. Much of it is not necessarily new functionality, but updated flows. To be a bit more specific, a lot of this already exists on the API for exceptions, but was not exposed in the UI. However, it is going to touch a lot of surface area.
Ticket will be updated as we merge changes in.
[Update 9.14.22] - much of epic has been pushed to 8.6. This ticket will reflect only what is going in 8.5.
Changes made
Rule details exceptions tab
- Exceptions tab is now split into
Rule exceptionstab andEndpoint exceptionstab [PR]- If the rule is not linked to the endpoint exception list, the
Endpoint exceptiontab will not be shown
- If the rule is not linked to the endpoint exception list, the
- The exception item UI has been updated [PR]
- It now includes an
Affects x rulesbutton that shows the user which rules are affected by the exception item- Clicking on it shows the rules and user can click to navigate to that rule
- It now includes an
- The view for when no exception items exists is updated [PR]
The exceptions list management page, edit/add modal all remain unchanged.
Metadata
Metadata
Assignees
Labels
Feature: ExceptionsTeam: Detections/ResponseDetections and ResponseDetections and ResponseTeam: Security PlatformIncludes Cyber Threat Intelligence (CTI) teamIncludes Cyber Threat Intelligence (CTI) teamTeam: Security Solutionv8.5.0