Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security Solution] [Detections] Replace rule status saved object #83235

Closed
dhurley14 opened this issue Nov 12, 2020 · 2 comments
Closed

[Security Solution] [Detections] Replace rule status saved object #83235

dhurley14 opened this issue Nov 12, 2020 · 2 comments
Assignees
Labels
enhancement New value added to drive a business result Feature:Detection Rules Security Solution rules and Detection Engine Feature:RAC label obsolete Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. technical debt Improvement of the software architecture and operational architecture Theme: rac label obsolete v7.13.0

Comments

@dhurley14
Copy link
Contributor

dhurley14 commented Nov 12, 2020

Same as: #91265

Describe the feature:

With the addition of #82401 (issue: #79785) We now have the ability to record executionStatus errors to the event log and most likely no longer need the rule status saved objects. I think it would be in our best interest to start removing references to this and hopefully move to only using the event log for managing error history and current status.

@dhurley14 dhurley14 added discuss v7.12.0 Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:SIEM labels Nov 12, 2020
@elasticmachine
Copy link
Contributor

Pinging @elastic/siem (Team:SIEM)

@dhurley14 dhurley14 added the Feature:Detection Rules Security Solution rules and Detection Engine label Nov 12, 2020
@banderror banderror self-assigned this Feb 17, 2021
@banderror banderror added v7.13.0 enhancement New value added to drive a business result technical debt Improvement of the software architecture and operational architecture and removed v7.12.0 Team:SIEM discuss labels Feb 17, 2021
@dontcallmesherryli dontcallmesherryli added Feature:RAC label obsolete Theme: rac label obsolete labels Apr 12, 2021
@peluja1012
Copy link
Contributor

Closing as dupe of #91265

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New value added to drive a business result Feature:Detection Rules Security Solution rules and Detection Engine Feature:RAC label obsolete Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. technical debt Improvement of the software architecture and operational architecture Theme: rac label obsolete v7.13.0
Projects
None yet
Development

No branches or pull requests

5 participants