Skip to content

Commit

Permalink
Documents reputation service (#3855)
Browse files Browse the repository at this point in the history
* Documents reputation service

* Applies tech review feedback

* tweaks wording
  • Loading branch information
natasha-moore-elastic authored Sep 11, 2023
1 parent d899f4c commit e2517b0
Show file tree
Hide file tree
Showing 2 changed files with 4 additions and 0 deletions.
4 changes: 4 additions & 0 deletions docs/getting-started/configure-integration-policy.asciidoc
Original file line number Diff line number Diff line change
Expand Up @@ -164,6 +164,10 @@ Malicious behavior protection levels are:
* **Prevent** (Default): Detects malicious behavior on the host, forces the process to stop,
and generates an alert.

Select whether you want to use **Reputation service** for additional malware analysis. This service identifies malicious activity and false positives, and enriches alerts using data from various sources, such as VirusTotal and telemetry. For example, reputation service can detect suspicious downloads of binaries with low or malicious reputation.

NOTE: Reputation service requires an active https://www.elastic.co/pricing[Platinum or Enterprise subscription] and is available on cloud deployments only.

Select **Notify user** to send a push notification in the host operating system when activity is detected or prevented. Notifications are enabled by default for the *Prevent* option.

TIP: Platinum and Enterprise customers can customize these notifications using the `Elastic Security {action} {rule}` syntax.
Expand Down
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.

0 comments on commit e2517b0

Please sign in to comment.