[Docs][Exceptions] - Auto fill exceptions from alert data #3276
Labels
documentation
Improvements or additions to documentation
Feature: Exceptions
Team: Detection Engine
Team: Detections/Response
Detections and Response
Team: Security Solution
v8.9.0
Description
This issue aims to enhance the feature of auto-populating Rule Exceptions that are created from Alerts.
Currently, Rule Exceptions can be created from both the Alerts table and the Alert summary flyout action button. The goal is to automatically populate the Rule Exceptions with the relevant fields extracted from the Alert. However, certain fields that are deemed irrelevant to the Rule Exception need to be stripped out as described here.
Version: This feature should be in 8.9
PR: elastic/kibana#159029
Doc updates
Notes
The text was updated successfully, but these errors were encountered: