[Security Solution] Bring Alert Grouping Feature into GA #152134
Labels
8.8 candidate
Team: SecuritySolution
Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.
Team:Threat Hunting:Explore
Team:Threat Hunting
Security Solution Threat Hunting Team
v8.8.0
Alert grouping was introduced as
Technical Preview
in 8.7. There are a few tasks we need to take care of before the feature reachesGeneral Availability
.Product owner: @paulewing
Designer: ??? ask @YulNaumenko
Teams impacted: explore (@YulNaumenko), detections (@logeekal )
1. Unit test coverage
x-pack/plugins/security_solution/public/detections/components/alerts_table/grouped_alerts.tsx
2. Bug fixes
3. User flow fixes
A user only has one rule and it is building block. Toggle it off, all groups disappear and query empty. You have no way to toggle it back on unless you add a new rule to bring a group back and toggle it back on. This video sort of demonstrates that, but luckily in this scenario we have other rules we can use to bring it back
uhoh2.mov
4. Cypress tests
Last. Remove beta label
BETA
label from feature:The text was updated successfully, but these errors were encountered: