Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security Solution] 'Update rule' button is disabled when there are prebuilt rules updates available #198155

Closed
Tracked by #201502
pborgonovi opened this issue Oct 29, 2024 · 6 comments
Assignees
Labels
8.16 candidate bug Fixes for quality problems that affect the customer experience Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area fixed impact:high Addressing this issue will have a high level of impact on the quality/strength of our product. Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. v8.16.0

Comments

@pborgonovi
Copy link
Contributor

pborgonovi commented Oct 29, 2024

Describe the bug:
When there are prebuilt rules updates and user launches 'Rule Updates' page, the 'Update rule' button is disabled. Rule updates can only be done via bulk action.

Kibana/Elasticsearch Stack version:
8.16

Server OS version:

Browser and Browser OS versions:

Elastic Endpoint version:

Original install method (e.g. download page, yum, from source, etc.):

Functional Area (e.g. Endpoint management, timelines, resolver, etc.):
Prebuilt Rules Upgrade

Pre requisites:

  1. Have an old rules package version installed (e.g 8.4.2)
  2. Have prebuilt rules installed

Steps to reproduce:

  1. Upgrade rules package to the latest (8.16.0)
  2. Launch 'Rules Updates' page

Current behavior:
'Update rule' button is disabled

Expected behavior:
'Update rule' button is enabled

Screenshots (if relevant):

Image

Errors in browser console (if relevant):

Provide logs and/or server output (if relevant):

Any additional context (logs, chat logs, magical formulas, etc.):

@pborgonovi pborgonovi added bug Fixes for quality problems that affect the customer experience impact:high Addressing this issue will have a high level of impact on the quality/strength of our product. Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team triage_needed labels Oct 29, 2024
@elasticmachine
Copy link
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detections-response (Team:Detections and Resp)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detection-rule-management (Team:Detection Rule Management)

@pborgonovi pborgonovi added the Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area label Oct 29, 2024
@banderror banderror changed the title [Security Solution] [Rule Management] 'Update rule' button is disabled when there are prebuilt rules updates available [Security Solution] 'Update rule' button is disabled when there are prebuilt rules updates available Oct 29, 2024
@banderror banderror removed their assignment Oct 29, 2024
@pborgonovi
Copy link
Contributor Author

@maximpn @banderror
Just validated the fix locally and it looks good:

Image

Image

I'm just keeping this bug open so I can double check with BC 3. Should everything goes well I'll have this issue closed.

Thank you

@banderror
Copy link
Contributor

Fixed in #198106 and backported to 8.16 and 8.17.

@pborgonovi
Copy link
Contributor Author

Confirmed fix in both 8.16 BC3 and main branch:

816 BC3:

Image
Image

Main:

Image
Image

Closing this bug as fixed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
8.16 candidate bug Fixes for quality problems that affect the customer experience Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area fixed impact:high Addressing this issue will have a high level of impact on the quality/strength of our product. Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. v8.16.0
Projects
None yet
Development

No branches or pull requests

4 participants