[Security Solution] Rule execution marked as failed when the rule is modified meanwhile is executed #82320
Labels
bug
Fixes for quality problems that affect the customer experience
Feature:Detection Rules
Security Solution rules and Detection Engine
fixed
impact:high
Addressing this issue will have a high level of impact on the quality/strength of our product.
Team:Detections and Resp
Security Detection Response Team
Team: SecuritySolution
Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.
v7.11.0
Describe the bug:
Rule execution fails when the rule is modified meanwhile is executed. This is more likely to happen with rules that takes time to be processed.
Kibana/Elasticsearch Stack version:
Initial status:
indicator match
rule created with a biglook-back time
(i.e.30000 hours
) and a small execution time (i.e.10 seconds
)Steps to reproduce:
Indicator Index Pattern
Current behavior:
Expected behavior:
Additional information:
The text was updated successfully, but these errors were encountered: