Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[DOCS] What's new in 8.3 #2052

Closed
13 of 15 tasks
jmikell821 opened this issue Jun 8, 2022 · 1 comment · Fixed by #2155
Closed
13 of 15 tasks

[DOCS] What's new in 8.3 #2052

jmikell821 opened this issue Jun 8, 2022 · 1 comment · Fixed by #2155
Assignees

Comments

@jmikell821
Copy link
Contributor

jmikell821 commented Jun 8, 2022

Please include the link to your corresponding PRs!

What's new highlights for 8.3:

Detections & Response/CTI

OLM

Threat Hunting

ResponseOps

  • Users can enable and set up OAuth authentication for ServiceNow connectors. [DOCS] OAuth authentication added to SN connectors #2048 (might add more detail to this - following up with dev)
  • Multiple enhancements to cases: [DOCS] Case enhancements in 8.3 #2050
    • Users can assign a severity level to cases. If they do not set the case's severity, it defaults to Low.
    • The Cases table now includes a Severity column and un option to filter the table by severity.
    • The Average time to close metric has been added to the Cases table. This metric measures the average amount of time it takes to close cases.
    • Users can now delete text comments, including Lens visualizations. They cannot delete alerts or user actions in the case history.
    • Multiple alerts can be added to new and existing cases via the Bulk actions menu.
    • The case icon has been updated on the Saved Objects and Cases and Connectors pages.
    • An Alerts tab has been added to the case details page. This allows users to view all alerts attached to a case.

AWP

  • [ ]

Cloud Security Posture

Endpoint

  • N/A - Refer to OLM section above

Asset Management

@lcawl
Copy link
Contributor

lcawl commented Jun 16, 2022

Users can enable and set up OAuth authentication for ServiceNow connectors. #2048 (might add more detail to this - following up with dev)

FYI This will be mentioned in the Kibana release highlights.

Users can assign a severity level to cases. If they do not set the case's severity, it defaults to Low.

Ditto

The Average time to close metric has been added to the Cases table. This metric measures the average amount of time it takes to close cases.

Ditto

Users can now delete text comments, including Lens visualizations. They cannot delete alerts or user actions in the case history.

The ability to delete comments will be in the Kibana release highlights. The bit about alerts will not, since attaching alerts to cases isn't supported yet in the core Stack Management feature.

Multiple alerts can be added to new and existing cases via the Bulk actions menu.

This is applicable only to Security and Observability apps, so it won't be covered in the Kibana release highlights. For tracking purposes, details are in elastic/kibana#128875. If you need any additional information or assistance from me, let me know!

There's an additional item that's likely worth mentioning in the Security (and Observability highlights): elastic/kibana#116501. Per @cnasikas the gist is it's an "alerts table in Cases. Users can see their alerts attached to a case in the table"

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants