-
Notifications
You must be signed in to change notification settings - Fork 191
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Timeline docs should be updated with the new UI. #4306
Comments
@nastasha-solomon , updated the tour PR link. |
The tour copy review is being tracked in #4369. The issue linked in this issue's description (elastic/kibana#172030) tracks the implementation of the tour. |
Serverless doc updates:(Same updates were made to the ESS docs) Updates to the Investigate events in Timeline page:
New or modified functionality that's not doc'd and needs to be added to the Investigate events in Timeline page:
Updates to the Create Timeline templates page:
Updates to the Data views in Elastic Security page:Updates to the Timeline schema page:
Updates to the Launch Timeline from investigation guides page:
|
This heading states
There is still some discussion here. I have meeting with design tomorrow, I will confirm you about the direction we are going for this. Probably you have already noted it. But https://docs.elastic.co/serverless/security/timeline-object-schema also needs updated screenshot. I am putting it here since it is not mentioned in your comment. |
Thanks for the additional notes, @logeekal! I expanded the list of doc updates to include the updates needed to the Timeline schema page and will check in with you tomorrow on design decisions made about the favorites button and expand/collapse query builder button. RE your question about the section title:
Does the query builder use KQL or is it using a different query language? I always thought it was a visual representation of the text-based KQL query bar above it, but maybe I'm wrong? |
Hey @nastasha-solomon , Below are my responses. Below is the replacement screenshot :
I would say, it is a subset of KQL but not exactly KQL. It cannot do |
elastic/kibana#173015 introduces some additional UI changes that'll impact screenshots and potentially instructions for opening an existing Timeline, creating a new Timeline, and creating a new Timeline template. I plan to lump the newest UI changes into https://github.com/elastic/staging-serverless-security-docs/pull/240 so I can consolidate everything into a single docs PR. |
@nastasha-solomon , I have updated the EQL screenshot in above comment with the new changes. So you can take from there directly. |
Noticed a handful of additional screenshots that need to be refreshed. Adding them to the list and committing them to the ESS and Serverless doc PRs. |
Description
Security solution is coming up with minor changes in the Timeline UI and all the changes have been covered in:
All the UI modifications are listed in the PR description. Please reach out to me if you some issue or you have some questions.
These Changes are coming in both Serverless and ESS in 8.12 release.
The text was updated successfully, but these errors were encountered: