Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security Solution] Support exporting prebuilt rules from the Rule Details page #180176

Open
2 tasks
Tracked by #174168
jpdjere opened this issue Apr 5, 2024 · 4 comments
Open
2 tasks
Tracked by #174168
Assignees
Labels
8.17 candidate Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.

Comments

@jpdjere
Copy link
Contributor

jpdjere commented Apr 5, 2024

Epics: https://github.com/elastic/security-team/issues/1974 (internal), #174168

Summary

  • Support exporting prebuilt rules from the Rule Details page

Background

In the UI we have a logic gate to prevent showing the "export" button as enabled unless the rule.immutable is false. With the milestone 3 efforts, this restriction has been removed in the API behind the prebuiltRulesCustomizationEnabled feature flag and can now be removed in the UI behind the feature flag as well.

Acceptance criteria

  • User is able to export all rule types (including prebuilt rules) from Rule Details page
  • Feature is hidden behind feature flag
@jpdjere jpdjere added triage_needed Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Detection Rule Management Security Detection Rule Management Team Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules labels Apr 5, 2024
@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detections-response (Team:Detections and Resp)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detection-rule-management (Team:Detection Rule Management)

@banderror banderror changed the title [Security Solution] Support exporting prebuilt rules from the Rule Details page [Security Solution] Support exporting prebuilt rules from the Rule Details page (DRAFT) Apr 17, 2024
@nacio-foxy
Copy link

This would be very useful to review prebuilt rules in bulk through a csv (or something else) export and we could work collaboratively on them with the team for reviewing, assessing priority, etc..

@banderror banderror assigned dplumlee and unassigned rylnd Oct 9, 2024
@dplumlee dplumlee changed the title [Security Solution] Support exporting prebuilt rules from the Rule Details page (DRAFT) [Security Solution] Support exporting prebuilt rules from the Rule Details page Nov 4, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
8.17 candidate Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.
Projects
None yet
Development

No branches or pull requests

6 participants