Adds new page about triaging alerts with AI Assistant#4359
Adds new page about triaging alerts with AI Assistant#4359benironside merged 32 commits intomainfrom
Conversation
|
Documentation previews: |
dhru42
left a comment
There was a problem hiding this comment.
Please make this a sub-page to the AI Assistant page
nastasha-solomon
left a comment
There was a problem hiding this comment.
Left some suggestions for consistency and structure. Looks great as a whole!
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com>
Communicated with Dhru and incorporated his feedback 👍
|
|
||
| When you view an alert in {elastic-sec}, details such as related documents, hosts, and users appear alongside a synopsis of the events that triggered the alert. This data provides a starting point for understanding a potential threat. AI Assistant can answer questions about this data and offer insights and actionable recommendations to remediate the issue. | ||
|
|
||
| To enable AI Assistant to answer questions about alerts, you need to provide alert data as context for your prompts. You can either provide multiple alerts using the <<configure-ai-assistant, knowledge base>> feature, or provide individual alerts directly. |
There was a problem hiding this comment.
nit: is it possible for the knowledge base links to jump to a KB-specific anchor? (I'm wondering if it's a quirk of the docs preview)
There was a problem hiding this comment.
Yes 100%. I am planning to do this but I have to merge the updates to the AI Assistant page before I can link to that section.
andrew-goldstein
left a comment
There was a problem hiding this comment.
Thanks @benironside for this new page about triaging alerts with the assistant! 🙏
💹 Desk tested via the preview
LGTM 🚀
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
* Adds new page about triaging alerts with AI Assistant * troubleshoots ToC * troubleshoots build error * updates section title * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Incorporates rest of Nastasha's feedback * save work * updates triage page with RAG for alerts info * fixes anchor tag * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc * Update docs/assistant/ai-alert-triage.asciidoc --------- Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit b930aa6)
* Adds new page about triaging alerts with AI Assistant * troubleshoots ToC * troubleshoots build error * updates section title * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Incorporates rest of Nastasha's feedback * save work * updates triage page with RAG for alerts info * fixes anchor tag * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc * Update docs/assistant/ai-alert-triage.asciidoc --------- Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit b930aa6)
* Adds new page about triaging alerts with AI Assistant * troubleshoots ToC * troubleshoots build error * updates section title * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Incorporates rest of Nastasha's feedback * save work * updates triage page with RAG for alerts info * fixes anchor tag * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc * Update docs/assistant/ai-alert-triage.asciidoc --------- Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit b930aa6) Co-authored-by: Benjamin Ironside Goldstein <91905639+benironside@users.noreply.github.com>
…#4359) (#4565) * Adds new page about triaging alerts with AI Assistant (#4359) * Adds new page about triaging alerts with AI Assistant * troubleshoots ToC * troubleshoots build error * updates section title * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> * Incorporates rest of Nastasha's feedback * save work * updates triage page with RAG for alerts info * fixes anchor tag * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> * Update docs/assistant/ai-alert-triage.asciidoc * Update docs/assistant/ai-alert-triage.asciidoc --------- Co-authored-by: Nastasha Solomon <79124755+nastasha-solomon@users.noreply.github.com> Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com> (cherry picked from commit b930aa6) * removes part from 8.11 that doesn't apply until 8.12 * fix merge conflict --------- Co-authored-by: Benjamin Ironside Goldstein <91905639+benironside@users.noreply.github.com> Co-authored-by: Benjamin Ironside Goldstein <benjamin.ironside@elastic.co>
Fixes #4358 by adding a new page that explains how AI Assistant can help triage alerts. RAG for Alerts changes are limited to the new first section "Use AI Assistant to Triage multiple alerts"
Preview: Triage alerts with Elastic AI Assistant