Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[DOCS][8.6] Release notes version 8.6 #2762

Merged
merged 67 commits into from
Jan 9, 2023
Merged
Show file tree
Hide file tree
Changes from 5 commits
Commits
Show all changes
67 commits
Select commit Hold shift + click to select a range
d786b40
Initial draft of 8.6 RN
benironside Nov 30, 2022
ee4e65a
Adds several issues
benironside Nov 30, 2022
3140fdd
Adds notes about sections with no data
benironside Nov 30, 2022
424c893
bugfix
benironside Nov 30, 2022
995caaf
Merge branch 'main' into issue-2681-big
benironside Dec 2, 2022
7bf2cea
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
2e7d885
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
f177f77
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
36bce23
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
ec5030d
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
7b75074
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
309bd28
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
2408391
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
f56c8d9
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
bdce832
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
8f709b8
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
e8d8515
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
7bb32d4
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
fde17c0
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
6082f22
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
978b1a9
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
95193fd
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
22ac2a0
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
0802864
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
61e6298
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
58ccc44
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
c4fb1ba
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
3ec04b7
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
f2bff7b
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
bbc5c6c
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
129b17a
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
1fffd6a
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
a52fb14
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
7b5e95a
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
56f3bb9
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
b73b94e
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
3b64068
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
af1d768
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
5aecdbc
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
04da6bb
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
3ba35c5
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
1ee1933
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
0fddd33
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
784dbc9
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
4049863
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
2ec3409
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
2ef4578
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
3a2deef
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
d2e688e
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
3a8c161
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
325047c
Update docs/release-notes/8.6.asciidoc
benironside Jan 4, 2023
4b5442e
Merge branch 'main' into issue-2681-big
benironside Jan 4, 2023
38182f8
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
78393dc
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
191833d
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
9c4e2bb
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
6ae2b59
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
e32896c
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
79ce95e
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
1ff7fd3
Update docs/release-notes/8.6.asciidoc
benironside Jan 5, 2023
975d920
Update docs/release-notes/8.6.asciidoc
nastasha-solomon Jan 5, 2023
63e4a1e
Update docs/release-notes/8.6.asciidoc
benironside Jan 9, 2023
2b79c71
Merge branch 'main' into issue-2681-big
benironside Jan 9, 2023
d368d6d
Update docs/release-notes/8.6.asciidoc
benironside Jan 9, 2023
83f586d
Update docs/release-notes/8.6.asciidoc
benironside Jan 9, 2023
c62b4dd
Merge branch 'main' into issue-2681-big
benironside Jan 9, 2023
07d7a7f
Merge branch 'main' into issue-2681-big
benironside Jan 9, 2023
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions docs/release-notes.asciidoc
Original file line number Diff line number Diff line change
Expand Up @@ -31,6 +31,7 @@ This section summarizes the changes in each release.
:issue: https://github.com/elastic/kibana/issues/
:pull: https://github.com/elastic/kibana/pull/

include::release-notes/8.6.asciidoc[]
include::release-notes/8.5.asciidoc[]
include::release-notes/8.4.asciidoc[]
include::release-notes/8.3.asciidoc[]
Expand Down
92 changes: 92 additions & 0 deletions docs/release-notes/8.6.asciidoc
Original file line number Diff line number Diff line change
@@ -0,0 +1,92 @@
[[release-notes-header-8.6.0]]
== 8.6

[discrete]
[[release-notes-8.6.0]]
=== 8.6.0

[discrete]
[[known-issue-8.6.0]]
==== Known issues
There are no known issues in 8.6.0.

[discrete]
[[breaking-changes-8.6.0]]
==== Breaking changes
// tag::breaking-changes[]
// NOTE: The breaking-changes tagged regions are reused in the Elastic Installation and Upgrade Guide. The pull attribute is defined within this snippet so it properly resolves in the output.
//:pull: {pull}
// end::breaking-changes[]
There are no breaking changes in 8.6.0.


[discrete]
[[deprecations-8.6.0]]
==== Deprecations
There are no deprecations in 8.6.0.


[discrete]
[[features-8.6.0]]
==== Features
* Enables you to create new cases based on indicators, or directly add indicators to existing cases ({pull}145121[#145121]).
* Adds the "is one of" operator to the *Add field* menu in Timeline ({pull}144988[#144988]).
* Adds an "Add to timeline investigation" button to the User Risk Scores and Host Risk Scores cards on the Entity Analytics dashboard ({pull}144819[#144819]).
* When duplicating a rule, allows you to choose whether the duplicate should include the original rule exceptions ({pull}144782[#144782]).
* Improves the Rule exceptions interface and allows you to export read-only exception lists ({pull}144383[#144383]).
* Enables a technical preview of functionality that enables users to create run time queries that can be parameterized from alert data, or hard coded literal values. ({pull}145240[#145240]).
* Enables you to schedule Osquery `global packs` ({pull}143948[#143948]).
* Creates a new connector for Tines ({pull}143505[#143505]).
* Updates the UI for adding and editing exceptions ({pull}143127[#143127]).
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@peluja1012 how detailed do you want this summary to be? Should we be a little more specific about the changes to the exception flyout or are you ok with this high-level summary? Maybe this and some other PRs, such as # 144575 and # 142289, can be lumped togther?

* Creates an "Exception list details" page, where you can view linked rules and modify the exception list ({pull}143041[#143041]).
* Enables you to bulk-add events to Timeline (up to 4000) ({pull}142737[#142737]).
* Enables alert throttling per rule execution for query and saved query rules ({pull}142686[#142686]).
* Restricts access to the Response Actions History page based on Kibana `Actions Log Management` permissions ({pull}142825[#142825]).

[discrete]
[[bug-fixes-8.6.0]]
==== Bug fixes and enhancements
* Adds a link to *View indicators* to the Threat Intelligence card ({pull}145125[#145125]).
* Improves the interface for creating rule exceptions and shared exception lists ({pull}144575[#144575]).
* Adds cases metadata to the alert alert details page, in the Cases panel ({pull}144430[#144430]).
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@michaelolo24 should we omit this since it's a change to the new alert details page?

* Updates Osquery schema to v5.5.1 ({pull}144090[#144090]).
* Improves the UX for managing {ml} jobs while managing {ml} rules ({pull}144080[#144080]).
* Enables you to run {ml} jobs from the Notable Anomalies table ({pull}142861[#142861]).
* Adds a guided onboarding flow to help you create your first rules ({pull}144016[#144016], {pull}143598[#143598]).
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

IIRC, this might not need to be doc'd here or in the Security what's new topic. @jmikell821 do you think we're good to omit this or should we touch base with Paul first? Paul also suggested reaching out to the Platform docs team to see how they're doc'ing this or to see if they're documenting (or at least summarizing) the whole tour on their end.

* Updates the take action UI for charts on the Hosts, Users, and Network pages ({pull}138369[#138369]).
* Adds a *Respond* button to the Host Details page for hosts with an agent installed ({pull}143988[#143988]).
* Allows you to add up to three new terms to New Terms rule queries, enabling you to create alerts when multiple new terms appear in the same event ({pull}143943[#143943]).
* Allows you to launch Timeline from the Entity Analytics dashboard by clicking alert counts ({pull}143841[#143841]).
* Adds missing TLP Marking badges to the Indicators table and Indicator details page ({pull}143431[#143431]).
* Ensures the empty state of the Indicators page does not appear when any threat intelligence integrations are installed ({pull}143328[#143328]).
* Turns the anomalies count on the Entity Analytics dashboard into a link that jumps down the page to the Anomalies table ({pull}143085[#143085])
* Pre-selects the `threat` category when you open the Fields browser ({pull}142698[#142698]).
* Adds a `copy to clipboard` action for indicators throughout the Threat Intelligence plugin ({pull}142675[#142675]).
* Adds a `User risk classification` column to the Users table ({pull}142610[#142610]).
* Adds a label to the Indicators page that states when it was last updated ({pull}142560[#142560]).
* Specifies that links from the Threat Intelligence plugin to the Integrations page should open the Threat Intelligence integrations category ({pull}142538[#142538]).
* Enables full-screen mode on the Indicators table ({pull}142519[#142519]).
* Implements the standard searchbar and date picker on the Threat Intelligence page ({pull}142336[#142336]).
* Updates the design of the Rule Exceptions page ({pull}142289[#142289]).
* Displays comments for expanded items in the Action history page ({pull}141938[#141938]).
// Items below this line were labeled as "bugfixes" rather than "enhancements"
* Replaces the *Run job* button with a *Stop job* button when the job is running ({pull}146407[#146407]).
* Fixes a bug that prevented you from editing an exception while adding a comment to it from the Rules details flyout ({pull}145575[#145575]).
* Fixes a bug that could cause rule previews for New Terms rules to fail ({pull}145707[#145707]).
* Fixes a bug that could cause a `Page not found` error when you navigated to a shared exception list ({pull}145833[#145833]).
* Fixes a bug with the loading indicator that appears when bulk actions are pending ({pull}145905[#145905]).
* Fixes a bug with the display of the count of linked rules for shared exception lists ({pull}145976[#145976]).
* Fixes a bug that prevented you from editing {endpoint} policies created before version 8.3.0 if you had a basic license ({pull}146050[#146050]).
* Fixes a bug that sometimes prevented the Rules table from updating as expected ({pull}146271[#146271]).
* Fixes a bug that sometimes prevented the display of rule preview graphs for custom rules ({pull}142120[#142120]).
* Removes the "Optional" label from the `Additional look-back time` rule setting ({pull}142375[#142375]).
* Fixes a bug that could result in duplicate entries in the Host's page's Events table query ({pull}143239[#143239]).
* Fixes a bug that could interfere with Platinum users' access to the Host Isolation page ({pull}143366[#143366]).
* Fixes a bug that prevented Analyzer's state from persisting when you switched tabs on the Alerts page ({pull}144291[#144291]).
* Fixes a bug that sometimes caused a page crash when you searched for an indicator ID on the Intelligence page ({pull}144344[#144344]).
* Fixes a bug that prevented newly imported rules from appearing on the Rules page before the page was refreshed ({pull}144359[#144359]).
* Fixes a bug with the toast message for successful bulk editing of rules ({pull}144497[#144497]).
* Fixes a bug that prevented Analyzer from opening in Timeline when the "Show only detection alerts" option is enabled ({pull}144705[#144705]).
* Fixes bugs that affected the display and persistence of event action menus ({pull}145025[#145025]).
* Fixes a bug that limited the display of breadcrumbs on the Rule Exceptions page ({pull}145605[#145605]).
* Fixes various minor UI bugs on the Rule exceptions page ({pull}145334[#145334]).