-
Notifications
You must be signed in to change notification settings - Fork 562
[aws]: Guardduty dashboard enhancements #13263
Copy link
Copy link
Closed
Labels
Integration:awsAWSAWSTeam:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]enhancementNew feature or requestNew feature or requestneeds:triage
Metadata
Metadata
Assignees
Labels
Integration:awsAWSAWSTeam:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]enhancementNew feature or requestNew feature or requestneeds:triage
Type
Fields
Give feedbackNo fields configured for issues without a type.
Integration Name
AWS [aws]
Dataset Name
aws.guardduty
Integration Version
2.43.0
Agent Version
8.17.3
OS Version and Architecture
Ubuntu
User Goal
only show guardduty related events listed in the guardduty related dashboards
Discover saved search at the bottom of each of the guardduty related dashboards
links between the Guardduty related dashboards to ease navigation
Existing Features
The three Guardduty related dashboards:
It would be nice, if all three dashboard have a shared menu on top or somewhere, with links to each of the other Guardduty related dashboards, to ease navigation between the three
What did you see?
as described above.
Anything else?
with above mentioned enhancements, or maybe even considering the missing filtering at least on the [Logs AWS] Guardduty Findings Overview a bug, these dashboards could be more useful.