Skip to content

[Security Solutions] Fix many risk score UI inconsistencies and update in-app docs#167638

Merged
machadoum merged 7 commits intoelastic:mainfrom
machadoum:siem-explore-166717
Oct 2, 2023
Merged

[Security Solutions] Fix many risk score UI inconsistencies and update in-app docs#167638
machadoum merged 7 commits intoelastic:mainfrom
machadoum:siem-explore-166717

Conversation

@machadoum
Copy link
Copy Markdown
Member

@machadoum machadoum commented Sep 29, 2023

issue: #166717
original PR: #166741

Summary

General

  • Add the "How is risk score calculated?" button to the entity analytics dashboard and risk score tab on the Host/User page.
  • Add risk score hover action to the user/host overview component. Add a tooltip with link to risk score external doc.
  • Update risk score in-app doc
  • Update the field name “classification” to “level” everywhere the risk score is displayed
  • Update the “tech preview” label to “beta” everywhere the risk score is displayed
  • Rename Learn More to "How is host/user risk score calculated?" and link to External Docs
  • Add Beta tag to the settings page

EA Dashboard: (User and Host)

  • Retain panel tooltip - Remove “Tech Preview”
  • Learn more link -> In Product flyout
  • Learn More (in Flyout) -> Add link to external docs page
  • Remove the tooltip from *Risk Classification column

Alert Page -> Insights:

  • Change Tooltip on *Classification field -> How is Risk Score Calculated link

Host/User Pages-> Risk Score Tab

  • Retain panel tool-tip
  • Add "How is Risk Score Calculated" similar to Dashboard
  • Remove tooltip from "Risk Classification" column

Host/User Details:

  • Change Tooltip on "Classification field -> How is Risk Score Calculated link
  • Move score over time "learn more" link to the table header
  • Don't show the dashboard link when risk engine is enabled.

Checklist

Delete any items that are not applicable to this PR.

@machadoum machadoum self-assigned this Sep 29, 2023
@machadoum machadoum added release_note:skip Skip the PR/issue when compiling release notes Team:Threat Hunting Security Solution Threat Hunting Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Threat Hunting:Explore Feature:Entity Analytics Security Solution Entity Analytics features v8.11.0 labels Sep 29, 2023
@machadoum machadoum added the ci:cloud-deploy Create or update a Cloud deployment label Sep 29, 2023
@machadoum machadoum marked this pull request as ready for review September 29, 2023 13:48
@machadoum machadoum requested review from a team as code owners September 29, 2023 13:48
@elasticmachine
Copy link
Copy Markdown
Contributor

Pinging @elastic/security-threat-hunting (Team:Threat Hunting)

@elasticmachine
Copy link
Copy Markdown
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

Copy link
Copy Markdown
Contributor

@christineweng christineweng left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Desk tested and LGTM! Thanks for updating the labels and standardized all the tooltips!

Copy link
Copy Markdown
Contributor

@nkhristinin nkhristinin left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@machadoum machadoum force-pushed the siem-explore-166717 branch from 7f0bb94 to e7839b4 Compare October 2, 2023 11:49
@machadoum machadoum enabled auto-merge (squash) October 2, 2023 11:52
@machadoum
Copy link
Copy Markdown
Member Author

@elasticmachine merge upstream

@machadoum machadoum removed the ci:cloud-deploy Create or update a Cloud deployment label Oct 2, 2023
@machadoum machadoum force-pushed the siem-explore-166717 branch from 6aa1691 to 072daa3 Compare October 2, 2023 14:56
@kibana-ci
Copy link
Copy Markdown

kibana-ci commented Oct 2, 2023

💔 Build Failed

Failed CI Steps

Test Failures

  • [job] [logs] FTR Configs #17 / serverless search UI Importing an existing dashboard should render all panels on the dashboard
  • [job] [logs] FTR Configs #8 / serverless security UI Create Case creates a case

Metrics [docs]

Module Count

Fewer modules leads to a faster build time

id before after diff
securitySolution 4628 4629 +1

Async chunks

Total size of all lazy-loaded chunks that will be downloaded as the user navigates the app

id before after diff
securitySolution 13.0MB 13.0MB -11.9KB

History

To update your PR or re-run it, just comment with:
@elasticmachine merge upstream

cc @machadoum

@machadoum machadoum merged commit 934a19b into elastic:main Oct 2, 2023
@kibanamachine kibanamachine added the backport:skip This PR does not require backporting label Oct 2, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport:skip This PR does not require backporting Feature:Entity Analytics Security Solution Entity Analytics features release_note:skip Skip the PR/issue when compiling release notes Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Threat Hunting Security Solution Threat Hunting Team v8.11.0

Projects

None yet

Development

Successfully merging this pull request may close these issues.

7 participants