-
Notifications
You must be signed in to change notification settings - Fork 197
Adds trusted descendants option for Trusted Applications #4399
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
Conversation
✅ Vale Linting ResultsNo issues found on modified lines! The Vale linter checks documentation changes against the Elastic Docs style guide. To use Vale locally or report issues, refer to Elastic style guide for Vale. |
🔍 Preview links for changed docs |
natasha-moore-elastic
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Minor formatting fix, otherwise LGTM!
solutions/security/manage-elastic-defend/trusted-applications.md
Outdated
Show resolved
Hide resolved
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
| 1. `Select operating system`: Select the appropriate operating system from the drop-down. | ||
| 2. `Field`: Select a field to identify the trusted application. | ||
| 3. `Operator`: Select an operator to define the condition: | ||
| 2. {applies_to}`stack: ga 9.3`{applies_to}`serverless: ga`(Optional) Turn on the **Process Descendants** toggle to make your exception apply to processes that are descendants of your new trusted application. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This can be updated with the latest applies_to syntax now
[DO NOT MERGE UNTIL FEATURE IS RELEASED IN SERVERLESS]
Fixes docs-content-internal issue #521 by documenting a new feature for trusted applications that enables trusted applications to extend to child processes.
Preview here (Cmd + F for "descendants").
Generative AI disclosure