diff --git a/docs/detections/images/alert-pill.png b/docs/detections/images/alert-pill.png index 047844e1b7..e96fc829fd 100644 Binary files a/docs/detections/images/alert-pill.png and b/docs/detections/images/alert-pill.png differ diff --git a/docs/detections/images/data-view-selection.png b/docs/detections/images/data-view-selection.png new file mode 100644 index 0000000000..f0d15645ec Binary files /dev/null and b/docs/detections/images/data-view-selection.png differ diff --git a/docs/detections/images/date-range-selection.png b/docs/detections/images/date-range-selection.png new file mode 100644 index 0000000000..40515f6832 Binary files /dev/null and b/docs/detections/images/date-range-selection.png differ diff --git a/docs/detections/images/event-details.png b/docs/detections/images/event-details.png index a06efce10d..f4a8eb16e8 100644 Binary files a/docs/detections/images/event-details.png and b/docs/detections/images/event-details.png differ diff --git a/docs/detections/images/event-type.png b/docs/detections/images/event-type.png index 13abf34abc..819a8495a7 100644 Binary files a/docs/detections/images/event-type.png and b/docs/detections/images/event-type.png differ diff --git a/docs/detections/images/full-screen-analyzer.png b/docs/detections/images/full-screen-analyzer.png index a8f78cb27e..bb0e2ec4ff 100644 Binary files a/docs/detections/images/full-screen-analyzer.png and b/docs/detections/images/full-screen-analyzer.png differ diff --git a/docs/detections/images/graphical-view.png b/docs/detections/images/graphical-view.png index 61c67e9dff..d7a56795ea 100644 Binary files a/docs/detections/images/graphical-view.png and b/docs/detections/images/graphical-view.png differ diff --git a/docs/detections/images/node-legend.png b/docs/detections/images/node-legend.png index 1e661673a2..0ba9bf6649 100644 Binary files a/docs/detections/images/node-legend.png and b/docs/detections/images/node-legend.png differ diff --git a/docs/detections/images/process-details.png b/docs/detections/images/process-details.png index f3ff290ff1..c8b92c81be 100644 Binary files a/docs/detections/images/process-details.png and b/docs/detections/images/process-details.png differ diff --git a/docs/detections/images/process-list.png b/docs/detections/images/process-list.png index e68f76e4a0..105d723d5f 100644 Binary files a/docs/detections/images/process-list.png and b/docs/detections/images/process-list.png differ diff --git a/docs/detections/images/process-schema.png b/docs/detections/images/process-schema.png index 9838ef4f69..85d393d0c9 100644 Binary files a/docs/detections/images/process-schema.png and b/docs/detections/images/process-schema.png differ diff --git a/docs/detections/visual-event-analyzer.asciidoc b/docs/detections/visual-event-analyzer.asciidoc index 224bf2adb6..6d15fed5d2 100644 --- a/docs/detections/visual-event-analyzer.asciidoc +++ b/docs/detections/visual-event-analyzer.asciidoc @@ -65,6 +65,16 @@ Click the **Legend** to show the state of each process node. [role="screenshot"] image::images/node-legend.png[] +Use the date and time filter to analyze the event within a specific time range. By default, the selected time range matches that of the table from which you opened the alert. + +[role="screenshot"] +image::images/date-range-selection.png[] + +Select a different data view to further filter the alert's related events. + +[role="screenshot"] +image::images/data-view-selection.png[] + To expand the analyzer to a full screen, select the **Full Screen** icon above the left panel. [role="screenshot"]