Skip to content

Commit

Permalink
[Request] Refresh screenshots and docs that describe the tabs on the …
Browse files Browse the repository at this point in the history
…Explore pages (#4789)

* Re-orgs content

* Refreshed images

* Updating hr images

(cherry picked from commit 15926fd)
  • Loading branch information
nastasha-solomon authored and mergify[bot] committed Mar 5, 2024
1 parent eed82cc commit ddd2286
Show file tree
Hide file tree
Showing 8 changed files with 4 additions and 4 deletions.
Binary file modified docs/advanced-entity-analytics/images/hosts-hr-data.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/advanced-entity-analytics/images/hosts-hr-level.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/getting-started/images/network-ui.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified docs/getting-started/images/users/users-page.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
4 changes: 2 additions & 2 deletions docs/getting-started/network-page-overview.asciidoc
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
[[network-page-overview]]
= Network page

The Network page provides key network activity metrics in an interactive map, and network event tables that enable interaction with the Timeline. You can drag and drop items of interest from the Network view to Timeline for further investigation.
The Network page provides key network activity metrics in an interactive map, and network event tables that enable interaction with Timeline. You can drag and drop items of interest from the Network view to Timeline for further investigation.

[role="screenshot"]
image::images/network-ui.png[]
Expand Down Expand Up @@ -42,13 +42,13 @@ Interactive widgets let you drill down for deeper insights:

There are also tabs for viewing and investigating specific types of data:

* *Events*: All network events. To display alerts received from external monitoring tools, scroll down to the events table and select *Show only external alerts* on the right.
* *Flows*: Source and destination IP addresses and countries.
* *DNS*: DNS network queries.
* *HTTP*: Received HTTP requests (HTTP requests for applications using
{apm-app-ref}/apm-getting-started.html[Elastic APM] are monitored by default).
* *TLS*: Handshake details.
* *Anomalies*: Anomalies discovered by <<machine-learning, machine learning jobs>>.
* *Events*: All network events. To display alerts received from external monitoring tools, scroll down to the events table and select *Show only external alerts* on the right.

The Events table includes inline actions and several customization options. To learn more about what you can do with the data in these tables, refer to <<alerts-ui-manage>>.

Expand Down
2 changes: 1 addition & 1 deletion docs/getting-started/users-page.asciidoc
Original file line number Diff line number Diff line change
Expand Up @@ -20,10 +20,10 @@ TIP: Hover inside a KPI chart to display the actions menu (*...*), where you can

Beneath the KPI charts are data tables, which are useful for viewing and investigating specific types of data. Select the relevant tab to view the following details:

* *Events*: Ingested events that contain the `user.name` field. You can stack by the `event.action`, `event.dataset`, or `event.module` field. To display alerts received from external monitoring tools, scroll down to the Events table and select *Show only external alerts* on the right.
* *All users*: A chronological list of unique user names, when they were last active, and the associated domains.
* *Authentications*: A chronological list of user authentication events and associated details, such as the number of successes and failures, and the host name of the last successful destination.
* *Anomalies*: Unusual activity discovered by machine learning jobs that contain user data.
* *Events*: Ingested events that contain the `user.name` field. You can stack by the `event.action`, `event.dataset`, or `event.module` field. To display alerts received from external monitoring tools, scroll down to the Events table and select *Show only external alerts* on the right.
* *User risk*: The latest recorded user risk score for each user, and its user risk classification. This feature requires a https://www.elastic.co/pricing[Platinum subscription] or higher and must be enabled to display the data. Click *Enable* on the *User risk* tab to get started. To learn more, refer to our <<user-risk-score, user risk score documentation>>.

The Events table includes inline actions and several customization options. To learn more about what you can do with the data in these tables, refer to <<alerts-ui-manage>>.
Expand Down
2 changes: 1 addition & 1 deletion docs/management/hosts/hosts-overview.asciidoc
Original file line number Diff line number Diff line change
Expand Up @@ -22,10 +22,10 @@ TIP: Hover inside a KPI chart to display the actions menu (*...*), where you can

Beneath the KPI charts are data tables, categorized by individual tabs, which are useful for viewing and investigating specific types of data. Select the relevant tab to view the following data:

* *Events*: All host events. To display alerts received from external monitoring tools, scroll down to the Events table and select *Show only external alerts* on the right.
* *All hosts*: High-level host details.
* *Uncommon processes*: Uncommon processes running on hosts.
* *Anomalies*: Anomalies discovered by machine learning jobs.
* *Events*: All host events. To display alerts received from external monitoring tools, scroll down to the Events table and select *Show only external alerts* on the right.
* *Host risk*: The latest recorded host risk score for each host, and its host risk classification. This feature requires a https://www.elastic.co/pricing[Platinum subscription] or higher and must be enabled to display the data. Click *Enable* on the *Host risk* tab to get started. To learn more, refer to our <<host-risk-score, host risk score documentation>>.
* *Sessions*: Linux process events that you can open in <<session-view, Session View>>, an investigation tool that allows you to examine Linux process data at a hierarchal level.

Expand Down
Binary file modified docs/management/hosts/images/hosts-ov-pg.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.

0 comments on commit ddd2286

Please sign in to comment.