You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: calico-enterprise/threat/security-event-management.mdx
+40-4Lines changed: 40 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,12 +8,13 @@ Manage security events from your cluster in a single place.
8
8
9
9
## Value
10
10
11
-
Security events indicate that a threat actor may be present in your cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
11
+
Security events indicate that a threat actor may be present in your Kubernetes cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
12
12
13
13
- A filtered list of critical events with recommended remediation
14
14
- Identify impacts on applications
15
15
- Understand the scope and frequency of the issue
16
16
- Manage alert noise by dismissing events (show/hide)
17
+
- Manage alert noise by creating exceptions
17
18
18
19
## Before you begin
19
20
@@ -26,9 +27,44 @@ Security events indicate that a threat actor may be present in your cluster. For
26
27
- Only WAF basic security events. Over time, the dashboard will contain a full range of $[prodname] security events.
27
28
- You cannot control which users can view or edit the page using fine-grained role-based access controls
28
29
29
-
## Security events dashboard
30
+
## Security Events Dashboard
30
31
31
-
In the web console, go to **Threat defense**, **Security Events**.
32
+
The **Security Events Dashboard** page gives you a high-level view of recent security events.
33
+
You can use this visual reference to get an overall sense of your cluster's health.
34
+
If you find anything that merits further investigation, you can click on an event for more details.
35
+
36
+
* In the web console, go to **Threat defense > Security Events Dashboard**.
Copy file name to clipboardExpand all lines: calico-enterprise_versioned_docs/version-3.20-2/threat/security-event-management.mdx
+40-4Lines changed: 40 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,12 +8,13 @@ Manage security events from your cluster in a single place.
8
8
9
9
## Value
10
10
11
-
Security events indicate that a threat actor may be present in your cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
11
+
Security events indicate that a threat actor may be present in your Kubernetes cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
12
12
13
13
- A filtered list of critical events with recommended remediation
14
14
- Identify impacts on applications
15
15
- Understand the scope and frequency of the issue
16
16
- Manage alert noise by dismissing events (show/hide)
17
+
- Manage alert noise by creating exceptions
17
18
18
19
## Before you begin
19
20
@@ -26,9 +27,44 @@ Security events indicate that a threat actor may be present in your cluster. For
26
27
- Only WAF basic security events. Over time, the dashboard will contain a full range of $[prodname] security events.
27
28
- You cannot control which users can view or edit the page using fine-grained role-based access controls
28
29
29
-
## Security events dashboard
30
+
## Security Events Dashboard
30
31
31
-
In the web console, go to **Threat defense**, **Security Events**.
32
+
The **Security Events Dashboard** page gives you a high-level view of recent security events.
33
+
You can use this visual reference to get an overall sense of your cluster's health.
34
+
If you find anything that merits further investigation, you can click on an event for more details.
35
+
36
+
* In the web console, go to **Threat defense > Security Events Dashboard**.
Copy file name to clipboardExpand all lines: calico-enterprise_versioned_docs/version-3.21-2/threat/security-event-management.mdx
+40-4Lines changed: 40 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,12 +8,13 @@ Manage security events from your cluster in a single place.
8
8
9
9
## Value
10
10
11
-
Security events indicate that a threat actor may be present in your cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
11
+
Security events indicate that a threat actor may be present in your Kubernetes cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
12
12
13
13
- A filtered list of critical events with recommended remediation
14
14
- Identify impacts on applications
15
15
- Understand the scope and frequency of the issue
16
16
- Manage alert noise by dismissing events (show/hide)
17
+
- Manage alert noise by creating exceptions
17
18
18
19
## Before you begin
19
20
@@ -26,9 +27,44 @@ Security events indicate that a threat actor may be present in your cluster. For
26
27
- Only WAF basic security events. Over time, the dashboard will contain a full range of $[prodname] security events.
27
28
- You cannot control which users can view or edit the page using fine-grained role-based access controls
28
29
29
-
## Security events dashboard
30
+
## Security Events Dashboard
30
31
31
-
In the web console, go to **Threat defense**, **Security Events**.
32
+
The **Security Events Dashboard** page gives you a high-level view of recent security events.
33
+
You can use this visual reference to get an overall sense of your cluster's health.
34
+
If you find anything that merits further investigation, you can click on an event for more details.
35
+
36
+
* In the web console, go to **Threat defense > Security Events Dashboard**.
Copy file name to clipboardExpand all lines: calico-enterprise_versioned_docs/version-3.22-1/threat/security-event-management.mdx
+40-4Lines changed: 40 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,12 +8,13 @@ Manage security events from your cluster in a single place.
8
8
9
9
## Value
10
10
11
-
Security events indicate that a threat actor may be present in your cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
11
+
Security events indicate that a threat actor may be present in your Kubernetes cluster. For example, a DNS request to a malicious hostname, a triggered WAF rule, or the opening of a sensitive file. $[prodname] provides security engineers and incident response teams with a single dashboard to manage threat alerts. Benefits include:
12
12
13
13
- A filtered list of critical events with recommended remediation
14
14
- Identify impacts on applications
15
15
- Understand the scope and frequency of the issue
16
16
- Manage alert noise by dismissing events (show/hide)
17
+
- Manage alert noise by creating exceptions
17
18
18
19
## Before you begin
19
20
@@ -26,9 +27,44 @@ Security events indicate that a threat actor may be present in your cluster. For
26
27
- Only WAF basic security events. Over time, the dashboard will contain a full range of $[prodname] security events.
27
28
- You cannot control which users can view or edit the page using fine-grained role-based access controls
28
29
29
-
## Security events dashboard
30
+
## Security Events Dashboard
30
31
31
-
In the web console, go to **Threat defense**, **Security Events**.
32
+
The **Security Events Dashboard** page gives you a high-level view of recent security events.
33
+
You can use this visual reference to get an overall sense of your cluster's health.
34
+
If you find anything that merits further investigation, you can click on an event for more details.
35
+
36
+
* In the web console, go to **Threat defense > Security Events Dashboard**.
0 commit comments