[8.x] SentinelOne bidirectional processes
, kill-process
, and detection rule updates [ESS] (backport #5735)
#5846
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
ESS 8.16 twin of #5659. Updates the ESS docs for these features:
processes
response actions for SentinelOne hosts #5638kill-process
response action available for SentinelOne #5590Previews
This is just a twin PR of content that's already been reviewed and approved, so all that's needed is codeowner approval to un-block. But if you want to confirm the AsciiDoc conversion, check these pages:
processes
andkill-process
to reference S1 differences.Twin PR
processes
,kill-process
, and detection rule updates [serverless] #5659This is an automatic backport of pull request SentinelOne bidirectional
processes
,kill-process
, and detection rule updates [ESS] #5735 done by Mergify.