diff --git a/docs/detections/alerts-ui-manage.asciidoc b/docs/detections/alerts-ui-manage.asciidoc index bd2c19a11f..54b332f680 100644 --- a/docs/detections/alerts-ui-manage.asciidoc +++ b/docs/detections/alerts-ui-manage.asciidoc @@ -9,26 +9,6 @@ investigating and analyzing alerts in Timeline. TIP: From Timeline, you can <> to track issues and share information with colleagues. -[float] -[[download-prebuilt-rules]] -=== Download latest prebuilt Elastic rules - -[beta] - -As of {stack} >=7.13.0., you can download the latest version of Elastic prebuilt rules outside of a regular release cycle. This feature ensures you have the latest detection capabilties before upgrading to the latest {stack}. - -To download the latest version of prebuilt rules: - -. In {kib}, go to *Fleet > Integrations*. -. Search for "Prebuilt Security Detection Rules." -. Select the integration, then click *Add Prebuilt Security Detection Rules*. The integration configuration page is displayed. -. (Optional) If you have an {agent} enrolled and have created an agent policy you want to assign to this integration, select it from the drop-down. -. Configure the integration settings by entering a name and optional description. -. Click *Save integration* in the lower right corner. - -[role="screenshot"] -image::images/prebuilt-integration.png[] - [float] [[detection-view-and-filter-alerts]] === View and filter detection alerts diff --git a/docs/detections/rules-ui-manage.asciidoc b/docs/detections/rules-ui-manage.asciidoc index d2e57ca996..ade7ae1f9f 100644 --- a/docs/detections/rules-ui-manage.asciidoc +++ b/docs/detections/rules-ui-manage.asciidoc @@ -44,6 +44,26 @@ In the All rules table: You can then modify the duplicated rules and, if required, delete the prebuilt ones. +[float] +[[download-prebuilt-rules]] +=== Download latest prebuilt Elastic rules + +beta::[] + +As of {stack} >=7.13.0., you can download the latest version of Elastic prebuilt rules outside of a regular release cycle. This feature ensures you have the latest detection capabilties before upgrading to the latest {stack}. + +To download the latest version of prebuilt rules: + +. In {kib}, go to *Fleet > Integrations*. +. Search for "Prebuilt Security Detection Rules." +. Select the integration, then click *Add Prebuilt Security Detection Rules*. The integration configuration page is displayed. +. (Optional) If you have an {agent} enrolled and have created an agent policy you want to assign to this integration, select it from the drop-down. +. Configure the integration settings by entering a name and optional description. +. Click *Save integration* in the lower right corner. + +[role="screenshot"] +image::images/prebuilt-integration.png[] + [float] [[manage-rules-ui]] === Modify existing rules