diff --git a/docs/whats-new.asciidoc b/docs/whats-new.asciidoc index c0bd08b026..b8b416225e 100644 --- a/docs/whats-new.asciidoc +++ b/docs/whats-new.asciidoc @@ -14,16 +14,14 @@ Other versions: {security-guide-all}/8.16/whats-new.html[8.16] | {security-guide == Detection rules and alerts enhancements [float] -=== LogsDB index mode with detection rules and alerts +=== Logsdb index mode with detection rules and alerts -The {ref}/logs-data-stream.html[logsDB index mode] allows you to store log data more efficiently. If you're considering using it, refer to to learn how it can impact your rules and alerts. This feature requires the . -// some information to be added +The {ref}/logs-data-stream.html[logsdb index mode] allows you to store log data more efficiently. If you're considering using it, refer to {security-guide}/detections-logsdb-index-mode-impact.html[Using logsdb index mode with {elastic-sec}] to learn how it can impact your rules and alerts. [float] === Suppress alerts for EQL sequence rules -Alert suppression now supports the EQL sequence rule type. You can use it to reduce the number of repeated or duplicate detection alerts generated from EQL sequence rules. -// link to be added +{security-guide}/alert-suppression.html[Alert suppression] now supports the EQL sequence rule type. You can use it to reduce the number of repeated or duplicate detection alerts generated from EQL sequence rules. [float] == Signature option available for macOS trusted applications conditions