Open ymao1 opened 1 year ago
Pinging @elastic/response-ops (Team:ResponseOps)
@kobelb should we prioritize this for 8.11?
@kobelb should we prioritize this for 8.11?
Yes. Otherwise, we're going to have to manually investigate and route these issues.
We might be able to do this in the SLO itself by filtering on project type
With https://github.com/elastic/kibana/pull/163652 we added SLI metrics for task run success, broken down into alerting and action task types. We think it'd be useful to further break down the alerting task types into security alerting task types and observability alerting task types. This would help us narrow down where to focus our investigations when those SLOs are breached.
Currently the metrics look like
It'd be useful to add a grouping for
alerting_security
andalerting_observability