The SIEM app is now a part of the Elastic Security solution.
Click
here to view SIEM documentation for previous releases.
Prebuilt rules
edit
IMPORTANT: This documentation is no longer updated. Refer to Elastic's version policy and the latest documentation.
Prebuilt rules
editThe prepackaged endpoint is for retrieving rule statuses and loading Elastic prebuilt detection rules.
Load prebuilt rules
editLoads and updates Elastic prebuilt rules.
By default, all loaded prebuilt rules are disabled.
Was this helpful?
Thank you for your feedback.