Commit f0858d6e authored by Nick Gaskill's avatar Nick Gaskill Committed by Alexander Turinske

Update threat monitoring policy alert docs

- clean up wording
- remove unnecessary screenshots
parent bc179764
...@@ -126,14 +126,13 @@ any pods. The policy itself is still deployed to the corresponding deployment na ...@@ -126,14 +126,13 @@ any pods. The policy itself is still deployed to the corresponding deployment na
> [Introduced](https://gitlab.com/groups/gitlab-org/-/epics/3403) in [GitLab Ultimate](https://about.gitlab.com/pricing/) 13.4. > [Introduced](https://gitlab.com/groups/gitlab-org/-/epics/3403) in [GitLab Ultimate](https://about.gitlab.com/pricing/) 13.4.
The policy editor allows you to create, edit, and delete policies. To You can use the policy editor to create, edit, and delete policies.
create a new policy click the **New policy** button located in the
**Policy** tab's header. To edit an existing policy, click**Edit - To create a new policy, click the **New policy** button located in the **Policy** tab's header.
policy** in the selected policy drawer. - To edit an existing policy, click **Edit policy** in the selected policy drawer.
Note that the policy editor only supports the The policy editor only supports the [CiliumNetworkPolicy](https://docs.cilium.io/en/v1.8/policy/)
[CiliumNetworkPolicy](https://docs.cilium.io/en/v1.8/policy/)specification. Regular Kubernetes specification. Regular Kubernetes [NetworkPolicy](https://kubernetes.io/docs/reference/generated/kubernetes-api/v1.19/#networkpolicy-v1-networking-k8s-io)
[NetworkPolicy](https://kubernetes.io/docs/reference/generated/kubernetes-api/v1.19/#networkpolicy-v1-networking-k8s-io)
resources aren't supported. resources aren't supported.
The policy editor has two modes: The policy editor has two modes:
...@@ -168,9 +167,15 @@ button at the bottom of the editor. ...@@ -168,9 +167,15 @@ button at the bottom of the editor.
> [Introduced](https://gitlab.com/groups/gitlab-org/-/epics/3438) and [enabled by default](https://gitlab.com/gitlab-org/gitlab/-/issues/287676) in [GitLab Ultimate](https://about.gitlab.com/pricing/) 13.9. > [Introduced](https://gitlab.com/groups/gitlab-org/-/epics/3438) and [enabled by default](https://gitlab.com/gitlab-org/gitlab/-/issues/287676) in [GitLab Ultimate](https://about.gitlab.com/pricing/) 13.9.
You can use policy alerts to track your policy's impact. There are two ways to enable policy alerts: You can use policy alerts to track your policy's impact. Alerts are only available if you've
[installed](../../clusters/agent/repository.md)
and [configured](../../clusters/agent/index.md#create-an-agent-record-in-gitlab)
a Kubernetes Agent for this project.
There are two ways to create policy alerts:
- In the policy editor UI, by clicking **Add alert**. - In the [policy editor UI](#container-network-policy-editor),
by clicking **Add alert**.
- With YAML, through the `metadata.annotations` property. - With YAML, through the `metadata.annotations` property.
```yaml ```yaml
...@@ -181,12 +186,6 @@ You can use policy alerts to track your policy's impact. There are two ways to e ...@@ -181,12 +186,6 @@ You can use policy alerts to track your policy's impact. There are two ways to e
Once added, the UI updates and displays a warning about the dangers of too many alerts. Once added, the UI updates and displays a warning about the dangers of too many alerts.
Alerts are only available if you've [installed](../../clusters/agent/repository.md)
and [configured](../../clusters/agent/index.md#create-an-agent-record-in-gitlab)
a Kubernetes Agent for this project.
![Policy Editor UI](img/threat_monitoring_add_policy_alert_ui_v13_9.png)
#### Enable or disable Policy Alerts **(FREE SELF)** #### Enable or disable Policy Alerts **(FREE SELF)**
Policy Alerts is under development but ready for production use. Policy Alerts is under development but ready for production use.
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment