kibana/packages/kbn-alerts-as-data-utils
Maryam Saeidi 41e54e7208
[AO] Save group information in AAD for the new threshold rule (#164087)
Closes #161758

## Summary

In this PR, I am saving the groupings information for the new threshold
in AAD in a similar format as the security team does, you can check the
format in the following screenshots. (Please check this
[RFC](https://docs.google.com/document/d/1DlykydM8Hk7-VAPOcuoUXp0L_qSi2jCZabJkPdO44tQ/edit#heading=h.2b1v1tr0ep8m)
for more information)

### Alert as data document


![image](ce4d5000-3799-4dd7-9a04-d012f1cc5aca)

### Groupings action variable


![image](5a4aaff1-b9c5-44e8-86e5-9fa397b6af62)

### Alert table


![image](cfe1aaf1-475c-4d04-8726-b064c0905d55)

It is also possible to search based on these new variables:


f07b39c2-52e8-4f50-b713-577da7ab1c42
2023-10-02 15:42:35 +02:00
..
src [AO] Save group information in AAD for the new threshold rule (#164087) 2023-10-02 15:42:35 +02:00
index.ts [RAM] Alert search strategy fields for security (#165040) 2023-08-29 13:18:28 -04:00
jest.config.js [RAM] Alert search strategy fields for security (#165040) 2023-08-29 13:18:28 -04:00
kibana.jsonc [Response Ops][Alerting] Update common component template generation for framework alerts as data (#150384) 2023-02-27 14:24:44 -05:00
package.json [Response Ops][Alerting] Update common component template generation for framework alerts as data (#150384) 2023-02-27 14:24:44 -05:00
tsconfig.json [Response Ops][Alerting] Generating framework alerts-as-data alert schema and type (#155626) 2023-05-06 11:19:08 -04:00