Cases prerequisitesedit

You can create roles and define feature privileges at different levels to manage feature access in Kibana. Kibana privileges grant access to features within a specified Kibana space, and you can grant full or partial access. For more information, see Feature access based on user privileges.

To send cases to external systems, you need the appropriate license.

Certain subscriptions and privileges might be required to manage case attachments. For example, to add alerts to cases, you must have privileges for managing alerts.

To grant access to cases, set the Kibana space privileges for the Cases and Actions and Connectors features as follows:

Action Kibana Privileges

Give full access to manage cases

  • All for the Cases feature
  • All for the Actions and Connectors feature (go to Management > Actions and Connectors to set this)

Roles without All Actions and Connectors feature privileges cannot create, add, delete, or modify case connectors.

Give view-only access for cases

Read for the Cases feature

Give access to view and delete cases

Read for the Cases feature and the Delete sub-feature selected

Revoke all access to cases

None for the Cases feature

case feature privs