Skip to content

Commit 379c629

Browse files
authored
Update beta_program.mdx (#644)
* Update beta_program.mdx More details about torterra beta * Update beta_program.mdx
1 parent 1f95eb8 commit 379c629

1 file changed

Lines changed: 24 additions & 7 deletions

File tree

crowdsec-docs/unversioned/beta_program.mdx

Lines changed: 24 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -22,18 +22,35 @@ To join the CrowdSec Beta program, click the [Beta opt-in option directly in the
2222

2323
### CrowdSec Threat Forecast Blocklist - Beta starts 2024-10-25
2424

25-
#### What is it ?
25+
#### What is it and what to expect?
2626

27-
The Threat Forecast Blocklist is a dynamic, adaptive blocklist customized to your organization's signals. By identifying attacks on similar profiles, it predicts threats that will likely target your organization in the coming days.
27+
The **Threat Forecast Blocklist** is a dynamic, adaptive blocklist customized to your organization's signals.
28+
By identifying attacks on similar profiles, it predicts threats that will likely target your organization in the coming days.
29+
It will update every 24 hours, and the signals of all your Security Engines will be considered to build the prediction.
2830

29-
The Threat Forecast Blocklist will update every 24 hours, and the signals of all your Security Engines will be considered to build the prediction.
31+
It's tailored to your organization; hence, we expect that it should allow preemptive remediation, resulting in a **drop in the number of alerts**.
32+
Optionally, if you have an iptables of nftables remediation component, you'll be able to see some [metrics about this blocklist's efficiency](https://docs.crowdsec.net/docs/next/observability/usage_metrics)
3033

31-
#### Who will have access to it ?
34+
#### Who will have access to it?
3235

33-
If you have at least one enrolled security engine with an average of more than 100 alerts a week (total on your organization) you have a chance to be invited.
34-
You'll receive an email on Friday October the 25th 2024.
36+
If you have at least one enrolled security engine with an average of more than 100 alerts a week (total for your organization) you have a chance to be invited.
37+
You'll receive an email on Friday, October the 25th, 2024.
3538

36-
**Important note**: You will have 15 days to start using the Threat Forecast Blocklist and 30 days total starting today to test it out. If you do not use it within 15 days, your access will be reallocated to someone else.
39+
**Important note**: You will have 15 days to start using the Threat Forecast Blocklist and 30 days in total starting today to test it out. If you do not use it within 15 days, your access will be reallocated to someone else.
40+
41+
#### How to subscribe to this blocklist
42+
43+
- Log into your console account
44+
- Go to the blocklist catalog and search "forecast": https://app.crowdsec.net/blocklists?page=1&q=forecast
45+
- If you're part of the this beta, you should see the **Threat Forecast Blocklist**
46+
- Click on it
47+
- You should have landed in the details page for this blocklist
48+
- Click on subscribe to open the subscription popup and follow its instructions to subscribe to the blocklist.
49+
- We recommend subscribing your organization to the list as this will make sure that newly added security engines automatically benefit from the blocklist as well.
50+
-- If you want to have more finegrained controll, you can also select only specific engines to subscribe to the list.
51+
- Click confirm subscription
52+
53+
Note that you must have a [remediation component](https://doc.crowdsec.net/u/bouncers/intro) on those engines to effectively block the IPs.
3754

3855
## Your feedback is key
3956

0 commit comments

Comments
 (0)