-
Notifications
You must be signed in to change notification settings - Fork 4.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Filebeat] Updates to Suricata module #20220
Merged
andrewkroh
merged 2 commits into
elastic:master
from
andrewkroh:feature/fb/suricata-updates
Jul 29, 2020
Merged
[Filebeat] Updates to Suricata module #20220
andrewkroh
merged 2 commits into
elastic:master
from
andrewkroh:feature/fb/suricata-updates
Jul 29, 2020
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
botelastic
bot
added
needs_team
Indicates that the issue/PR needs a Team:* label
and removed
needs_team
Indicates that the issue/PR needs a Team:* label
labels
Jul 23, 2020
- Fix convert processor fail_on_error parameter naming. - Add event.ingested to ingest node pipeline. - Remove ECS suffixing from dashboard/viz titles. - Prioritize using ECS fields in dashboards. - Add Suricata logo to dashboards.
andrewkroh
force-pushed
the
feature/fb/suricata-updates
branch
from
July 23, 2020 22:03
b86909b
to
75f2b79
Compare
Pinging @elastic/siem (Team:SIEM) |
Collaborator
Looks like I need to update test_module.py to ignore |
leehinman
approved these changes
Jul 27, 2020
v1v
added a commit
to v1v/beats
that referenced
this pull request
Jul 30, 2020
…ne-2.0 * upstream/master: (29 commits) Add an explicit system test for processes on unix systems (elastic#20320) [Autodiscovery] Ignore ErrInputNotFinished errors in autodiscover config checks (elastic#20305) [CI] Update README.md with CI references (elastic#20316) Add ECK doc links to Heartbeat docs (elastic#20284) [Filebeat] Add export tests to x-pack/filebeat (elastic#20156) feat(ci): support building docker images for PRs (elastic#20323) Update system tests dependency (elastic#20287) [Libbeat] Log debug message if the Kibana dashboard can not be imported from the archive (elastic#12211) (elastic#20150) [Filebeat][Gsuite] Transform all dates to timestamp with processor (elastic#20308) Infer types in Prometheus remote_write (elastic#19944) Remove unnecessary restarts of metricsets while using Node autodiscover (elastic#19974) docs: update changelog on master branch (elastic#20259) feat(ci): support storing artifacts for PRs in separate dirs (elastic#20282) [CI] Change upstream reference (elastic#20296) [Filebeat] Updates to Suricata module (elastic#20220) [docs] Fix Windows download link for agent (elastic#20258) [docs] Rename release highlights to what's new (elastic#20255) fix: update the display name of the multibranch job (elastic#20265) [Elastic Agent] Add basic protocol to control Elastic Agent. (elastic#20146) Cisco ASA: Fix message 106100 (elastic#20245) ...
andrewkroh
added a commit
to andrewkroh/beats
that referenced
this pull request
Aug 3, 2020
This is a followup to elastic#20220 to get the correct dashboard files into place.
andrewkroh
added a commit
that referenced
this pull request
Aug 3, 2020
This is a followup to #20220 to get the correct dashboard files into place.
3 tasks
andrewkroh
added a commit
to andrewkroh/beats
that referenced
this pull request
Aug 6, 2020
* Updates to Suricata module - Fix convert processor fail_on_error parameter naming. - Add event.ingested to ingest node pipeline. - Remove ECS suffixing from dashboard/viz titles. - Prioritize using ECS fields in dashboards. - Add Suricata logo to dashboards. * Always remove event.ingested from test data (cherry picked from commit 0659a12)
andrewkroh
added a commit
to andrewkroh/beats
that referenced
this pull request
Aug 6, 2020
This is a followup to elastic#20220 to get the correct dashboard files into place. (cherry picked from commit b671339)
andrewkroh
added a commit
that referenced
this pull request
Aug 11, 2020
) * [Filebeat] Updates to Suricata module (#20220) * Updates to Suricata module - Fix convert processor fail_on_error parameter naming. - Add event.ingested to ingest node pipeline. - Remove ECS suffixing from dashboard/viz titles. - Prioritize using ECS fields in dashboards. - Add Suricata logo to dashboards. * Always remove event.ingested from test data (cherry picked from commit 0659a12) * Update Suricata dashboards (#20394) This is a followup to #20220 to get the correct dashboard files into place. (cherry picked from commit b671339)
melchiormoulin
pushed a commit
to melchiormoulin/beats
that referenced
this pull request
Oct 14, 2020
* Updates to Suricata module - Fix convert processor fail_on_error parameter naming. - Add event.ingested to ingest node pipeline. - Remove ECS suffixing from dashboard/viz titles. - Prioritize using ECS fields in dashboards. - Add Suricata logo to dashboards. * Always remove event.ingested from test data
melchiormoulin
pushed a commit
to melchiormoulin/beats
that referenced
this pull request
Oct 14, 2020
This is a followup to elastic#20220 to get the correct dashboard files into place.
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
What does this PR do?
This makes a few miscellaneous changes to the Suricata module to cleanup dashboards and fix a few minor issues in the pipeline.
Checklist
CHANGELOG.next.asciidoc
orCHANGELOG-developer.next.asciidoc
.Related issues
Screenshots