-
Notifications
You must be signed in to change notification settings - Fork 435
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
all: migrate ssi packages to ecs@mappings #10135
Conversation
packages/1password/changelog.yml
Outdated
@@ -1,4 +1,9 @@ | |||
# newer versions go on top | |||
- version: "1.29.0" | |||
changes: | |||
- description: Update the kibana constraint to ^8.13.0. Modified the field definitions to remove ECS fields where possible. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
From a user perspective, do you think this second sentence is confusing? Maybe we should mention the ecs@mappings
component template in some way. Like
Removed ECS field definitions that have been made redundant by the
ecs@mappings
component template.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
That seems reasonable.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚀 Benchmarks reportTo see the full report comment with |
09c8746
to
3e06b13
Compare
Pinging @elastic/security-service-integrations (Team:Security-Service Integrations) |
Correction: actually not an issue since we're not importing them now. They should just be there, presumably for transform destination indexes as well as data streams. |
Update: Transform destination indexes don't get the ECS dynamic templates that data streams get. This PR doesn't remove the manual definitions in transforms, so it still works (checked for ti_opencti). |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I looked at the full diffs for 4 or 5 integrations and checked out the impact on transforms in detail for ti_opencti
. All looks good.
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/1password
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/akamai
Removed import_mappings. The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/amazon_security_lake
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/atlassian_bitbucket
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/atlassian_confluence
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/atlassian_jira
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/auth0
The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/aws_bedrock
Removed import_mappings. The conditions.kibana.version in the package manifest changed from ^8.12.0 to ^8.13.0. Modified the field definitions to remove ECS fields made redundant by the ecs@mappings component template. The ecs.version in sample_event.json files was changed to 8.11.0. Previously sample_event.json files contained 8.0.0. [git-generate] go run github.com/andrewkroh/go-examples/[email protected] -ecs-version=8.11.0 [email protected] -drop-import-mappings -kibana-version=^8.13.0 -pr=10135 -fields-yml-drop-ecs packages/azure_blob_storage
Package okta - 2.11.0 containing this change is available at https://epr.elastic.co/search?package=okta |
Package opencanary - 0.1.0 containing this change is available at https://epr.elastic.co/search?package=opencanary |
Package panw_cortex_xdr - 1.27.0 containing this change is available at https://epr.elastic.co/search?package=panw_cortex_xdr |
Package ping_one - 1.16.0 containing this change is available at https://epr.elastic.co/search?package=ping_one |
Package pps - 0.1.0 containing this change is available at https://epr.elastic.co/search?package=pps |
Package prisma_cloud - 1.3.0 containing this change is available at https://epr.elastic.co/search?package=prisma_cloud |
Package proofpoint_tap - 1.22.0 containing this change is available at https://epr.elastic.co/search?package=proofpoint_tap |
Package pulse_connect_secure - 2.1.0 containing this change is available at https://epr.elastic.co/search?package=pulse_connect_secure |
Package qualys_vmdr - 3.3.0 containing this change is available at https://epr.elastic.co/search?package=qualys_vmdr |
Package rapid7_insightvm - 1.12.0 containing this change is available at https://epr.elastic.co/search?package=rapid7_insightvm |
Package santa - 3.18.0 containing this change is available at https://epr.elastic.co/search?package=santa |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
__
Proposed commit message
Checklist
changelog.yml
file.Author's Checklist
How to test this PR locally
Related issues
Screenshots