Commit 4194408
[Filebeat] Add Pensando DFW Module (#21063)
* Add Pensando module init
* explicitly define the ECS version per testing
* updates to docs from make update
* updates for pensando module
* updates to documentation and db screenshot
* add dashboard export to repo
* update to add pensando beat
* Update filebeat/module/pensando/dfw/config/dfw.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* Update pipeline.yml
Condensed all "remove" fields to 1 list of fields.
* Update pipeline.yml
Do not remove the payload_raw field.
* Update filebeat/module/pensando/_meta/docs.asciidoc
Co-authored-by: Andrew Kroh <andrew.kroh@elastic.co>
* Update config.yml
Added syslog_host and syslog_port values as suggested.
* Update docs.asciidoc
Added documentation for syslog_host and syslog_port as suggested.
* Update pipeline.yml
Removing payload_raw - this and json are, essentially, the same field and no longer needed after parsing.
* Update pipeline.yml
Changed checks if values are != null to use the filebeat specific ignore_empty_value: true instead.
* Remove set of event.module
Remove the set param for event.module. Filebeat should add this automatically.
* Apply suggestions from code review
Co-authored-by: Andrew Kroh <andrew.kroh@elastic.co>
* Update test.log
* Use convert instead of set for some fields
Changed ECS sets for IP addresses and ports to converts of type ip and
integer respectively.
* Updates for geoip and autonomous system
* add pensando dfw fields
* fixes from make -C filebeat update
* fixes for filebeat check
* make update changes
* Update filebeat/module/pensando/dfw/config/dfw.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* Update filebeat/module/pensando/dfw/ingest/pipeline.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* Update filebeat/module/pensando/dfw/ingest/pipeline.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* Update filebeat/module/pensando/dfw/ingest/pipeline.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* Update filebeat/module/pensando/dfw/ingest/pipeline.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* remove old json file
* ran tests
* Update filebeat/module/pensando/dfw/ingest/pipeline.yml
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
* gen after run of 'mage -v pythonIntegTest'
* Update fields.yml
* mage fmt update request
Co-authored-by: Marc Guasch <marc-gr@users.noreply.github.com>
Co-authored-by: Andrew Kroh <andrew.kroh@elastic.co>1 parent 9dbfd44 commit 4194408
21 files changed
Lines changed: 2152 additions & 0 deletions
File tree
- filebeat
- docs
- images
- modules
- include
- modules.d
- module/pensando
- _meta
- kibana/7/dashboard
- dfw
- _meta
- config
- ingest
- test
- x-pack/filebeat
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
104 | 104 | | |
105 | 105 | | |
106 | 106 | | |
| 107 | + | |
107 | 108 | | |
108 | 109 | | |
109 | 110 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
69 | 69 | | |
70 | 70 | | |
71 | 71 | | |
| 72 | + | |
72 | 73 | | |
73 | 74 | | |
74 | 75 | | |
| |||
105827 | 105828 | | |
105828 | 105829 | | |
105829 | 105830 | | |
| 105831 | + | |
| 105832 | + | |
| 105833 | + | |
| 105834 | + | |
| 105835 | + | |
| 105836 | + | |
| 105837 | + | |
| 105838 | + | |
| 105839 | + | |
| 105840 | + | |
| 105841 | + | |
| 105842 | + | |
| 105843 | + | |
| 105844 | + | |
| 105845 | + | |
| 105846 | + | |
| 105847 | + | |
| 105848 | + | |
| 105849 | + | |
| 105850 | + | |
| 105851 | + | |
| 105852 | + | |
| 105853 | + | |
| 105854 | + | |
| 105855 | + | |
| 105856 | + | |
| 105857 | + | |
| 105858 | + | |
| 105859 | + | |
| 105860 | + | |
| 105861 | + | |
| 105862 | + | |
| 105863 | + | |
| 105864 | + | |
| 105865 | + | |
| 105866 | + | |
| 105867 | + | |
| 105868 | + | |
| 105869 | + | |
| 105870 | + | |
| 105871 | + | |
| 105872 | + | |
| 105873 | + | |
| 105874 | + | |
| 105875 | + | |
| 105876 | + | |
| 105877 | + | |
| 105878 | + | |
| 105879 | + | |
| 105880 | + | |
| 105881 | + | |
| 105882 | + | |
| 105883 | + | |
| 105884 | + | |
| 105885 | + | |
| 105886 | + | |
| 105887 | + | |
| 105888 | + | |
| 105889 | + | |
| 105890 | + | |
| 105891 | + | |
| 105892 | + | |
| 105893 | + | |
| 105894 | + | |
| 105895 | + | |
| 105896 | + | |
| 105897 | + | |
| 105898 | + | |
| 105899 | + | |
| 105900 | + | |
| 105901 | + | |
| 105902 | + | |
| 105903 | + | |
| 105904 | + | |
| 105905 | + | |
| 105906 | + | |
| 105907 | + | |
| 105908 | + | |
| 105909 | + | |
| 105910 | + | |
| 105911 | + | |
| 105912 | + | |
| 105913 | + | |
| 105914 | + | |
| 105915 | + | |
| 105916 | + | |
| 105917 | + | |
| 105918 | + | |
| 105919 | + | |
| 105920 | + | |
| 105921 | + | |
| 105922 | + | |
| 105923 | + | |
| 105924 | + | |
| 105925 | + | |
| 105926 | + | |
| 105927 | + | |
| 105928 | + | |
| 105929 | + | |
| 105930 | + | |
| 105931 | + | |
| 105932 | + | |
| 105933 | + | |
| 105934 | + | |
| 105935 | + | |
| 105936 | + | |
| 105937 | + | |
| 105938 | + | |
| 105939 | + | |
| 105940 | + | |
| 105941 | + | |
| 105942 | + | |
| 105943 | + | |
| 105944 | + | |
| 105945 | + | |
| 105946 | + | |
| 105947 | + | |
| 105948 | + | |
| 105949 | + | |
| 105950 | + | |
| 105951 | + | |
| 105952 | + | |
| 105953 | + | |
| 105954 | + | |
| 105955 | + | |
| 105956 | + | |
| 105957 | + | |
| 105958 | + | |
| 105959 | + | |
| 105960 | + | |
| 105961 | + | |
| 105962 | + | |
| 105963 | + | |
| 105964 | + | |
| 105965 | + | |
| 105966 | + | |
| 105967 | + | |
| 105968 | + | |
| 105969 | + | |
| 105970 | + | |
| 105971 | + | |
105830 | 105972 | | |
105831 | 105973 | | |
105832 | 105974 | | |
| |||
Loading
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
50 | 50 | | |
51 | 51 | | |
52 | 52 | | |
| 53 | + | |
53 | 54 | | |
54 | 55 | | |
55 | 56 | | |
| |||
121 | 122 | | |
122 | 123 | | |
123 | 124 | | |
| 125 | + | |
124 | 126 | | |
125 | 127 | | |
126 | 128 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
335 | 335 | | |
336 | 336 | | |
337 | 337 | | |
| 338 | + | |
| 339 | + | |
| 340 | + | |
| 341 | + | |
| 342 | + | |
| 343 | + | |
| 344 | + | |
| 345 | + | |
| 346 | + | |
| 347 | + | |
| 348 | + | |
| 349 | + | |
338 | 350 | | |
339 | 351 | | |
340 | 352 | | |
| |||
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
0 commit comments