Skip to content

[DOCS] EQL: Document sequences#56721

Merged
jrodewig merged 9 commits intoelastic:masterfrom
jrodewig:docs__eql-sequences
May 14, 2020
Merged

[DOCS] EQL: Document sequences#56721
jrodewig merged 9 commits intoelastic:masterfrom
jrodewig:docs__eql-sequences

Conversation

@jrodewig
Copy link
Copy Markdown
Contributor

Relates to #56320

@jrodewig jrodewig added >docs General docs changes :Analytics/EQL EQL querying labels May 13, 2020
@jrodewig jrodewig requested review from costin and rw-access May 13, 2020 21:14
@elasticmachine
Copy link
Copy Markdown
Collaborator

Pinging @elastic/es-docs (>docs)

@elasticmachine elasticmachine added the Team:Docs Meta label for docs team label May 13, 2020
@elasticmachine
Copy link
Copy Markdown
Collaborator

Pinging @elastic/es-ql (:Query Languages/EQL)

@elasticmachine elasticmachine added the Team:QL (Deprecated) Meta label for query languages team label May 13, 2020
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
Unique identifier for the event.
This ID is only unique within the index.

`_score`::
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Question about this @costin: do we use scoring at all right now? I assumed everything was wrapped in bool/filter so we wouldn't get a scre

jrodewig and others added 2 commits May 13, 2020 17:43
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
Copy link
Copy Markdown
Contributor

@rw-access rw-access left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

this is awesome @jrodewig. i'm pumped

@jrodewig
Copy link
Copy Markdown
Contributor Author

Thanks as always @rw-access.

jrodewig and others added 2 commits May 13, 2020 17:46
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
@jrodewig jrodewig merged commit 15431f2 into elastic:master May 14, 2020
@jrodewig jrodewig deleted the docs__eql-sequences branch May 14, 2020 15:01
jrodewig added a commit that referenced this pull request May 14, 2020
Co-authored-by: Ross Wolf <31489089+rw-access@users.noreply.github.com>
@jrodewig
Copy link
Copy Markdown
Contributor Author

Backport commits

master 15431f2
7.x 2921747

jrodewig added a commit that referenced this pull request May 19, 2020
Adds an example using the sequence syntax to the 'Run an EQL search'
tutorial.

Supplements other examples added with #56721
jrodewig added a commit that referenced this pull request May 19, 2020
Adds an example using the sequence syntax to the 'Run an EQL search'
tutorial.

Supplements other examples added with #56721
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

:Analytics/EQL EQL querying >docs General docs changes Team:Docs Meta label for docs team Team:QL (Deprecated) Meta label for query languages team

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants