-
Notifications
You must be signed in to change notification settings - Fork 550
Closed
Labels
Integration:cloudflare_logpushCloudflare LogpushCloudflare LogpushTeam:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]needs:triage
Description
Integration Name
Cloudflare Logpush [cloudflare_logpush]
Dataset Name
cloudflare_logpush.http_request
Integration Version
1.37.2
Agent Version
8.17.3
Agent Output Type
elasticsearch
Elasticsearch Version
8.17.3
OS Version and Architecture
Elastic Cloud
Software/API Version
No response
Error Message
The field cloudflare_logpush.http_request.bot.detection_tags is a array of strings, but it was wrongly mapped as a long.
With the wrong mapping the field is ignored and we cannot query on it.
Event Original
No response
What did you do?
The error is in the mapping of the integration.
What did you see?
The field is ignored, so we cannot use it.
What did you expect to see?
The field should be mapped as keyword so we are able to use it in visualizations, dashboards and queries.
Anything else?
No response
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
Integration:cloudflare_logpushCloudflare LogpushCloudflare LogpushTeam:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]needs:triage