Skip to content

[Windows] Sync with winlogbeat module changes#685

Merged
marc-gr merged 2 commits intoelastic:masterfrom
marc-gr:winlogbeat-ecs-1.8
Feb 17, 2021
Merged

[Windows] Sync with winlogbeat module changes#685
marc-gr merged 2 commits intoelastic:masterfrom
marc-gr:winlogbeat-ecs-1.8

Conversation

@marc-gr
Copy link
Copy Markdown
Contributor

@marc-gr marc-gr commented Feb 15, 2021

What does this PR do?

Syncs the windows integration with the changes in winlogbeat modules from beats.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.

@elasticmachine
Copy link
Copy Markdown

Pinging @elastic/security-external-integrations (Team:Security-External Integrations)

@elasticmachine
Copy link
Copy Markdown

elasticmachine commented Feb 15, 2021

💚 Build Succeeded

the below badges are clickable and redirect to their specific view in the CI or DOCS
Pipeline View Test View Changes Artifacts preview

Expand to view the summary

Build stats

  • Build Cause: Pull request #685 updated

  • Start Time: 2021-02-17T08:32:53.721+0000

  • Duration: 9 min 51 sec

  • Commit: 989e51a

Test stats 🧪

Test Results
Failed 0
Passed 38
Skipped 0
Total 38

Trends 🧪

Image of Build Times

Image of Tests

Copy link
Copy Markdown
Member

@P1llus P1llus left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM from my side, some small comments just to make sure if its intended, I looked at the processors, config files and ECS mapping, though I am unable to 100% determine if we have all the ECS fields used by the integration in ecs.yml. Is there ways we test this today?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I can't find any refrence in the commit that the variable auditActions was changed to msobjMessageTable, is this resolving an earlier error?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants