Skip to content

[7.x] [ML] Adds security_linux and security_windows Modules (#85065)#85637

Merged
spong merged 1 commit intoelastic:7.xfrom
spong:backport/7.x/pr-85065
Dec 10, 2020
Merged

[7.x] [ML] Adds security_linux and security_windows Modules (#85065)#85637
spong merged 1 commit intoelastic:7.xfrom
spong:backport/7.x/pr-85065

Conversation

@spong
Copy link
Copy Markdown
Member

@spong spong commented Dec 10, 2020

Backports the following commits to 7.x:

* initial commit

refactored multi-index, multi-pipeline jobs for 7.11. These are new modules that will live alongside the existing jobs.

* Update ml_modules.tsx

added new module names to the list

* Update get_module.ts

added new module names

* Linter fixes

* Order matters

* manifest fixes

added colon char to the module name and shortened the description

* additon to description

after talking with the security team today, adding this suggested text to the beginning of the description so it will tend to be visible to the user:
"This is a new refactored job which works on ECS compatible events across multiple indices."

* Adjust module recognizer test for auditbeat dataset

* influencers

changes to the metadata jobs to make influencers identical to the originals

* change for security app

changes to two datafeeds needed for logic in the Security app - added the suffix "_ecs" to two ids.

Co-authored-by: Garrett Spong <spong@users.noreply.github.com>
Co-authored-by: Robert Oskamp <robert.oskamp@elastic.co>
@spong spong added the backport This PR is a backport of another PR label Dec 10, 2020
@kibanamachine
Copy link
Copy Markdown
Contributor

💚 Build Succeeded

Metrics [docs]

Async chunks

Total size of all lazy-loaded chunks that will be downloaded as the user navigates the app

id before after diff
securitySolution 8.3MB 8.3MB +36.0B

Distributable file count

id before after diff
default 47260 48052 +792

To update your PR or re-run it, just comment with:
@elasticmachine merge upstream

@spong spong merged commit 9fc09cb into elastic:7.x Dec 10, 2020
@spong spong deleted the backport/7.x/pr-85065 branch December 10, 2020 22:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport This PR is a backport of another PR

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants