Skip to content

[Backport 2.6] #725 Sigma keywords field not handled correctly#753

Merged
jowg-amazon merged 2 commits intoopensearch-project:2.6from
jowg-amazon:bp725to2.6
Mar 11, 2024
Merged

[Backport 2.6] #725 Sigma keywords field not handled correctly#753
jowg-amazon merged 2 commits intoopensearch-project:2.6from
jowg-amazon:bp725to2.6

Conversation

@jowg-amazon
Copy link
Copy Markdown
Collaborator

Description

Backport #725 to 2.6

Issues Resolved

[List any issues this PR will resolve]

Check List

  • New functionality includes testing.
    • All tests pass
  • New functionality has been documented.
    • New functionality has javadoc added
  • Commits are signed per the DCO using --signoff

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.

jowg-amazon and others added 2 commits November 29, 2023 17:43
Signed-off-by: Joanne Wang <jowg@amazon.com>

* remove wildcard

Signed-off-by: Joanne Wang <jowg@amazon.com>

* changed wildcardtest

Signed-off-by: Joanne Wang <jowg@amazon.com>

* fixed wildcards

Signed-off-by: Joanne Wang <jowg@amazon.com>

* fixed wildcard query test

Signed-off-by: Joanne Wang <jowg@amazon.com>

* fixed correlation engine tests

Signed-off-by: Joanne Wang <jowg@amazon.com>

* fixed query backend tests

Signed-off-by: Joanne Wang <jowg@amazon.com>

* clean up

Signed-off-by: Joanne Wang <jowg@amazon.com>

* added two integration tests

Signed-off-by: Joanne Wang <jowg@amazon.com>

---------

Signed-off-by: Joanne Wang <jowg@amazon.com>
Signed-off-by: Joanne Wang <jowg@amazon.com>
@codecov
Copy link
Copy Markdown

codecov bot commented Dec 19, 2023

Codecov Report

All modified and coverable lines are covered by tests ✅

Comparison is base (9aac181) 35.67% compared to head (61fd3e5) 35.62%.
Report is 1 commits behind head on 2.6.

Additional details and impacted files
@@             Coverage Diff              @@
##                2.6     #753      +/-   ##
============================================
- Coverage     35.67%   35.62%   -0.05%     
- Complexity      881      885       +4     
============================================
  Files           186      186              
  Lines          7274     7267       -7     
  Branches        878      877       -1     
============================================
- Hits           2595     2589       -6     
- Misses         4440     4443       +3     
+ Partials        239      235       -4     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

riysaxen-amzn pushed a commit to riysaxen-amzn/security-analytics that referenced this pull request Feb 20, 2024
* Improved display of log types.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Fixed cypress tests.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Updated cypress workflow.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Fixed cypress tests. Fixed flyout. Fixed rule form.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Updated snapshots.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Updated log type labels usage. Adjusted cypress tests.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

* Updated snapshots.

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>

---------

Signed-off-by: AWSHurneyt <hurneyt@amazon.com>
@jowg-amazon jowg-amazon merged commit b40e29c into opensearch-project:2.6 Mar 11, 2024
riysaxen-amzn pushed a commit to riysaxen-amzn/security-analytics that referenced this pull request Mar 25, 2024
opensearch-project#753) (opensearch-project#760)

* Added document _id as param for terms query when searching alerts by their ids

Signed-off-by: Stevan Buzejic <buzejic.stevan@gmail.com>

* Empty-Commit

Signed-off-by: Stevan Buzejic <buzejic.stevan@gmail.com>

Signed-off-by: Stevan Buzejic <buzejic.stevan@gmail.com>

Signed-off-by: Stevan Buzejic <buzejic.stevan@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants