Skip to content

[Backport 2.x] fix null query filter conversion from sigma to query string query#813

Merged
jowg-amazon merged 1 commit into2.xfrom
backport/backport-722-to-2.x
Feb 6, 2024
Merged

[Backport 2.x] fix null query filter conversion from sigma to query string query#813
jowg-amazon merged 1 commit into2.xfrom
backport/backport-722-to-2.x

Conversation

@opensearch-trigger-bot
Copy link
Copy Markdown
Contributor

Backport a59a014 from #722

* fix null query filter conversion from sigma to query string query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* fix rule to query conversion tests for null filter

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* enhance test to verify non null doc doesnt match null query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

---------

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>
(cherry picked from commit a59a014)
@codecov
Copy link
Copy Markdown

codecov bot commented Jan 18, 2024

Codecov Report

All modified and coverable lines are covered by tests ✅

Comparison is base (8990aed) 24.83% compared to head (9e47ea3) 24.83%.
Report is 1 commits behind head on 2.x.

Additional details and impacted files
@@            Coverage Diff            @@
##                2.x     #813   +/-   ##
=========================================
  Coverage     24.83%   24.83%           
  Complexity     1024     1024           
=========================================
  Files           277      277           
  Lines         12683    12683           
  Branches       1389     1389           
=========================================
  Hits           3150     3150           
  Misses         9267     9267           
  Partials        266      266           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

@jowg-amazon jowg-amazon merged commit 658c2a3 into 2.x Feb 6, 2024
@github-actions github-actions bot deleted the backport/backport-722-to-2.x branch February 6, 2024 01:46
eirsep added a commit to eirsep/security-analytics that referenced this pull request Mar 13, 2024
…ensearch-project#722) (opensearch-project#813)

* fix null query filter conversion from sigma to query string query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* fix rule to query conversion tests for null filter

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* enhance test to verify non null doc doesnt match null query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

---------

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>
(cherry picked from commit a59a014)

Co-authored-by: Surya Sashank Nistala <snistala@amazon.com>
eirsep added a commit to eirsep/security-analytics that referenced this pull request Mar 13, 2024
…ensearch-project#722) (opensearch-project#813)

* fix null query filter conversion from sigma to query string query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* fix rule to query conversion tests for null filter

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

* enhance test to verify non null doc doesnt match null query

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>

---------

Signed-off-by: Surya Sashank Nistala <snistala@amazon.com>
(cherry picked from commit a59a014)

Co-authored-by: Surya Sashank Nistala <snistala@amazon.com>
riysaxen-amzn pushed a commit to riysaxen-amzn/security-analytics that referenced this pull request Mar 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants