Skip to content

Conversation

@taylor-swanson
Copy link
Contributor

@taylor-swanson taylor-swanson commented May 25, 2023

What does this PR do?

Note: This PR only updates the ECS version of the selected packages. If additional work is needed to align a package to a new feature provided by ECS, it will be handled in a separate PR.

Updates the following SEI packages to ECS 8.8:

  • keycloak
  • lastpass
  • lyve_cloud
  • m365_defender
  • mattermost
  • microsoft_defender_endpoint
  • microsoft_dhcp
  • microsoft_exchange_online_message_trace
  • mimecast
  • modsecurity
  • mysql_enterprise
  • netflow
  • netscout
  • netskope
  • network_traffic
  • o365
  • okta
  • osquery
  • panw
  • panw_cortex_xdr
  • pfsense
  • ping_one
  • proofpoint_tap
  • pulse_connect_secure
  • qnap_nas
  • radware
  • rapid7_insightvm
  • santa
  • sentinel_one
  • slack
  • snort
  • snyk
  • sonicwall_firewall
  • sophos
  • sophos_central

Changes generated by:

ecs-update -owner elastic/security-external-integrations -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr 6327 packages/<PACKAGE> 

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.

Related issues

This updates the keycloak integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/keycloak
This updates the lastpass integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/lastpass
This updates the lyve_cloud integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/lyve_cloud
This updates the m365_defender integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/m365_defender
This updates the mattermost integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/mattermost
This updates the microsoft_defender_endpoint integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/microsoft_defender_endpoint
This updates the microsoft_dhcp integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/microsoft_dhcp
…8.7.0 This updates the microsoft_exchange_online_message_trace integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/microsoft_exchange_online_message_trace
This updates the mimecast integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/mimecast
This updates the modsecurity integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/modsecurity
This updates the mysql_enterprise integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/mysql_enterprise
This updates the netflow integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/netflow
This updates the netscout integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/netscout
This updates the netskope integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/netskope
This updates the network_traffic integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/network_traffic
This updates the o365 integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/o365
This updates the okta integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/okta
This updates the osquery integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/osquery
This updates the panw integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/panw
This updates the panw_cortex_xdr integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/panw_cortex_xdr
This updates the pfsense integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/pfsense
This updates the ping_one integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/ping_one
This updates the proofpoint_tap integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/proofpoint_tap
This updates the pulse_connect_secure integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/pulse_connect_secure
This updates the qnap_nas integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/qnap_nas
This updates the radware integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/radware
This updates the rapid7_insightvm integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/rapid7_insightvm
This updates the santa integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/santa
This updates the sentinel_one integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/sentinel_one
This updates the slack integration to ECS 8.8.0. It was referencing elastic/ecs git@8.7 and using 8.7.0 in ingest pipelines. [git-generate] go run github.com/andrewkroh/go-examples/ecs-update@latest -ecs-version=8.8.0 -ecs-git-ref=8.8 -pr=6327 packages/slack
@elasticmachine
Copy link

Package microsoft_dhcp - 1.13.0 containing this change is available at https://epr.elastic.co/search?package=microsoft_dhcp

@elasticmachine
Copy link

Package microsoft_exchange_online_message_trace - 1.4.0 containing this change is available at https://epr.elastic.co/search?package=microsoft_exchange_online_message_trace

@elasticmachine
Copy link

Package mimecast - 1.10.0 containing this change is available at https://epr.elastic.co/search?package=mimecast

@elasticmachine
Copy link

Package modsecurity - 1.9.0 containing this change is available at https://epr.elastic.co/search?package=modsecurity

@elasticmachine
Copy link

Package mysql_enterprise - 1.6.0 containing this change is available at https://epr.elastic.co/search?package=mysql_enterprise

@elasticmachine
Copy link

Package netflow - 2.8.0 containing this change is available at https://epr.elastic.co/search?package=netflow

@elasticmachine
Copy link

Package netscout - 0.15.0 containing this change is available at https://epr.elastic.co/search?package=netscout

@elasticmachine
Copy link

Package netskope - 1.8.0 containing this change is available at https://epr.elastic.co/search?package=netskope

@elasticmachine
Copy link

Package network_traffic - 1.18.0 containing this change is available at https://epr.elastic.co/search?package=network_traffic

@elasticmachine
Copy link

Package o365 - 1.15.0 containing this change is available at https://epr.elastic.co/search?package=o365

@elasticmachine
Copy link

Package okta - 1.22.0 containing this change is available at https://epr.elastic.co/search?package=okta

@elasticmachine
Copy link

Package osquery - 1.10.0 containing this change is available at https://epr.elastic.co/search?package=osquery

@elasticmachine
Copy link

Package panw - 3.9.0 containing this change is available at https://epr.elastic.co/search?package=panw

@elasticmachine
Copy link

Package panw_cortex_xdr - 1.11.0 containing this change is available at https://epr.elastic.co/search?package=panw_cortex_xdr

@elasticmachine
Copy link

Package pfsense - 1.8.0 containing this change is available at https://epr.elastic.co/search?package=pfsense

@elasticmachine
Copy link

Package ping_one - 1.3.0 containing this change is available at https://epr.elastic.co/search?package=ping_one

@elasticmachine
Copy link

Package proofpoint_tap - 1.7.0 containing this change is available at https://epr.elastic.co/search?package=proofpoint_tap

@elasticmachine
Copy link

Package pulse_connect_secure - 1.9.0 containing this change is available at https://epr.elastic.co/search?package=pulse_connect_secure

@elasticmachine
Copy link

Package qnap_nas - 1.10.0 containing this change is available at https://epr.elastic.co/search?package=qnap_nas

@elasticmachine
Copy link

Package radware - 0.14.0 containing this change is available at https://epr.elastic.co/search?package=radware

@elasticmachine
Copy link

Package rapid7_insightvm - 0.4.0 containing this change is available at https://epr.elastic.co/search?package=rapid7_insightvm

@elasticmachine
Copy link

Package santa - 3.7.0 containing this change is available at https://epr.elastic.co/search?package=santa

@elasticmachine
Copy link

Package sentinel_one - 1.9.0 containing this change is available at https://epr.elastic.co/search?package=sentinel_one

@elasticmachine
Copy link

Package slack - 1.5.0 containing this change is available at https://epr.elastic.co/search?package=slack

@elasticmachine
Copy link

Package snort - 1.7.0 containing this change is available at https://epr.elastic.co/search?package=snort

@elasticmachine
Copy link

Package snyk - 1.9.0 containing this change is available at https://epr.elastic.co/search?package=snyk

@elasticmachine
Copy link

Package sonicwall_firewall - 1.5.0 containing this change is available at https://epr.elastic.co/search?package=sonicwall_firewall

@elasticmachine
Copy link

Package sophos - 2.9.0 containing this change is available at https://epr.elastic.co/search?package=sophos

@elasticmachine
Copy link

Package sophos_central - 1.4.0 containing this change is available at https://epr.elastic.co/search?package=sophos_central

sodhikirti07 pushed a commit that referenced this pull request Jun 15, 2023
Updates the following SEI packages to ECS 8.8: - keycloak - lastpass - lyve_cloud - m365_defender - mattermost - microsoft_defender_endpoint - microsoft_dhcp - microsoft_exchange_online_message_trace - mimecast - modsecurity - mysql_enterprise - netflow - netscout - netskope - network_traffic - o365 - okta - osquery - panw - panw_cortex_xdr - pfsense - ping_one - proofpoint_tap - pulse_connect_secure - qnap_nas - radware - rapid7_insightvm - santa - sentinel_one - slack - snort - snyk - sonicwall_firewall - sophos - sophos_central
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

3 participants