-
Notifications
You must be signed in to change notification settings - Fork 444
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[AbuseCH] Converting threat intel module to package #1866
Conversation
Pinging @elastic/security-external-integrations (Team:Security-External Integrations) |
Dashboards will be added in separate PR |
Still missing some basic system tests, so the CI will fail for now. |
💚 Build Succeeded
Expand to view the summary
Build stats
Test stats 🧪
🤖 GitHub commentsTo re-run your PR in the CI, just comment with:
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM other than the couple doubts
packages/ti_abusech/data_stream/malware/elasticsearch/ingest_pipeline/default.yml
Show resolved
Hide resolved
* stashing * initial commit of new package * updating system tests * Update changelog and change version * new ecs version, moving to ga and new test files
What does this PR do?
Converts the AbuseCH filesets from filebeat modules to a new integration package
Checklist
changelog.yml
file.manifest.yml
file to point to the latest Elastic stack release (e.g.^7.13.0
).