-
Notifications
You must be signed in to change notification settings - Fork 387
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Cisco FTD] Convert source.bytes and network.bytes to integer for proper calculation of network.bytes #5859
Conversation
…ion of network.bytes [5858]
Pinging @elastic/security-external-integrations (Team:Security-External Integrations) |
/test |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This looks fine, but it would be great to add a pipeline test to keep us honest.
Co-authored-by: Dan Kortschak <90160302+efd6@users.noreply.github.com>
You just need some sanitized sample events? |
If you're unable to add the tests yourself, then yes, that's what's needed. |
/test |
🌐 Coverage report
|
It looks like the tests already in place cover this. Are you able to regenerate the expectations? |
Here are a few:
Eric |
Was adding the above sample messages while you responded. How exactly would I regenerate expectations? The expectation is that 1+1=2 instead of 1+1=11. |
This requires that you have the elastic-package dev tools and Docker installed. Then you run |
If you wouldn't mind. I will work on getting that setup in the meantime for any future needs. Eric |
/test |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
thanks
Package cisco_ftd - 2.10.1 containing this change is available at https://epr.elastic.co/search?package=cisco_ftd |
…calculation of network.bytes (elastic#5859)
Type of change
What does this PR do?
The values of
source.bytes
andnetwork.bytes
may enter the pipeline as string values instead of integers. This is causing the combination of strings instead of addition of integers in the calculation ofnetwork.bytes
. This PR adds twoconvert
processors immediately before thenetwork.bytes
calculation to ensure bothsource.bytes
anddestination.bytes
are integers.Checklist
changelog.yml
file.Author's Checklist
Related issues
network.bytes
due to String Values Instead of Integers #5858