Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[hi]*: ensure event.kind is correctly set for pipeline errors #6616

Merged
merged 2 commits into from Jun 21, 2023
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Jump to
Jump to file
Failed to load files.
Diff view
Diff view
5 changes: 5 additions & 0 deletions packages/hashicorp_vault/changelog.yml
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "1.12.0"
changes:
- description: Ensure event.kind is correctly set for pipeline errors.
type: enhancement
link: https://github.com/elastic/integrations/pull/6616
- version: "1.11.0"
changes:
- description: Update package to ECS 8.8.0.
Expand Down
Expand Up @@ -181,6 +181,9 @@ processors:
ignore_failure: true
ignore_missing: true
on_failure:
- set:
field: error.message
value: '{{ _ingest.on_failure_message }}'
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -37,6 +37,9 @@ processors:
ignore_failure: true
ignore_missing: true
on_failure:
- set:
field: error.message
value: '{{ _ingest.on_failure_message }}'
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -51,6 +51,9 @@ processors:
copy_from: hashicorp_vault.log.file_path
ignore_failure: true
on_failure:
- set:
field: error.message
value: '{{ _ingest.on_failure_message }}'
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -31,6 +31,9 @@ processors:
target_field: hashicorp_vault.metrics
ignore_missing: true
on_failure:
- set:
field: error.message
value: '{{ _ingest.on_failure_message }}'
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
2 changes: 1 addition & 1 deletion packages/hashicorp_vault/manifest.yml
@@ -1,7 +1,7 @@
format_version: 1.0.0
name: hashicorp_vault
title: Hashicorp Vault
version: "1.11.0"
version: "1.12.0"
license: basic
description: Collect logs and metrics from Hashicorp Vault with Elastic Agent.
type: integration
Expand Down
5 changes: 5 additions & 0 deletions packages/hid_bravura_monitor/changelog.yml
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "1.8.0"
changes:
- description: Ensure event.kind is correctly set for pipeline errors.
type: enhancement
link: https://github.com/elastic/integrations/pull/6616
- version: "1.7.0"
changes:
- description: Update package to ECS 8.8.0.
Expand Down
Expand Up @@ -192,5 +192,8 @@ processors:
ignore_missing: true
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{ _ingest.on_failure_message }}'
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -392,6 +392,9 @@ processors:

on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: |-
Processor "{{ _ingest.on_failure_processor_type }}" with tag "{{ _ingest.on_failure_processor_tag }}" in pipeline "{{ _ingest.on_failure_pipeline }}" failed with message "{{ _ingest.on_failure_message }}"
2 changes: 1 addition & 1 deletion packages/hid_bravura_monitor/manifest.yml
@@ -1,6 +1,6 @@
name: hid_bravura_monitor
title: Bravura Monitor
version: "1.7.0"
version: "1.8.0"
categories: ["security", "iam"]
release: ga
description: Collect logs from Bravura Security Fabric with Elastic Agent.
Expand Down
5 changes: 5 additions & 0 deletions packages/imperva/changelog.yml
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "0.16.0"
changes:
- description: Ensure event.kind is correctly set for pipeline errors.
type: enhancement
link: https://github.com/elastic/integrations/pull/6616
- version: "0.15.0"
changes:
- description: Update package to ECS 8.8.0.
Expand Down
Expand Up @@ -63,6 +63,9 @@ processors:
ignore_failure: true
ignore_missing: true
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: "{{ _ingest.on_failure_message }}"
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
2 changes: 1 addition & 1 deletion packages/imperva/manifest.yml
@@ -1,7 +1,7 @@
format_version: 2.7.0
name: imperva
title: Imperva SecureSphere Logs
version: "0.15.0"
version: "0.16.0"
description: Collect SecureSphere logs from Imperva devices with Elastic Agent.
categories: ["network", "security"]
type: integration
Expand Down
5 changes: 5 additions & 0 deletions packages/infoblox_bloxone_ddi/changelog.yml
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "1.5.0"
changes:
- description: Ensure event.kind is correctly set for pipeline errors.
type: enhancement
link: https://github.com/elastic/integrations/pull/6616
- version: "1.4.0"
changes:
- description: Update package to ECS 8.8.0.
Expand Down
Expand Up @@ -239,6 +239,9 @@ processors:
}
dropEmptyFields(ctx);
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{ _ingest.on_failure_message }}'
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -1988,6 +1988,9 @@ processors:
}
dropEmptyFields(ctx);
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{ _ingest.on_failure_message }}'
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -428,6 +428,9 @@ processors:
}
dropEmptyFields(ctx);
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{ _ingest.on_failure_message }}'
value: '{{{ _ingest.on_failure_message }}}'
2 changes: 1 addition & 1 deletion packages/infoblox_bloxone_ddi/manifest.yml
@@ -1,7 +1,7 @@
format_version: 2.7.0
name: infoblox_bloxone_ddi
title: Infoblox BloxOne DDI
version: "1.4.0"
version: "1.5.0"
description: Collect logs from Infoblox BloxOne DDI with Elastic Agent.
type: integration
categories:
Expand Down
5 changes: 5 additions & 0 deletions packages/infoblox_nios/changelog.yml
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "1.9.0"
changes:
- description: Ensure event.kind is correctly set for pipeline errors.
type: enhancement
link: https://github.com/elastic/integrations/pull/6616
- version: "1.8.0"
changes:
- description: Update package to ECS 8.8.0.
Expand Down
Expand Up @@ -139,9 +139,9 @@ processors:
ignore_failure: true
ignore_missing: true
on_failure:
- append:
field: error.message
value: '{{{_ingest.on_failure_message}}}'
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{_ingest.on_failure_message}}}'
- set:
field: event.kind
value: pipeline_error
Expand Up @@ -137,3 +137,10 @@ processors:
if: ctx.user?.name != null
allow_duplicates: false
ignore_failure: true
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -257,3 +257,10 @@ processors:
if: ctx.infoblox_nios?.log?.dhcp?.client_hostname != null
allow_duplicates: false
ignore_failure: true
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
Expand Up @@ -245,3 +245,10 @@ processors:
- timestamp
- repeat_message
ignore_missing: true
on_failure:
- set:
field: event.kind
value: pipeline_error
- append:
field: error.message
value: '{{{ _ingest.on_failure_message }}}'
2 changes: 1 addition & 1 deletion packages/infoblox_nios/manifest.yml
@@ -1,7 +1,7 @@
format_version: 1.0.0
name: infoblox_nios
title: Infoblox NIOS
version: "1.8.0"
version: "1.9.0"
license: basic
description: Collect logs from Infoblox NIOS with Elastic Agent.
type: integration
Expand Down