Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Cloudflare Logpush] Support for Magic IDS, DNS Firewall and Sinkhole HTTP logs #7937

Conversation

chemamartinez
Copy link
Contributor

What does this PR do?

It adds a new data stream and dashboard to the Cloudflare Logpush integration to cover the following datasets:

  • DNS Firewall
  • Magic IDS
  • Sinkhole HTTP

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.

Related issues

Screenshots

Integration page
Screenshot 2023-09-22 at 10 50 26

Dashboards

DNS Firewall

cloudflare_logpush-dns_firewall1

Magic IDS

cloudflare_logpush-magic_ids1

Sinkhole HTTP

cloudflare_logpush-sinkhole_http1

@chemamartinez chemamartinez self-assigned this Sep 22, 2023
@chemamartinez chemamartinez force-pushed the 6345-cloudflare_logpush-new-datastreams branch from 0eb93a1 to fcc811a Compare September 22, 2023 09:01
@chemamartinez chemamartinez marked this pull request as ready for review September 22, 2023 09:02
@chemamartinez chemamartinez requested a review from a team as a code owner September 22, 2023 09:02
@elasticmachine
Copy link

Pinging @elastic/security-external-integrations (Team:Security-External Integrations)

@chemamartinez chemamartinez changed the title [Cloudflare Logpush] Support for Magic IDS, Firewall DNS and Sinkhole HTTP logs [Cloudflare Logpush] Support for Magic IDS, DNS Firewall and Sinkhole HTTP logs Sep 22, 2023
@elasticmachine
Copy link

elasticmachine commented Sep 22, 2023

💚 Build Succeeded

the below badges are clickable and redirect to their specific view in the CI or DOCS
Pipeline View Test View Changes Artifacts preview preview

Expand to view the summary

Build stats

  • Start Time: 2023-09-26T06:10:36.744+0000

  • Duration: 28 min 31 sec

Test stats 🧪

Test Results
Failed 0
Passed 115
Skipped 0
Total 115

🤖 GitHub comments

Expand to view the GitHub comments

To re-run your PR in the CI, just comment with:

  • /test : Re-trigger the build.

@elasticmachine
Copy link

elasticmachine commented Sep 22, 2023

🌐 Coverage report

Name Metrics % (covered/total) Diff
Packages 100.0% (18/18) 💚
Files 100.0% (18/18) 💚
Classes 100.0% (18/18) 💚
Methods 100.0% (215/215) 💚
Lines 91.919% (4857/5284) 👎 -7.263
Conditionals 100.0% (0/0) 💚

@chemamartinez chemamartinez force-pushed the 6345-cloudflare_logpush-new-datastreams branch from 2b7f50d to fe67980 Compare September 22, 2023 17:04
@chemamartinez
Copy link
Contributor Author

/test

@chemamartinez chemamartinez force-pushed the 6345-cloudflare_logpush-new-datastreams branch from fe67980 to 79badce Compare September 26, 2023 06:10
@chemamartinez chemamartinez merged commit 03b7596 into elastic:main Sep 26, 2023
1 check passed
@elasticmachine
Copy link

Package cloudflare_logpush - 1.12.0 containing this change is available at https://epr.elastic.co/search?package=cloudflare_logpush

1 similar comment
@elasticmachine
Copy link

Package cloudflare_logpush - 1.12.0 containing this change is available at https://epr.elastic.co/search?package=cloudflare_logpush

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request Integration:cloudflare_logpush Cloudflare Logpush
Projects
None yet
Development

Successfully merging this pull request may close these issues.

[Cloudflare Logpush] Expand event coverage for non Zero Trust events
4 participants