-
Notifications
You must be signed in to change notification settings - Fork 387
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[ECS] Updating journald to ECS 8.10 for new process.thread.capabilities.effective
#8051
Conversation
…ies.effective field
}, | ||
"data_stream": { | ||
"dataset": "journald.log", | ||
"dataset": "journald.logs", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Updated per the sample_event
Pinging @elastic/security-external-integrations (Team:Security-External Integrations) |
process.thread.capabilities.effective
process.thread.capabilities.effective
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I left some comments, but I don't need to re-review.
process.thread.capabilities.effective
process.thread.capabilities.effective
Package journald - 1.1.0 containing this change is available at https://epr.elastic.co/search?package=journald |
1 similar comment
Package journald - 1.1.0 containing this change is available at https://epr.elastic.co/search?package=journald |
Proposed commit message
Update journald to include new
process.thread.capabilities.effective
ECS field.Checklist
changelog.yml
file.Author's Checklist
How to test this PR locally
Related issues
Screenshots