-
Notifications
You must be signed in to change notification settings - Fork 444
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[windows_etw] Initial release of Custom Windows ETW integration #9413
Conversation
Pinging @elastic/security-service-integrations (Team:Security-Service Integrations) |
Pinging @elastic/sec-windows-platform (Team:Security-Windows Platform) |
💚 Build Succeeded
History
|
Quality Gate passedKudos, no new issues were introduced! 0 New issues |
Please wait for sec-windows-platform approval. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm
Package windows_etw - 0.1.0 containing this change is available at https://epr.elastic.co/search?package=windows_etw |
Proposed commit message
Add a new input package with a new integration
Custom Windows ETW
to collect Windows events from the new ETW input.The minimum Kibana version to run the integration is 8.13.0.
Checklist
changelog.yml
file.Integration release checklist
This checklist is intended for integrations maintainers to ensure consistency
when creating or updating a Package, Module or Dataset for an Integration.
All changes
New Package
Dashboards changes
Log dataset changes
sample_event.json
) existsRelated issues
Screenshots
Main integration page
Configuration
Elastic Agent policy
Fleet
Discover
Document