-
Notifications
You must be signed in to change notification settings - Fork 8.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Security Solution]Applying custom field filter on Alerts page filters is not showing alerts table. #155488
Comments
Pinging @elastic/security-solution (Team: SecuritySolution) |
Pinging @elastic/security-threat-hunting (Team:Threat Hunting) |
Update: Below is the runtimeMappings object, we are sending to {
"runtimeMappings": {
"Day": {
"script": {
"source": "emit(doc['@timestamp'].value.getDayOfWeekEnum().toString())"
},
"type": "keyword"
}
}
} Screen.Recording.2023-04-21.at.17.24.33.mov |
Pinging @elastic/response-ops (Team:ResponseOps) |
@dhurley14 and I would have to fix it together because i need to be aware of the runtime fields to do that on the alert table. |
## Summary FIX #156263 & #155488 ### Checklist - [x] [Unit or functional tests](https://www.elastic.co/guide/en/kibana/master/development-tests.html) were updated or added to match the most common scenarios
## Summary FIX elastic#156263 & elastic#155488 ### Checklist - [x] [Unit or functional tests](https://www.elastic.co/guide/en/kibana/master/development-tests.html) were updated or added to match the most common scenarios (cherry picked from commit 73d6008)
# Backport This will backport the following commits from `main` to `8.8`: - [[RAM] alert table support runtime field (#156899)](#156899) <!--- Backport version: 8.9.7 --> ### Questions ? Please refer to the [Backport tool documentation](https://github.com/sqren/backport) <!--BACKPORT [{"author":{"name":"Xavier Mouligneau","email":"xavier.mouligneau@elastic.co"},"sourceCommit":{"committedDate":"2023-05-08T17:44:13Z","message":"[RAM] alert table support runtime field (#156899)\n\n## Summary\r\n\r\nFIX #156263 &\r\nhttps://github.com//issues/155488\r\n\r\n\r\n### Checklist\r\n\r\n- [x] [Unit or functional\r\ntests](https://www.elastic.co/guide/en/kibana/master/development-tests.html)\r\nwere updated or added to match the most common scenarios","sha":"73d60085d11cd28b1eadefa63c2fcc1704336ef9","branchLabelMapping":{"^v8.9.0$":"main","^v(\\d+).(\\d+).\\d+$":"$1.$2"}},"sourcePullRequest":{"labels":["bug","release_note:skip","impact:high","Team:ResponseOps","v8.8.0","v8.9.0"],"number":156899,"url":"https://github.com/elastic/kibana/pull/156899","mergeCommit":{"message":"[RAM] alert table support runtime field (#156899)\n\n## Summary\r\n\r\nFIX #156263 &\r\nhttps://github.com//issues/155488\r\n\r\n\r\n### Checklist\r\n\r\n- [x] [Unit or functional\r\ntests](https://www.elastic.co/guide/en/kibana/master/development-tests.html)\r\nwere updated or added to match the most common scenarios","sha":"73d60085d11cd28b1eadefa63c2fcc1704336ef9"}},"sourceBranch":"main","suggestedTargetBranches":["8.8"],"targetPullRequestStates":[{"branch":"8.8","label":"v8.8.0","labelRegex":"^v(\\d+).(\\d+).\\d+$","isSourceBranch":false,"state":"NOT_CREATED"},{"branch":"main","label":"v8.9.0","labelRegex":"^v8.9.0$","isSourceBranch":true,"state":"MERGED","url":"https://github.com/elastic/kibana/pull/156899","number":156899,"mergeCommit":{"message":"[RAM] alert table support runtime field (#156899)\n\n## Summary\r\n\r\nFIX #156263 &\r\nhttps://github.com//issues/155488\r\n\r\n\r\n### Checklist\r\n\r\n- [x] [Unit or functional\r\ntests](https://www.elastic.co/guide/en/kibana/master/development-tests.html)\r\nwere updated or added to match the most common scenarios","sha":"73d60085d11cd28b1eadefa63c2fcc1704336ef9"}}]}] BACKPORT--> Co-authored-by: Xavier Mouligneau <xavier.mouligneau@elastic.co>
Hey @sukhwindersingh-qasource! Is this still valid? |
Describe the bug:
Build Details:
Preconditions
Days
with set values define script as -emit(doc['@timestamp'].value.getDayOfWeekEnum().toString())
Steps to Reproduce
Actual Result
Applying custom field filter on Alerts page filters is not showing alerts table.
Expected Result
Applying custom field filter on Alerts page filters should be showing alerts table.
Screen-Recording
Alerts.-.Kibana.Mozilla.Firefox.2023-04-21.14-32-18.mp4
The text was updated successfully, but these errors were encountered: