Skip to content

Commit 6979fb3

Browse files
committed
Merge branch 'main' into gcp-carbon
2 parents 60455f2 + f71a0c8 commit 6979fb3

File tree

2,325 files changed

+74352
-54640
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

2,325 files changed

+74352
-54640
lines changed

.github/CODEOWNERS

+46-45
Original file line numberDiff line numberDiff line change
@@ -7,11 +7,11 @@
77

88
# Package owners below.
99
/packages/1password @elastic/security-external-integrations
10-
/packages/activemq @elastic/obs-service-integrations
10+
/packages/activemq @elastic/obs-infraobs-integrations
1111
/packages/akamai @elastic/security-external-integrations
12-
/packages/apache @elastic/obs-service-integrations
13-
/packages/apache_spark @elastic/obs-service-integrations
14-
/packages/apache_tomcat @elastic/obs-service-integrations
12+
/packages/apache @elastic/obs-infraobs-integrations
13+
/packages/apache_spark @elastic/obs-infraobs-integrations
14+
/packages/apache_tomcat @elastic/obs-infraobs-integrations
1515
/packages/atlassian_bitbucket @elastic/security-external-integrations
1616
/packages/atlassian_confluence @elastic/security-external-integrations
1717
/packages/atlassian_jira @elastic/security-external-integrations
@@ -37,10 +37,10 @@
3737
/packages/box_events @elastic/security-external-integrations
3838
/packages/carbon_black_cloud @elastic/security-external-integrations
3939
/packages/carbonblack_edr @elastic/security-external-integrations
40-
/packages/cassandra @elastic/obs-service-integrations
40+
/packages/cassandra @elastic/obs-infraobs-integrations
4141
/packages/cef @elastic/security-external-integrations
4242
/packages/cel @elastic/security-external-integrations
43-
/packages/ceph @elastic/obs-service-integrations
43+
/packages/ceph @elastic/obs-infraobs-integrations
4444
/packages/checkpoint @elastic/security-external-integrations
4545
/packages/cisco_aironet @elastic/security-external-integrations
4646
/packages/cisco_asa @elastic/security-external-integrations
@@ -54,16 +54,16 @@
5454
/packages/cisco_nexus @elastic/security-external-integrations
5555
/packages/cisco_secure_endpoint @elastic/security-external-integrations
5656
/packages/cisco_umbrella @elastic/security-external-integrations
57-
/packages/citrix_adc @elastic/obs-service-integrations
57+
/packages/citrix_adc @elastic/obs-infraobs-integrations
5858
/packages/citrix_waf @elastic/security-external-integrations
5959
/packages/cloud_security_posture @elastic/cloud-security-posture
6060
/packages/cloudflare @elastic/security-external-integrations
6161
/packages/cloudflare_logpush @elastic/security-external-integrations
62-
/packages/cockroachdb @elastic/obs-service-integrations
62+
/packages/cockroachdb @elastic/obs-infraobs-integrations
6363
/packages/containerd @elastic/obs-cloudnative-monitoring
64-
/packages/coredns @elastic/obs-service-integrations
65-
/packages/couchbase @elastic/obs-service-integrations
66-
/packages/couchdb @elastic/obs-service-integrations
64+
/packages/coredns @elastic/obs-infraobs-integrations
65+
/packages/couchbase @elastic/obs-infraobs-integrations
66+
/packages/couchdb @elastic/obs-infraobs-integrations
6767
/packages/crowdstrike @elastic/security-external-integrations
6868
/packages/cyberark @elastic/security-external-integrations
6969
/packages/cyberark_pta @elastic/security-external-integrations
@@ -76,7 +76,7 @@
7676
/packages/elastic_package_registry @elastic/ecosystem
7777
/packages/elasticsearch @elastic/infra-monitoring-ui
7878
/packages/enterprisesearch @elastic/infra-monitoring-ui
79-
/packages/etcd @elastic/obs-service-integrations
79+
/packages/etcd @elastic/obs-infraobs-integrations
8080
/packages/f5 @elastic/security-external-integrations
8181
/packages/f5_bigip @elastic/security-external-integrations
8282
/packages/fim @elastic/security-external-integrations
@@ -93,17 +93,17 @@
9393
/packages/gcp @elastic/security-external-integrations @elastic/obs-cloud-monitoring
9494
/packages/gcp_pubsub @elastic/security-external-integrations
9595
/packages/github @elastic/security-external-integrations
96-
/packages/golang @elastic/obs-service-integrations
96+
/packages/golang @elastic/obs-infraobs-integrations
9797
/packages/google_cloud_storage @elastic/security-external-integrations
9898
/packages/google_workspace @elastic/security-external-integrations
99-
/packages/hadoop @elastic/obs-service-integrations
100-
/packages/haproxy @elastic/obs-service-integrations
99+
/packages/hadoop @elastic/obs-infraobs-integrations
100+
/packages/haproxy @elastic/obs-infraobs-integrations
101101
/packages/hashicorp_vault @elastic/security-external-integrations
102102
/packages/hid_bravura_monitor @elastic/security-external-integrations
103103
/packages/http_endpoint @elastic/security-external-integrations
104104
/packages/httpjson @elastic/security-external-integrations
105-
/packages/ibmmq @elastic/obs-service-integrations
106-
/packages/iis @elastic/obs-service-integrations
105+
/packages/ibmmq @elastic/obs-infraobs-integrations
106+
/packages/iis @elastic/obs-infraobs-integrations
107107
/packages/imperva @elastic/security-external-integrations
108108
/packages/infoblox @elastic/security-external-integrations
109109
/packages/infoblox_bloxone_ddi @elastic/security-external-integrations
@@ -117,8 +117,8 @@
117117
/packages/juniper @elastic/security-external-integrations
118118
/packages/juniper_netscreen @elastic/security-external-integrations
119119
/packages/juniper_srx @elastic/security-external-integrations
120-
/packages/kafka @elastic/obs-service-integrations
121-
/packages/kafka_log @elastic/obs-service-integrations
120+
/packages/kafka @elastic/obs-infraobs-integrations
121+
/packages/kafka_log @elastic/obs-infraobs-integrations
122122
/packages/keycloak @elastic/security-external-integrations
123123
/packages/kibana @elastic/infra-monitoring-ui
124124
/packages/kubernetes @elastic/obs-cloudnative-monitoring
@@ -130,49 +130,49 @@
130130
/packages/lyve_cloud @elastic/security-external-integrations
131131
/packages/m365_defender @elastic/security-external-integrations
132132
/packages/mattermost @elastic/security-external-integrations
133-
/packages/memcached @elastic/obs-service-integrations
133+
/packages/memcached @elastic/obs-infraobs-integrations
134134
/packages/microsoft_defender_endpoint @elastic/security-external-integrations
135135
/packages/microsoft_dhcp @elastic/security-external-integrations
136136
/packages/microsoft_exchange_online_message_trace @elastic/security-external-integrations
137137
/packages/microsoft @elastic/security-external-integrations
138-
/packages/microsoft_sqlserver @elastic/obs-service-integrations
138+
/packages/microsoft_sqlserver @elastic/obs-infraobs-integrations
139139
/packages/mimecast @elastic/security-external-integrations
140140
/packages/modsecurity @elastic/security-external-integrations
141-
/packages/mongodb @elastic/obs-service-integrations
141+
/packages/mongodb @elastic/obs-infraobs-integrations
142142
/packages/mysql_enterprise @elastic/security-external-integrations
143-
/packages/mysql @elastic/obs-service-integrations
144-
/packages/nagios_xi @elastic/obs-service-integrations
143+
/packages/mysql @elastic/obs-infraobs-integrations
144+
/packages/nagios_xi @elastic/obs-infraobs-integrations
145145
/packages/nats @elastic/obs-cloudnative-monitoring
146146
/packages/netflow @elastic/security-external-integrations
147147
/packages/netscout @elastic/security-external-integrations
148148
/packages/netskope @elastic/security-external-integrations
149149
/packages/network_traffic @elastic/security-external-integrations
150150
/packages/nginx_ingress_controller @elastic/obs-cloudnative-monitoring
151-
/packages/nginx @elastic/obs-service-integrations
151+
/packages/nginx @elastic/obs-infraobs-integrations
152152
/packages/o365 @elastic/security-external-integrations
153153
/packages/okta @elastic/security-external-integrations
154-
/packages/oracle @elastic/obs-service-integrations
155-
/packages/oracle_weblogic @elastic/obs-service-integrations
154+
/packages/oracle @elastic/obs-infraobs-integrations
155+
/packages/oracle_weblogic @elastic/obs-infraobs-integrations
156156
/packages/osquery_manager @elastic/security-asset-management
157157
/packages/osquery @elastic/security-external-integrations
158158
/packages/panw_cortex_xdr @elastic/security-external-integrations
159159
/packages/panw @elastic/security-external-integrations
160160
/packages/pfsense @elastic/security-external-integrations
161-
/packages/php_fpm @elastic/obs-service-integrations
161+
/packages/php_fpm @elastic/obs-infraobs-integrations
162162
/packages/ping_one @elastic/security-external-integrations
163-
/packages/postgresql @elastic/obs-service-integrations
163+
/packages/postgresql @elastic/obs-infraobs-integrations
164164
/packages/problemchild @elastic/ml-ui @elastic/sec-applied-ml
165165
/packages/prometheus @elastic/obs-cloudnative-monitoring
166166
/packages/proofpoint @elastic/security-external-integrations
167167
/packages/proofpoint_tap @elastic/security-external-integrations
168168
/packages/pulse_connect_secure @elastic/security-external-integrations
169169
/packages/qnap_nas @elastic/security-external-integrations
170-
/packages/rabbitmq @elastic/obs-service-integrations
170+
/packages/rabbitmq @elastic/obs-infraobs-integrations
171171
/packages/radware @elastic/security-external-integrations
172172
/packages/rapid7_insightvm @elastic/security-external-integrations
173-
/packages/redis @elastic/obs-service-integrations
174-
/packages/redisenterprise @elastic/obs-service-integrations
175-
/packages/salesforce @elastic/obs-service-integrations
173+
/packages/redis @elastic/obs-infraobs-integrations
174+
/packages/redisenterprise @elastic/obs-infraobs-integrations
175+
/packages/salesforce @elastic/obs-infraobs-integrations
176176
/packages/santa @elastic/security-external-integrations
177177
/packages/security_detection_engine @elastic/protections
178178
/packages/sentinel_one @elastic/security-external-integrations
@@ -183,7 +183,7 @@
183183
/packages/sonicwall_firewall @elastic/security-external-integrations
184184
/packages/sophos @elastic/security-external-integrations
185185
/packages/sophos_central @elastic/security-external-integrations
186-
/packages/spring_boot @elastic/obs-service-integrations
186+
/packages/spring_boot @elastic/obs-infraobs-integrations
187187
/packages/squid @elastic/security-external-integrations
188188
/packages/stan @elastic/obs-cloudnative-monitoring
189189
/packages/suricata @elastic/security-external-integrations
@@ -209,35 +209,36 @@
209209
/packages/ti_threatq @elastic/security-external-integrations
210210
/packages/ti_util @elastic/security-external-integrations
211211
/packages/tines @elastic/security-external-integrations
212-
/packages/tomcat @elastic/obs-service-integrations
213-
/packages/traefik @elastic/obs-service-integrations
212+
/packages/tomcat @elastic/obs-infraobs-integrations
213+
/packages/traefik @elastic/obs-infraobs-integrations
214214
/packages/trellix_epo_cloud @elastic/security-external-integrations
215215
/packages/trendmicro @elastic/security-external-integrations
216216
/packages/trend_micro_vision_one @elastic/security-external-integrations
217217
/packages/udp @elastic/security-external-integrations
218218
/packages/universal_profiling_agent @elastic/profiling
219+
/packages/universal_profiling_collector @elastic/profiling
219220
/packages/universal_profiling_symbolizer @elastic/profiling
220221
/packages/vectra_detect @elastic/security-external-integrations
221-
/packages/vsphere @elastic/obs-service-integrations
222-
/packages/websphere_application_server @elastic/obs-service-integrations
222+
/packages/vsphere @elastic/obs-infraobs-integrations
223+
/packages/websphere_application_server @elastic/obs-infraobs-integrations
223224
/packages/windows @elastic/elastic-agent-data-plane @elastic/security-external-integrations
224225
/packages/winlog @elastic/security-external-integrations
225226
/packages/zeek @elastic/security-external-integrations
226227
/packages/zerofox @elastic/security-external-integrations
227-
/packages/zookeeper @elastic/obs-service-integrations
228+
/packages/zookeeper @elastic/obs-infraobs-integrations
228229
/packages/zoom @elastic/security-external-integrations
229230
/packages/zscaler @elastic/security-external-integrations
230231
/packages/zscaler_zia @elastic/security-external-integrations
231232
/packages/zscaler_zpa @elastic/security-external-integrations
232233
/packages/platform_observability @elastic/infra-monitoring-ui
233-
/packages/influxdb @elastic/obs-service-integrations
234-
/packages/jolokia_input @elastic/obs-service-integrations
234+
/packages/influxdb @elastic/obs-infraobs-integrations
235+
/packages/jolokia_input @elastic/obs-infraobs-integrations
235236
/packages/ded @elastic/ml-ui @elastic/sec-applied-ml
236237
/packages/cloud_defend @elastic/sec-cloudnative-integrations
237238
/packages/lmd @elastic/ml-ui @elastic/sec-applied-ml
238239
/packages/gcp_metrics @elastic/obs-cloud-monitoring
239-
/packages/airflow @elastic/obs-service-integrations
240-
/packages/sql_input @elastic/obs-service-integrations
241-
/packages/statsd_input @elastic/obs-service-integrations
240+
/packages/airflow @elastic/obs-infraobs-integrations
241+
/packages/sql_input @elastic/obs-infraobs-integrations
242+
/packages/statsd_input @elastic/obs-infraobs-integrations
242243
/packages/zeronetworks @elastic/security-external-integrations
243-
/packages/prometheus_input @elastic/obs-service-integrations
244+
/packages/prometheus_input @elastic/obs-infraobs-integrations

docs/developer_workflow_bug_fix_older_package_version.md

+1-1
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ for Kibana version 7.x and bumped the AWS package version from 1.19.5 to 1.20.0.
88
a bug in the EC2 dashboard that needs to be fixed with Kibana version 7.x. So instead of
99
adding a new AWS package version 1.23.5, we need to fix it between 1.19.5 and 1.20.0.
1010

11-
Here there wil be detailed the steps to follow to release a fix for a given package version:
11+
Follow these detailed steps to release a fix for a given package version:
1212

1313
1. **Find git commit (package version) that needs to be fixed**
1414

docs/fine_tune_integration.md

+2-2
Original file line numberDiff line numberDiff line change
@@ -129,11 +129,11 @@ what's been already fixed, as the script has overridden part of it).
129129
130130
Due to changed templating engine from a standard Golang one to [handlebars](https://handlebarsjs.com/), it may be
131131
hard to automatically convert the Filebeat input configuration (nested variables, many representations, conditions,
132-
loops). Kindly please to review the output stream configuration and review potential bugs.
132+
loops). Please review the output stream configuration and identify potential bugs.
133133
134134
11. Update docs template with sample events.
135135
136-
The events collected by the agent slightly differ from original, Metricbeat's and Filebeat's, ones. Adjust the event
136+
The events collected by the agent slightly differ from the original, Metricbeat and Filebeat, ones. Adjust the event
137137
content manually basing on already migrated integrations (e.g. [MySQL integration](https://github.com/elastic/integrations/blob/main/packages/mysql/_dev/build/docs/README.md))
138138
or copy them once managed to run whole setup with real agent.
139139

go.mod

+2-2
Original file line numberDiff line numberDiff line change
@@ -9,8 +9,8 @@ require (
99
github.com/elastic/package-registry v1.20.0
1010
github.com/magefile/mage v1.15.0
1111
github.com/pkg/errors v0.9.1
12-
github.com/stretchr/testify v1.8.2
13-
golang.org/x/tools v0.9.1
12+
github.com/stretchr/testify v1.8.4
13+
golang.org/x/tools v0.9.3
1414
gopkg.in/yaml.v2 v2.4.0
1515
)
1616

go.sum

+4-3
Original file line numberDiff line numberDiff line change
@@ -426,8 +426,9 @@ github.com/stretchr/testify v1.7.0/go.mod h1:6Fq8oRcR53rry900zMqJjRRixrwX3KX962/
426426
github.com/stretchr/testify v1.7.1/go.mod h1:6Fq8oRcR53rry900zMqJjRRixrwX3KX962/h/Wwjteg=
427427
github.com/stretchr/testify v1.8.0/go.mod h1:yNjHg4UonilssWZ8iaSj1OCr/vHnekPRkoO+kdMU+MU=
428428
github.com/stretchr/testify v1.8.1/go.mod h1:w2LPCIKwWwSfY2zedu0+kehJoqGctiVI29o6fzry7u4=
429-
github.com/stretchr/testify v1.8.2 h1:+h33VjcLVPDHtOdpUCuF+7gSuG3yGIftsP1YvFihtJ8=
430429
github.com/stretchr/testify v1.8.2/go.mod h1:w2LPCIKwWwSfY2zedu0+kehJoqGctiVI29o6fzry7u4=
430+
github.com/stretchr/testify v1.8.4 h1:CcVxjf3Q8PM0mHUKJCdn+eZZtm5yQwehR5yeSVQQcUk=
431+
github.com/stretchr/testify v1.8.4/go.mod h1:sz/lmYIOXD/1dqDmKjjqLyZ2RngseejIcXlSw2iwfAo=
431432
github.com/tidwall/pretty v1.0.0 h1:HsD+QiTn7sK6flMKIvNmpqz1qrpP3Ps6jOKIKMooyg4=
432433
github.com/tidwall/pretty v1.0.0/go.mod h1:XNkn88O1ChpSDQmQeStsy+sBenx6DDtFZJxhVysOjyk=
433434
github.com/tklauser/go-sysconf v0.3.11 h1:89WgdJhk5SNwJfu+GKyYveZ4IaJ7xAkecBo+KdJV0CM=
@@ -626,8 +627,8 @@ golang.org/x/tools v0.1.7/go.mod h1:LGqMHiF4EqQNHR1JncWGqT5BVaXmza+X+BDGol+dOxo=
626627
golang.org/x/tools v0.1.9/go.mod h1:nABZi5QlRsZVlzPpHl034qft6wpY4eDcsTt5AaioBiU=
627628
golang.org/x/tools v0.1.12/go.mod h1:hNGJHUnrk76NpqgfD5Aqm5Crs+Hm0VOH/i9J2+nxYbc=
628629
golang.org/x/tools v0.6.0/go.mod h1:Xwgl3UAJ/d3gWutnCtw505GrjyAbvKui8lOU390QaIU=
629-
golang.org/x/tools v0.9.1 h1:8WMNJAz3zrtPmnYC7ISf5dEn3MT0gY7jBJfw27yrrLo=
630-
golang.org/x/tools v0.9.1/go.mod h1:owI94Op576fPu3cIGQeHs3joujW/2Oc6MtlxbF5dfNc=
630+
golang.org/x/tools v0.9.3 h1:Gn1I8+64MsuTb/HpH+LmQtNas23LhUVr3rYZ0eKuaMM=
631+
golang.org/x/tools v0.9.3/go.mod h1:owI94Op576fPu3cIGQeHs3joujW/2Oc6MtlxbF5dfNc=
631632
golang.org/x/xerrors v0.0.0-20190717185122-a985d3407aa7/go.mod h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0=
632633
golang.org/x/xerrors v0.0.0-20191011141410-1b5146add898/go.mod h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0=
633634
golang.org/x/xerrors v0.0.0-20191204190536-9bdfabe68543/go.mod h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0=
+1-1
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
11
dependencies:
22
ecs:
3-
reference: git@8.7
3+
reference: git@8.8

packages/1password/changelog.yml

+5
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "1.13.0"
3+
changes:
4+
- description: Update package to ECS 8.8.0 and package-spec 2.7.0.
5+
type: enhancement
6+
link: https://github.com/elastic/integrations/pull/6373
27
- version: "1.12.0"
38
changes:
49
- description: Add a new flag to enable request tracing

packages/1password/data_stream/audit_events/_dev/test/pipeline/test-auditevents.json-expected.json

+2-2
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
{
44
"@timestamp": "2022-10-24T21:16:52.827Z",
55
"ecs": {
6-
"version": "8.7.0"
6+
"version": "8.8.0"
77
},
88
"event": {
99
"action": "suspend",
@@ -67,7 +67,7 @@
6767
{
6868
"@timestamp": "2022-10-24T21:16:52.827Z",
6969
"ecs": {
70-
"version": "8.7.0"
70+
"version": "8.8.0"
7171
},
7272
"event": {
7373
"action": "suspend",

packages/1password/data_stream/audit_events/elasticsearch/ingest_pipeline/default.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ processors:
1616
#######################
1717
- set:
1818
field: ecs.version
19-
value: "8.7.0"
19+
value: "8.8.0"
2020
# Sets event.created from the @timestamp field generated by filebeat before being overwritten further down
2121
- set:
2222
field: event.created

packages/1password/data_stream/audit_events/sample_event.json

+8-8
Original file line numberDiff line numberDiff line change
@@ -1,34 +1,34 @@
11
{
22
"@timestamp": "2022-10-24T21:16:52.827Z",
33
"agent": {
4-
"ephemeral_id": "042ad272-9e5f-4e42-be29-3733a96797a5",
5-
"id": "086ffa1b-8e21-4d62-84aa-125408782121",
4+
"ephemeral_id": "26875e28-ac90-42f2-bcc9-5969510c2882",
5+
"id": "437fe922-4551-429d-a49f-0a4ad40bf297",
66
"name": "docker-fleet-agent",
77
"type": "filebeat",
8-
"version": "8.6.0"
8+
"version": "8.8.0"
99
},
1010
"data_stream": {
1111
"dataset": "1password.audit_events",
1212
"namespace": "ep",
1313
"type": "logs"
1414
},
1515
"ecs": {
16-
"version": "8.7.0"
16+
"version": "8.8.0"
1717
},
1818
"elastic_agent": {
19-
"id": "086ffa1b-8e21-4d62-84aa-125408782121",
19+
"id": "437fe922-4551-429d-a49f-0a4ad40bf297",
2020
"snapshot": false,
21-
"version": "8.6.0"
21+
"version": "8.8.0"
2222
},
2323
"event": {
2424
"action": "suspend",
2525
"agent_id_status": "verified",
2626
"category": [
2727
"configuration"
2828
],
29-
"created": "2023-03-23T19:03:48.623Z",
29+
"created": "2023-05-30T15:57:13.805Z",
3030
"dataset": "1password.audit_events",
31-
"ingested": "2023-03-23T19:03:49Z",
31+
"ingested": "2023-05-30T15:57:17Z",
3232
"kind": "event",
3333
"type": [
3434
"access"

packages/1password/data_stream/item_usages/_dev/test/pipeline/test-itemusages.json-expected.json

+2-2
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
{
44
"@timestamp": "2021-08-30T18:57:42.484Z",
55
"ecs": {
6-
"version": "8.7.0"
6+
"version": "8.8.0"
77
},
88
"event": {
99
"action": "reveal",
@@ -76,7 +76,7 @@
7676
{
7777
"@timestamp": "2021-08-30T19:10:00.123Z",
7878
"ecs": {
79-
"version": "8.7.0"
79+
"version": "8.8.0"
8080
},
8181
"event": {
8282
"category": [

packages/1password/data_stream/item_usages/elasticsearch/ingest_pipeline/default.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ processors:
1616
#######################
1717
- set:
1818
field: ecs.version
19-
value: '8.7.0'
19+
value: '8.8.0'
2020
# Sets event.created from the @timestamp field generated by filebeat before being overwritten further down
2121
- set:
2222
field: event.created

0 commit comments

Comments
 (0)