Skip to content

[Filebeat] Improve ECS categorization field mappings in kibana module#16652

Merged
leehinman merged 3 commits intoelastic:masterfrom
leehinman:16168_kibana_ecs_1.4
Mar 3, 2020
Merged

[Filebeat] Improve ECS categorization field mappings in kibana module#16652
leehinman merged 3 commits intoelastic:masterfrom
leehinman:16168_kibana_ecs_1.4

Conversation

@leehinman
Copy link
Copy Markdown
Contributor

  • event.kind
  • event.outcome
  • event.type
  • convert pipeline to yaml

Closes #16168

- event.kind
- event.outcome
- event.type
- convert pipeline to yaml

Closes elastic#16168
@leehinman leehinman added enhancement Filebeat Filebeat needs_backport PR is waiting to be backported to other branches. Team:SIEM ecs labels Feb 26, 2020
@leehinman leehinman requested a review from a team as a code owner February 26, 2020 21:56
@elasticmachine
Copy link
Copy Markdown
Contributor

Pinging @elastic/siem (Team:SIEM)

leehinman and others added 2 commits February 26, 2020 15:58
Copy link
Copy Markdown
Member

@andrewkroh andrewkroh left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@leehinman leehinman merged commit 4076211 into elastic:master Mar 3, 2020
@leehinman leehinman deleted the 16168_kibana_ecs_1.4 branch March 3, 2020 15:52
leehinman added a commit to leehinman/beats that referenced this pull request Mar 3, 2020
…elastic#16652)

* Improve ECS categorization field mappings in kibana module

- event.kind
- event.outcome
- event.type
- convert pipeline to yaml

Closes elastic#16168

(cherry picked from commit 4076211)
leehinman added a commit that referenced this pull request Mar 11, 2020
…#16652) (#16762)

* Improve ECS categorization field mappings in kibana module

- event.kind
- event.outcome
- event.type
- convert pipeline to yaml

Closes #16168

(cherry picked from commit 4076211)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ecs enhancement Filebeat Filebeat needs_backport PR is waiting to be backported to other branches.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[Filebeat] Upgrade kibana module to ECS 1.4

3 participants