Skip to content

Cherry-pick #16618 to 7.x: [Filebeat] Improve ECS categorization field mappings in iis module#16739

Merged
leehinman merged 2 commits intoelastic:7.xfrom
leehinman:backport_16618_7.x
Mar 9, 2020
Merged

Cherry-pick #16618 to 7.x: [Filebeat] Improve ECS categorization field mappings in iis module#16739
leehinman merged 2 commits intoelastic:7.xfrom
leehinman:backport_16618_7.x

Conversation

@leehinman
Copy link
Copy Markdown
Contributor

Cherry-pick of PR #16618 to 7.x branch. Original message:

  • event.category
  • event.kind
  • event.outcome
  • event.type
  • related.ip
  • related.user
  • lowercase http.request.method
  • improve grok in access pipeline
  • change access and error pipelines to yaml

Closes #16165

- event.category
- event.kind
- event.outcome
- event.type
- related.ip
- related.user
- lowercase http.request.method
- improve grok in access pipeline
- change access and error pipelines to yaml

Closes elastic#16165

(cherry picked from commit 342f0e0)
@elasticmachine
Copy link
Copy Markdown
Contributor

Pinging @elastic/siem (Team:SIEM)

@leehinman leehinman merged commit 39b0588 into elastic:7.x Mar 9, 2020
@leehinman leehinman deleted the backport_16618_7.x branch March 27, 2020 14:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants