Skip to content

[8.0] [Security Solution][Endpoint] Improve endpoint performance with TA wildcard paths (#120349)#121443

Merged
ashokaditya merged 1 commit intoelastic:8.0from
ashokaditya:backport/8.0/pr-120349
Dec 16, 2021
Merged

[8.0] [Security Solution][Endpoint] Improve endpoint performance with TA wildcard paths (#120349)#121443
ashokaditya merged 1 commit intoelastic:8.0from
ashokaditya:backport/8.0/pr-120349

Conversation

@ashokaditya
Copy link
Member

Backports the following commits to 8.0:

…ldcard paths (elastic#120349)

* Show full executable names in placeholder for wildcard paths

fixes elastic/security-team/issues/2293

* Show soft warning when wildcard also in executable names

fixes elastic/security-team/issues/2293

* add wildcard path entries to fake TA list

refs elastic/security-team/issues/2293

* Append a process.name entry when executable name in wildcard path

fixes elastic/security-team/issues/2293

* commit using ashokaditya@elastic.co

* linux should always use  `_cased` types

review changes

* use better TS

* use matcher functions to compute operator value for linux

review suggestions

* use path to extract filenames on server side

review suggestions

* improve regex for windows and unix filepaths

review suggestions

* update test mocks

review changes

* update regex to match multi spaces and single chars with spaces in filenames

* add comment to explain

review suggestions

* update copy

Co-authored-by: Kibana Machine <42973632+kibanamachine@users.noreply.github.com>
# Conflicts:
#	x-pack/plugins/security_solution/public/management/pages/policy/view/trusted_apps/layout/policy_trusted_apps_layout.test.tsx
@ashokaditya ashokaditya added the backport This PR is a backport of another PR label Dec 16, 2021
@ashokaditya ashokaditya enabled auto-merge (squash) December 16, 2021 18:47
@kibana-ci
Copy link

💚 Build Succeeded

Metrics [docs]

Async chunks

Total size of all lazy-loaded chunks that will be downloaded as the user navigates the app

id before after diff
securitySolution 4.6MB 4.6MB +597.0B

To update your PR or re-run it, just comment with:
@elasticmachine merge upstream

@ashokaditya ashokaditya merged commit 48e248a into elastic:8.0 Dec 16, 2021
@ashokaditya ashokaditya deleted the backport/8.0/pr-120349 branch December 17, 2021 07:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport This PR is a backport of another PR

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants