Skip to content

[7.x] [SIEM] Fix IP Overview query to query for most recent Host (#37723)#38007

Merged
spong merged 1 commit into
elastic:7.xfrom
spong:backport/7.x/pr-37723
Jun 4, 2019
Merged

[7.x] [SIEM] Fix IP Overview query to query for most recent Host (#37723)#38007
spong merged 1 commit into
elastic:7.xfrom
spong:backport/7.x/pr-37723

Conversation

@spong
Copy link
Copy Markdown
Member

@spong spong commented Jun 4, 2019

Backports the following commits to 7.x:

…7723)

## Summary

As outlined in https://github.com/elastic/ingest-dev/issues/453, this PR fixes the `IP Overview` query to query for the most recent Host.

Now the Host Data shown will be the most recent host for the given IP regardless of whether `Source` or `Destination` is selected in the FlowTargetSelect.

![image](https://user-images.githubusercontent.com/2946766/58731558-46fb5200-83ac-11e9-97d5-7db5dd8ac84e.png)


### Checklist

Use ~~strikethroughs~~ to remove checklist items you don't feel are applicable to this PR.

- [ ] ~This was checked for cross-browser compatibility, [including a check against IE11](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#cross-browser-compatibility)~
- [ ] ~Any text added follows [EUI's writing guidelines](https://elastic.github.io/eui/#/guidelines/writing), uses sentence case text and includes [i18n support](https://github.com/elastic/kibana/blob/master/packages/kbn-i18n/README.md)~
- [ ] ~[Documentation](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#writing-documentation) was added for features that require explanation or tutorials~
- [x] [Unit or functional tests](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#cross-browser-compatibility) were updated or added to match the most common scenarios
- [ ] ~This was checked for [keyboard-only and screenreader accessibility](https://developer.mozilla.org/en-US/docs/Learn/Tools_and_testing/Cross_browser_testing/Accessibility#Accessibility_testing_checklist)~

### For maintainers

- [ ] ~This was checked for breaking API changes and was [labeled appropriately](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#release-notes-process)~
- [ ] ~This includes a feature addition or change that requires a release note and was [labeled appropriately](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#release-notes-process)~
@spong spong added the backport This PR is a backport of another PR label Jun 4, 2019
@spong
Copy link
Copy Markdown
Member Author

spong commented Jun 4, 2019

Jenkins retest please

@elasticmachine
Copy link
Copy Markdown
Contributor

💚 Build Succeeded

@spong spong merged commit a3ef234 into elastic:7.x Jun 4, 2019
@spong spong deleted the backport/7.x/pr-37723 branch June 4, 2019 21:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport This PR is a backport of another PR

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants