Skip to content

Commit 0304c11

Browse files
committed
Update ECS version to 1.12
1 parent a797032 commit 0304c11

File tree

14 files changed

+373
-368
lines changed

14 files changed

+373
-368
lines changed
Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
11
dependencies:
22
ecs:
3-
reference: git@1.11
3+
reference: git@1.12

packages/crowdstrike/changelog.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "0.9.0"
3+
changes:
4+
- description: Update to ECS 1.12.0
5+
type: enhancement
6+
link: https://github.com/elastic/integrations/pull/1655
27
- version: "0.8.1"
38
changes:
49
- description: Add proxy config

packages/crowdstrike/data_stream/falcon/_dev/test/pipeline/test-falcon-audit-events.log-expected.json

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
{
44
"@timestamp": "2020-02-27T19:12:14.000Z",
55
"ecs": {
6-
"version": "1.11.0"
6+
"version": "1.12.0"
77
},
88
"related": {
99
"user": [
@@ -59,7 +59,7 @@
5959
{
6060
"@timestamp": "2020-02-27T19:12:52.000Z",
6161
"ecs": {
62-
"version": "1.11.0"
62+
"version": "1.12.0"
6363
},
6464
"related": {
6565
"user": [
@@ -123,7 +123,7 @@
123123
"event.action": "stream_started",
124124
"@timestamp": "2020-02-12T21:29:10.710Z",
125125
"ecs": {
126-
"version": "1.11.0"
126+
"version": "1.12.0"
127127
},
128128
"related": {
129129
"user": [
@@ -199,7 +199,7 @@
199199
"event.action": "two_factor_authenticate",
200200
"@timestamp": "2020-02-12T21:39:37.147Z",
201201
"ecs": {
202-
"version": "1.11.0"
202+
"version": "1.12.0"
203203
},
204204
"related": {
205205
"user": [
@@ -254,7 +254,7 @@
254254
"event.action": "two_factor_authenticate",
255255
"@timestamp": "2020-02-12T22:14:37.554Z",
256256
"ecs": {
257-
"version": "1.11.0"
257+
"version": "1.12.0"
258258
},
259259
"related": {
260260
"user": [
@@ -301,7 +301,7 @@
301301
{
302302
"@timestamp": "2020-02-12T22:24:08.000Z",
303303
"ecs": {
304-
"version": "1.11.0"
304+
"version": "1.12.0"
305305
},
306306
"related": {
307307
"user": [
@@ -373,7 +373,7 @@
373373
"event.action": "request_reset_password",
374374
"@timestamp": "2020-02-13T13:41:52.140Z",
375375
"ecs": {
376-
"version": "1.11.0"
376+
"version": "1.12.0"
377377
},
378378
"related": {
379379
"user": [
@@ -434,7 +434,7 @@
434434
"event.action": "two_factor_authenticate",
435435
"@timestamp": "2020-02-13T13:42:21.730Z",
436436
"ecs": {
437-
"version": "1.11.0"
437+
"version": "1.12.0"
438438
},
439439
"related": {
440440
"user": [
@@ -489,7 +489,7 @@
489489
"event.action": "change_password",
490490
"@timestamp": "2020-02-13T13:45:20.236Z",
491491
"ecs": {
492-
"version": "1.11.0"
492+
"version": "1.12.0"
493493
},
494494
"related": {
495495
"user": [
@@ -550,7 +550,7 @@
550550
"event.action": "user_authenticate",
551551
"@timestamp": "2020-02-13T13:46:12.362Z",
552552
"ecs": {
553-
"version": "1.11.0"
553+
"version": "1.12.0"
554554
},
555555
"related": {
556556
"user": [
@@ -605,7 +605,7 @@
605605
"event.action": "two_factor_authenticate",
606606
"@timestamp": "2020-02-13T13:50:14.754Z",
607607
"ecs": {
608-
"version": "1.11.0"
608+
"version": "1.12.0"
609609
},
610610
"related": {
611611
"user": [
@@ -660,7 +660,7 @@
660660
"event.action": "self_accept_eula",
661661
"@timestamp": "2020-02-13T13:50:20.289Z",
662662
"ecs": {
663-
"version": "1.11.0"
663+
"version": "1.12.0"
664664
},
665665
"related": {
666666
"user": [
@@ -707,7 +707,7 @@
707707
{
708708
"@timestamp": "2020-02-13T14:14:22.000Z",
709709
"ecs": {
710-
"version": "1.11.0"
710+
"version": "1.12.0"
711711
},
712712
"related": {
713713
"user": [

packages/crowdstrike/data_stream/falcon/_dev/test/pipeline/test-falcon-events.log-expected.json

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@
3131
}
3232
},
3333
"ecs": {
34-
"version": "1.11.0"
34+
"version": "1.12.0"
3535
},
3636
"related": {
3737
"user": [
@@ -138,7 +138,7 @@
138138
},
139139
"@timestamp": "2020-03-04T04:17:56.766Z",
140140
"ecs": {
141-
"version": "1.11.0"
141+
"version": "1.12.0"
142142
},
143143
"event": {
144144
"ingested": "2021-07-01T08:21:45.615786500Z",
@@ -178,7 +178,7 @@
178178
{
179179
"@timestamp": "2020-06-26T15:55:52.000Z",
180180
"ecs": {
181-
"version": "1.11.0"
181+
"version": "1.12.0"
182182
},
183183
"related": {
184184
"user": [

packages/crowdstrike/data_stream/falcon/_dev/test/pipeline/test-falcon-sample.log-expected.json

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@
2828
},
2929
"@timestamp": "2020-07-20T12:41:46.000Z",
3030
"ecs": {
31-
"version": "1.11.0"
31+
"version": "1.12.0"
3232
},
3333
"related": {
3434
"hosts": [
@@ -105,7 +105,7 @@
105105
},
106106
"@timestamp": "2020-07-17T17:02:08.414Z",
107107
"ecs": {
108-
"version": "1.11.0"
108+
"version": "1.12.0"
109109
},
110110
"event": {
111111
"ingested": "2021-08-13T09:13:03.062180200Z",
@@ -154,7 +154,7 @@
154154
"event.action": "saml2_assert",
155155
"@timestamp": "2020-07-20T12:26:10.093Z",
156156
"ecs": {
157-
"version": "1.11.0"
157+
"version": "1.12.0"
158158
},
159159
"related": {
160160
"user": [
@@ -223,7 +223,7 @@
223223
{
224224
"@timestamp": "2020-07-20T12:41:25.000Z",
225225
"ecs": {
226-
"version": "1.11.0"
226+
"version": "1.12.0"
227227
},
228228
"related": {
229229
"user": [
@@ -279,7 +279,7 @@
279279
{
280280
"@timestamp": "2020-07-17T17:14:53.000Z",
281281
"ecs": {
282-
"version": "1.11.0"
282+
"version": "1.12.0"
283283
},
284284
"related": {
285285
"user": [
@@ -335,7 +335,7 @@
335335
{
336336
"@timestamp": "2020-07-17T17:28:19.000Z",
337337
"ecs": {
338-
"version": "1.11.0"
338+
"version": "1.12.0"
339339
},
340340
"related": {
341341
"user": [
@@ -435,7 +435,7 @@
435435
}
436436
},
437437
"ecs": {
438-
"version": "1.11.0"
438+
"version": "1.12.0"
439439
},
440440
"related": {
441441
"user": [

packages/crowdstrike/data_stream/falcon/elasticsearch/ingest_pipeline/default.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ processors:
66
value: '{{_ingest.timestamp}}'
77
- set:
88
field: ecs.version
9-
value: '1.11.0'
9+
value: '1.12.0'
1010
- rename:
1111
field: message
1212
target_field: event.original

packages/crowdstrike/data_stream/falcon/sample_event.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -53,7 +53,7 @@
5353
"type": "logs"
5454
},
5555
"ecs": {
56-
"version": "1.11.0"
56+
"version": "1.12.0"
5757
},
5858
"elastic_agent": {
5959
"id": "ea510c32-eacb-447e-96e5-3300ba696f8e",

0 commit comments

Comments
 (0)