Skip to content

Commit 994c676

Browse files
committed
Deprecate original Fortinet integration & update ingest pipelines
1 parent d24707e commit 994c676

File tree

25 files changed

+1558
-63
lines changed

25 files changed

+1558
-63
lines changed

packages/fortinet/changelog.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "1.8.1"
3+
changes:
4+
- description: Deprecating Fortinet package in favor of new product specific packages
5+
type: enhancement
6+
link: https://github.com/elastic/integrations/pull/3819
27
- version: "1.8.0"
38
changes:
49
- description: Update package to ECS 8.4.0

packages/fortinet/manifest.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
name: fortinet
22
title: Fortinet
3-
version: "1.8.0"
3+
version: "1.8.1"
44
release: ga
5-
description: Collect logs from Fortinet instances with Elastic Agent.
5+
description: Deprecated. Collect logs from Fortinet instances with Elastic Agent.
66
type: integration
77
format_version: 1.0.0
88
license: basic

packages/fortinet_forticlient/changelog.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "1.1.0"
3+
changes:
4+
- description: Update Ingest Pipeline with observer Fields
5+
type: enhancement # can be one of: enhancement, bugfix, breaking-change
6+
link: https://github.com/elastic/integrations/pull/3819
27
- version: "1.0.0"
38
changes:
49
- description: Initial version of Fortinet FortiClient as separate package

packages/fortinet_forticlient/data_stream/log/_dev/test/pipeline/test-generated.log-expected.json

Lines changed: 500 additions & 0 deletions
Large diffs are not rendered by default.

packages/fortinet_forticlient/data_stream/log/agent/stream/log.yml.hbs

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -10,12 +10,6 @@ tags:
1010
{{#each tags as |tag i|}}
1111
- {{tag}}
1212
{{/each}}
13-
fields_under_root: true
14-
fields:
15-
observer:
16-
vendor: "Fortinet"
17-
product: "FortiClient"
18-
type: "Anti-Virus"
1913
{{#contains "forwarded" tags}}
2014
publisher_pipeline.disable_host: true
2115
{{/contains}}

packages/fortinet_forticlient/data_stream/log/agent/stream/tcp.yml.hbs

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -7,12 +7,6 @@ tags:
77
{{#each tags as |tag i|}}
88
- {{tag}}
99
{{/each}}
10-
fields_under_root: true
11-
fields:
12-
observer:
13-
vendor: "Fortinet"
14-
product: "FortiClient"
15-
type: "Anti-Virus"
1610
{{#contains "forwarded" tags}}
1711
publisher_pipeline.disable_host: true
1812
{{/contains}}

packages/fortinet_forticlient/data_stream/log/agent/stream/udp.yml.hbs

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -7,12 +7,6 @@ tags:
77
{{#each tags as |tag i|}}
88
- {{tag}}
99
{{/each}}
10-
fields_under_root: true
11-
fields:
12-
observer:
13-
vendor: "Fortinet"
14-
product: "FortiClient"
15-
type: "Anti-Virus"
1610
{{#contains "forwarded" tags}}
1711
publisher_pipeline.disable_host: true
1812
{{/contains}}

packages/fortinet_forticlient/data_stream/log/elasticsearch/ingest_pipeline/default.yml

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,18 @@
11
---
22
description: Pipeline for Fortinet FortiClient Endpoint Security
3-
43
processors:
54
- set:
65
field: ecs.version
76
value: '8.3.0'
7+
- set:
8+
field: observer.vendor
9+
value: Fortinet
10+
- set:
11+
field: observer.product
12+
value: FortiClient
13+
- set:
14+
field: observer.type
15+
value: anti-virus
816
# User agent
917
- user_agent:
1018
field: user_agent.original

packages/fortinet_forticlient/manifest.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
name: fortinet_forticlient
22
title: Fortinet FortiClient Logs
3-
version: 1.0.0
3+
version: 1.1.0
44
release: ga
55
description: Collect logs from Fortinet FortiClient instances with Elastic Agent.
66
type: integration

packages/fortinet_fortigate/changelog.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "1.2.0"
3+
changes:
4+
- description: Update Ingest Pipeline with observer Fields
5+
type: enhancement
6+
link: https://github.com/elastic/integrations/pull/3819
27
- version: "1.1.0"
38
changes:
49
- description: Add dashboard.

0 commit comments

Comments
 (0)