Skip to content

[Proofpoint TAP] Empty array response should not generate an event #9965

@andrewkroh

Description

@andrewkroh

Each minute when there are no new events available, documents like this are indexed in Elasticsearch.

These are event.original values:

{"messagesDelivered:":[],"queryEndTime":"2023-05-23T19:01:34Z"} {"messagesDelivered:":[],"queryEndTime":"2023-05-23T19:02:34Z"}

This was observed with the other data streams in the integration too.

References

Metadata

Metadata

Assignees

No one assigned

    Labels

    Integration:proofpoint_tapProofpoint TAPTeam:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]bugSomething isn't working, use only for issues

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions