Skip to content
5 changes: 5 additions & 0 deletions packages/system/changelog.yml
Original file line number Diff line number Diff line change
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "0.13.6"
changes:
- description: Use event.dataset and event.module
type: enhancement
link: https://github.com/elastic/integrations/pull/1211
- version: "0.13.5"
changes:
- description: Add support for Splunk authorization tokens
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.application
9 changes: 9 additions & 0 deletions packages/system/data_stream/auth/fields/base-fields.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,7 @@
- name: data_stream.type
type: constant_keyword
description: Data stream type.
value: logs
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This is a nice addition we likely should add anywhere. @mtojek I remember we had some discussion around this in the past, maybe there is even an issue for it. Later on we should make sure it is in sync with the type in the manifest.

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Are you referring to validation only? If so, then I understand that this property will ALWAYS be in sync with the type (any overriding forbidden)?

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Yes, can't think of a use case where the two would not be in sync.

- name: data_stream.dataset
type: constant_keyword
description: Data stream dataset.
Expand All @@ -10,3 +11,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.auth
- name: event.module
type: constant_keyword
description: Event module
value: system
8 changes: 8 additions & 0 deletions packages/system/data_stream/core/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.core
8 changes: 8 additions & 0 deletions packages/system/data_stream/cpu/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.cpu
8 changes: 8 additions & 0 deletions packages/system/data_stream/diskio/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.diskio
8 changes: 8 additions & 0 deletions packages/system/data_stream/filesystem/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.filesystem
8 changes: 8 additions & 0 deletions packages/system/data_stream/fsstat/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.fsstat
8 changes: 8 additions & 0 deletions packages/system/data_stream/load/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.load
8 changes: 8 additions & 0 deletions packages/system/data_stream/memory/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.memory
8 changes: 8 additions & 0 deletions packages/system/data_stream/network/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.network
8 changes: 8 additions & 0 deletions packages/system/data_stream/process/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.process
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.process.summary
18 changes: 9 additions & 9 deletions packages/system/data_stream/security/fields/base-fields.yml
Original file line number Diff line number Diff line change
@@ -1,24 +1,24 @@
- name: data_stream.type
type: constant_keyword
description: Data stream type.
value: logs
- name: data_stream.dataset
type: constant_keyword
description: Data stream dataset name.
- name: data_stream.namespace
type: constant_keyword
description: Data stream namespace.
- name: dataset.type
type: constant_keyword
description: Dataset type.
- name: dataset.name
type: constant_keyword
description: Dataset name.
- name: dataset.namespace
type: constant_keyword
description: Dataset namespace.
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.security
- name: tags
description: List of keywords used to tag each event.
example: '["production", "env2"]'
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.socket_summary
9 changes: 9 additions & 0 deletions packages/system/data_stream/syslog/fields/base-fields.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,7 @@
- name: data_stream.type
type: constant_keyword
description: Data stream type.
value: logs
- name: data_stream.dataset
type: constant_keyword
description: Data stream dataset.
Expand All @@ -10,3 +11,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.syslog
- name: event.module
type: constant_keyword
description: Event module
value: system
8 changes: 8 additions & 0 deletions packages/system/data_stream/system/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.system
8 changes: 8 additions & 0 deletions packages/system/data_stream/uptime/fields/base-fields.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,11 @@
- name: '@timestamp'
type: date
description: Event timestamp.
- name: event.module
type: constant_keyword
description: Event module
value: system
- name: event.dataset
type: constant_keyword
description: Event dataset.
value: system.uptime
Loading