Skip to content

Conversation

@sodhikirti07
Copy link
Contributor

@sodhikirti07 sodhikirti07 commented Sep 11, 2025

Proposed commit message

Updated the README for beaconing, DED, LMD, HTA, and PAD to revise the data view instructions

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

Author's Checklist

  • Updated changelog.yml and manifest.yml
  • Added warning to set Custom data view ID

How to test this PR locally

Related issues

Screenshots

@sodhikirti07 sodhikirti07 added the enhancement New feature or request label Sep 11, 2025
@sodhikirti07 sodhikirti07 added Integration:lmd Lateral Movement Detection Integration:beaconing Network Beaconing Identification Integration:ded Data Exfiltration Detection Integration:hta Host Traffic Anomalies Integration:pad Privileged Access Detection labels Sep 11, 2025
@sodhikirti07 sodhikirti07 marked this pull request as ready for review September 11, 2025 19:05
@sodhikirti07 sodhikirti07 requested review from a team as code owners September 11, 2025 19:05
@jmcarlock
Copy link
Contributor

jmcarlock commented Sep 11, 2025

Documentation changes look good! Just fix the CI/CD errors by bumping the pipeline/transform versions

@jmcarlock jmcarlock requested a review from a team September 11, 2025 19:31
@andrewkroh andrewkroh added documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. Team:Security-Applied ML Elastic Security Protections Machine Learning (ML) team [elastic/sec-applied-ml] labels Sep 11, 2025
@elasticmachine
Copy link

Pinging @elastic/sec-applied-ml (Team:Security-Applied ML)

@elasticmachine
Copy link

💚 Build Succeeded

History

Copy link
Member

@qn895 qn895 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Transform changes LGTM 🎉

@qn895
Copy link
Member

qn895 commented Sep 12, 2025

Yeah, I think we definitely should revise the logic for how Fleet treats ingest pipelines. For a documentation change like this, having to change the transform because the ingest pipeline changed is a bit of a pain for both developers and users. I highly encourage the ML Sec team bring this conversation up to the Fleet & Kibana's Stack Management team (who now owns Transforms).

@susan-shu-c
Copy link
Member

Thanks @qn895 we'll come up with more details on this ask and bring it up to them!

@sodhikirti07 sodhikirti07 merged commit 53ad61c into main Sep 12, 2025
9 checks passed
@sodhikirti07 sodhikirti07 deleted the update-data-view-instructions branch September 12, 2025 15:48
@elastic-vault-github-plugin-prod

Package beaconing - 1.3.2 containing this change is available at https://epr.elastic.co/package/beaconing/1.3.2/

@elastic-vault-github-plugin-prod

Package ded - 2.3.5 containing this change is available at https://epr.elastic.co/package/ded/2.3.5/

@elastic-vault-github-plugin-prod

Package hta - 1.0.1 containing this change is available at https://epr.elastic.co/package/hta/1.0.1/

@elastic-vault-github-plugin-prod

Package lmd - 2.5.3 containing this change is available at https://epr.elastic.co/package/lmd/2.5.3/

@elastic-vault-github-plugin-prod

Package pad - 0.6.4 containing this change is available at https://epr.elastic.co/package/pad/0.6.4/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. enhancement New feature or request Integration:beaconing Network Beaconing Identification Integration:ded Data Exfiltration Detection Integration:hta Host Traffic Anomalies Integration:lmd Lateral Movement Detection Integration:pad Privileged Access Detection Team:Security-Applied ML Elastic Security Protections Machine Learning (ML) team [elastic/sec-applied-ml]

7 participants