Skip to content

Conversation

@chrisberkhout
Copy link
Contributor

Proposed commit message

[ti_misp] Add recent new field to latest_ioc transform dest (#) Add to the latest_ioc transform destination index the 'threat.indicator.email.subject' field, which was recently added to the 'treat_attributes' data stream. These two should remain in sync. 

The data stream and the transform diverged with #8837.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.

Related issues

@chrisberkhout chrisberkhout added Team:Service-Integrations Label for the Observability Service Integrations team bugfix Pull request that fixes a bug issue labels Jan 24, 2024
@chrisberkhout chrisberkhout requested a review from bhapas January 24, 2024 15:53
@chrisberkhout chrisberkhout requested a review from a team as a code owner January 24, 2024 15:53
@elasticmachine
Copy link

elasticmachine commented Jan 24, 2024

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

Copy link
Contributor

@ShourieG ShourieG left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@elasticmachine
Copy link

💚 Build Succeeded

History

  • 💚 Build #8332 succeeded eadf0a139b5e0305ffd306059eb54dc802a27e1b
  • 💚 Build #8329 succeeded f81fe48ace3f654a3912b777f395bbe8faaa6b5d

cc @chrisberkhout @bhapas

@elastic-sonarqube
Copy link

Quality Gate passed Quality Gate passed

Kudos, no new issues were introduced!

0 New issues
0 Security Hotspots
No Coverage information No data about Coverage
No Duplication information No data about Duplication

See analysis details on SonarQube

@chrisberkhout chrisberkhout merged commit 7515c44 into elastic:main Feb 6, 2024
@chrisberkhout chrisberkhout deleted the ti_misp-add-email-subject-to-transform branch February 6, 2024 13:22
@elasticmachine
Copy link

Package ti_misp - 1.30.1 containing this change is available at https://epr.elastic.co/search?package=ti_misp

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bugfix Pull request that fixes a bug issue Integration:ti_misp MISP Team:Service-Integrations Label for the Observability Service Integrations team

5 participants