- Notifications
You must be signed in to change notification settings - Fork 519
[windows_etw] Initial release of Custom Windows ETW integration #9413
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
| Pinging @elastic/security-service-integrations (Team:Security-Service Integrations) |
| Pinging @elastic/sec-windows-platform (Team:Security-Windows Platform) |
💚 Build Succeeded
History
|
|
| Please wait for sec-windows-platform approval. |
marc-gr left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm
| Package windows_etw - 0.1.0 containing this change is available at https://epr.elastic.co/search?package=windows_etw |

100.0% Coverage on New Code
0.0% Duplication on New Code
Proposed commit message
Add a new input package with a new integration
Custom Windows ETWto collect Windows events from the new ETW input.The minimum Kibana version to run the integration is 8.13.0.
Checklist
changelog.ymlfile.Integration release checklist
This checklist is intended for integrations maintainers to ensure consistency
when creating or updating a Package, Module or Dataset for an Integration.
All changes
New Package
Dashboards changes
Log dataset changes
sample_event.json) existsRelated issues
Screenshots
Main integration page

Configuration

Elastic Agent policy

Fleet


Discover

Document
