Skip to content

Commit eac91f1

Browse files
author
John Uhlmann
committed
less alert field mappings
1 parent b55ae18 commit eac91f1

File tree

1 file changed

+0
-24
lines changed

1 file changed

+0
-24
lines changed

custom_subsets/elastic_endpoint/alerts/rule_detection_event.yaml

Lines changed: 0 additions & 24 deletions
Original file line numberDiff line numberDiff line change
@@ -30,13 +30,7 @@ fields:
3030
name: {}
3131
summary: {}
3232
behaviors: {}
33-
metadata:
34-
fields: "*"
35-
parameters:
36-
fields: "*"
3733
created_suspended: {}
38-
memory_region:
39-
fields: "*"
4034
token:
4135
fields:
4236
integrity_level_name: {}
@@ -58,18 +52,6 @@ fields:
5852
id: {}
5953
Ext:
6054
fields:
61-
call_stack:
62-
enabled: false
63-
fields:
64-
module_path: {}
65-
instruction_pointer: {}
66-
allocation_private_bytes: {}
67-
callsite_leading_bytes: {}
68-
callsite_trailing_bytes: {}
69-
protection: {}
70-
protection_provenance: {}
71-
symbol_info: {}
72-
call_stack_contains_unbacked: {}
7355
call_stack_final_hook_module:
7456
fields:
7557
path: {}
@@ -86,18 +68,12 @@ fields:
8668
fields:
8769
name: {}
8870
path: {}
89-
allocation_private_bytes: {}
90-
protection: {}
91-
protection_provenance: {}
92-
protection_provenance_path: {}
93-
reason: {}
9471
code_signature:
9572
fields:
9673
exists: {}
9774
status: {}
9875
subject_name: {}
9976
trusted: {}
100-
valid: {}
10177
hash:
10278
fields:
10379
sha256: {}

0 commit comments

Comments
 (0)