Skip to content

Conversation

@matthewh-elastic
Copy link
Contributor

@matthewh-elastic matthewh-elastic commented Jun 6, 2025

Change Summary

Add the following fields for LDAP/WinHTTP/WinINet ETW telemetry:

Endpoint.metrics.system_impact.ldap_client_events.week_idle_ms
Endpoint.metrics.system_impact.ldap_client_events.week_ms
Endpoint.metrics.system_impact.winhttp_events.week_idle_ms
Endpoint.metrics.system_impact.winhttp_events.week_ms
Endpoint.metrics.system_impact.wininet_events.week_idle_ms
Endpoint.metrics.system_impact.wininet_events.week_ms

Release Target

Q/A

For mapping changes:

  • I ran make after making the schema changes, and committed all changes
  • If these field(s) are "exception"-able, I made a companion PR to Kibana adding it (see Readme)
  • If this is a metadata change, I also updated both transform destination schemas to match

For Transform changes:

  • The new transform successfully starts in Kibana
  • The corresponding transform destination schema was updated if necessary

@AsuNa-jp
Copy link
Contributor

AsuNa-jp commented Jun 6, 2025

Thank you for adding metrics for LDAP events!

kibana:
version: "^9.1.0"
# See https://github.com/Masterminds/semver#caret-range-comparisons-major for more details on `^` and supported versioning

Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think this newline is the only reason workflows team was pulled in 😂

approving for the newline!

@gergoabraham gergoabraham removed their request for review June 11, 2025 09:01
@matthewh-elastic matthewh-elastic merged commit 352e4bf into main Jun 11, 2025
4 checks passed
@pzl pzl deleted the matthew/etw_http_ldap branch June 24, 2025 16:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants