Skip to content

Commit ad4866a

Browse files
authored
Merge branch 'main' into main
2 parents f3a80e2 + 35dbdae commit ad4866a

File tree

5 files changed

+136
-11
lines changed

5 files changed

+136
-11
lines changed
Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
11
dependencies:
22
ecs:
3-
reference: git@v8.10.0
3+
reference: git@v9.1.0

packages/osquery_manager/changelog.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,9 @@
11
# newer versions go on top
2+
- version: "1.19.0"
3+
changes:
4+
- description: Update osquery to version 5.18.1 and ECS to 9.10.0
5+
type: enhancement
6+
link: https://github.com/elastic/integrations/pull/15321
27
- version: "1.18.0"
38
changes:
49
- description: Adjust result mapping to match action responses

packages/osquery_manager/data_stream/result/fields/ecs.yml

Lines changed: 7 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
# This file is generated with osqgen (https://github.com/aleksmaus/osqgen) tool from the official ECS fields yml
22
# To regenerate use:
3-
# osqgen --schema "./schema/ecs/fields.ecs_8.10.0.yml" ecs > ecs.yml
3+
# osqgen --schema "./schema/ecs/fields.ecs_9.1.0.yml" ecs > ecs.yml
44
- external: ecs
55
name: client.as.number
66
- external: ecs
@@ -497,8 +497,6 @@
497497
name: process.parent.pe.sections.var_entropy
498498
- external: ecs
499499
name: process.parent.pe.sections.virtual_size
500-
- external: ecs
501-
name: process.parent.pgid
502500
- external: ecs
503501
name: process.parent.pid
504502
- external: ecs
@@ -531,8 +529,6 @@
531529
name: process.pe.sections.var_entropy
532530
- external: ecs
533531
name: process.pe.sections.virtual_size
534-
- external: ecs
535-
name: process.pgid
536532
- external: ecs
537533
name: process.pid
538534
- external: ecs
@@ -853,6 +849,12 @@
853849
name: user.risk.static_score
854850
- external: ecs
855851
name: user.risk.static_score_norm
852+
- external: ecs
853+
name: volume.removable
854+
- external: ecs
855+
name: volume.size
856+
- external: ecs
857+
name: volume.writable
856858
- external: ecs
857859
name: vulnerability.score.base
858860
- external: ecs

0 commit comments

Comments
 (0)