Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Initial Aruba Documentation #11101

Closed
wants to merge 94 commits into from
Closed
Show file tree
Hide file tree
Changes from 8 commits
Commits
Show all changes
94 commits
Select commit Hold shift + click to select a range
ec916ab
initial (#10479)
animehart Sep 11, 2024
84d71ee
aws_bedrock: support newer guardrails data structure (#11021)
efd6 Sep 11, 2024
b4dcce4
Initial Aruba Documentation
qcorporation Sep 11, 2024
3e5e8a1
sentinel_one: document alert data stream environment limitation (#11036)
efd6 Sep 11, 2024
f1f0e8d
entityanalytics_entra_id: add support for request trace logging (#10765)
efd6 Sep 11, 2024
1527b10
[Enhancement] Improve S1 Cloud Funnel Process event parity with other…
w0rk3r Sep 11, 2024
105828a
[Citrix ADC] Update code-owner for logs and metrics data stream (#11064)
muthu-mps Sep 12, 2024
b659fac
Add Latest Transform - Wiz Vulnerabilities
CohenIdo Sep 12, 2024
7b14f75
Bump github.com/elastic/package-registry from 1.24.1 to 1.25.0 (#11097)
dependabot[bot] Sep 12, 2024
8711ef8
Fix powershell error on events 40961 and 40962 (#10792)
bjmcnic Sep 12, 2024
afac6c5
chore: [updatecli] Update 7.x snapshot to 7.17.25-SNAPSHOT (#11107)
github-actions[bot] Sep 12, 2024
e14c806
Address PR comments and Refactor
qcorporation Sep 12, 2024
c8edfa3
[citrix_adc] Improve handling of SSLVPN Message (#11121)
aleksmaus Sep 12, 2024
40666e8
[DOCS] Add new section on Azure Functions hosting plans (#10984)
alaudazzi Sep 13, 2024
82311e2
[Cloud Security] fix 'got types.Null, expected iterable type' error (…
maxcold Sep 13, 2024
08e244c
tenable_io: fix flakey test and timestamp handling (#10940)
efd6 Sep 13, 2024
db6b7ae
claroty_ctd: fix replacement configuration (#11093)
efd6 Sep 13, 2024
a6eb961
cyberarkpas: improve efficiency of event.duration calculation (#11011)
efd6 Sep 13, 2024
9c0bb75
Update changelog entry
alaudazzi Sep 13, 2024
a90c098
entityanalytics_okta: map group fields and add test infrastructure (#…
efd6 Sep 13, 2024
c719ce5
google_scc: fix field name typo (#11053)
efd6 Sep 13, 2024
b2842a4
Update sonar-project.properties
qcorporation Sep 13, 2024
6af01d9
Update docker-compose.yml
qcorporation Sep 13, 2024
04dbc83
Trying to get CI to pass
qcorporation Sep 13, 2024
d01ee79
minor tweaks for versioning and naming
qcorporation Sep 13, 2024
08438cc
[New Integration] ProxySG (#10459)
mjwolf Sep 13, 2024
8c67d4c
crowdstrike: fix mapping for assessment events and aip handling (#11023)
efd6 Sep 13, 2024
2eea5ec
[jamf_pro] Various minor improvements and fixes (#11065)
chrisberkhout Sep 15, 2024
2f7ce1d
add proxysg to .github/ISSUE_TEMPLATE/integration_bug.yml (#11134)
github-actions[bot] Sep 16, 2024
147932a
m365_defender: fix assignment of windows os identity and posix hosts …
efd6 Sep 16, 2024
1664d36
Set vulnerability ECS field based on Qualys data (#11100)
clement-fouque Sep 16, 2024
8130976
[gcp] Add policy_violation_info metadata and related fields to GCP au…
haetamoudi Sep 16, 2024
e28fc51
[CI] Fix script that retrieves oldest supported version (#11126)
mrodm Sep 16, 2024
547cb41
[Cloud Security][Asset Inventory] Restore Azure and GCP streams for ^…
kubasobon Sep 16, 2024
cc5e9fc
add changelog entry from backported 1.8.1 version of Wiz (#11127)
maxcold Sep 16, 2024
4df01c2
Switch to PAT generated token (#10614)
ev1yehor Sep 16, 2024
de3fa55
[Security Rules] Update security rules package to v8.15.5-beta.1 (#11…
eric-forte-elastic Sep 16, 2024
671a12b
Update fields.yml
qcorporation Sep 16, 2024
0cb33d6
Elastic connector integration (#10898)
jedrazb Sep 16, 2024
7da7dc9
[pfsense] Fix firewall ICMPv6 message parsing error (#11144)
aleksmaus Sep 16, 2024
cae44e9
crowdstrike: map command line fields as multi-fields with match_only …
efd6 Sep 16, 2024
a7726a9
cloudflare_logpush: retain firewall event zone names (#11132)
efd6 Sep 16, 2024
2e72e85
add elastic_connectors to ISSUE_TEMPLATE (#11151)
github-actions[bot] Sep 17, 2024
95b7a9d
Bump github.com/cli/go-gh/v2 from 2.9.0 to 2.10.0 (#11136)
dependabot[bot] Sep 17, 2024
b3a1070
Update updatecli configuration for 8.x SNAPSHOT (#11129)
mrodm Sep 17, 2024
6d76da8
graphactivitylogs: Fix client|source.geo.location mapping (#11102)
zmoog Sep 17, 2024
773eac4
[CI] Remove dependencies from with_mage (#11143)
mrodm Sep 17, 2024
bdddbb6
[osquery_manager] Upgrade osquery to 5.13.1 (#11146)
aleksmaus Sep 17, 2024
9292bf1
Reverting changes to sonar-project.properties
qcorporation Sep 17, 2024
795c0b9
[Security Rules] Update security rules package to v8.15.5 (#11156)
eric-forte-elastic Sep 17, 2024
6045da1
Initial Release of Sysdig Secure Integration (#10841)
cole-labar Sep 17, 2024
9797724
[PostgreSQL] Enhance grok pattern (#10412)
kush-elastic Sep 18, 2024
a05a2b1
vsphere: Add support for processors in datastore, host and virtualmac…
bene-dt0 Sep 18, 2024
6ce0a5c
Initial release of Custom Threat Intelligence (#11066)
chemamartinez Sep 18, 2024
d926f5c
chore: update pkgs in .github/ISSUE_TEMPLATE/integration_bug.yml (#11…
github-actions[bot] Sep 18, 2024
2a7f2b3
system: add ECS field host.os.version (#11106)
zmoog Sep 18, 2024
1a89e54
add hidden variables for Asset Inventory (#11167)
kubasobon Sep 18, 2024
b1c2b73
[Cloud Security][Asset Inventory] update manifest and changelog (#11173)
kubasobon Sep 18, 2024
9989e39
GA Deployment and Devices integrations (#11157)
taylor-swanson Sep 18, 2024
a8e444c
.github/ISSUE_TEMPLATE/integration_bug.yml - add ti_custom (#11183)
github-actions[bot] Sep 19, 2024
3ac8288
crowdstrike: temporarily reinstate fields/ecs.yml (#11147)
efd6 Sep 19, 2024
cdcedd4
Update the Custom Logs integration to package spec V3.1.5 (#11181)
belimawr Sep 19, 2024
076cfec
azure metrics: add list of supported databases and namespaces (#11118)
zmoog Sep 19, 2024
99a22db
[CI] Add support for running tests with stack 9.0.0 (#11138)
mrodm Sep 19, 2024
e2083e9
Rename AWS Bedrock integration as Amazon Bedrock (#11184)
agithomas Sep 19, 2024
925b0b9
[vSphere][host] Add support for new metrics in Host datastream (#10894)
kush-elastic Sep 19, 2024
3390921
[vSphere][datastore] Add support for additional metrics (#10911)
lucian-ioan Sep 19, 2024
d9da904
[Cloud Security] add misconfiguration latest transform to Wiz integra…
maxcold Sep 19, 2024
20a5f19
[vSphere] Add new cluster datatastream (#10949)
niraj-elastic Sep 19, 2024
bde6b51
[stormshield] Fix timestamp fields, move stormshield.msg to message (…
taylor-swanson Sep 19, 2024
40459dc
[vSphere] Add new resourcepool datatastream (#10996)
niraj-elastic Sep 19, 2024
5e3f48f
Address PR comments
qcorporation Sep 19, 2024
9702a76
Fix build issues
qcorporation Sep 19, 2024
424e6e6
Update README for packages with ML Modules to ensure naming is consis…
alvarezmelissa87 Sep 19, 2024
6ecaa71
carbon_black_cloud: ensure alert search range is a valid temporal ord…
efd6 Sep 19, 2024
ccfbcfc
.github/ISSUE_TEMPLATE/integration_bug.yml - update bedrock title (#1…
github-actions[bot] Sep 20, 2024
69dc708
[vSphere][virtualmachine] Add support for additional metrics (#10942)
lucian-ioan Sep 20, 2024
c7d87fc
azure storage account: fix capacity and count metrics visualizations …
zmoog Sep 20, 2024
7c0518c
[kubernetes OTEL] Add kubernetes OTEL package (#11137)
tetianakravchenko Sep 20, 2024
e9fb3eb
Update sonar-properties
qcorporation Sep 20, 2024
3189c70
[crowdstrike] Add Support of IDP and EPP Alert Fields (#11135)
mohitjha-elastic Sep 20, 2024
12e5710
Initial Aruba Documentation
qcorporation Sep 11, 2024
930bf0c
Address PR comments and Refactor
qcorporation Sep 12, 2024
bce905c
Update sonar-project.properties
qcorporation Sep 13, 2024
ce3fda1
Update docker-compose.yml
qcorporation Sep 13, 2024
39e005d
Trying to get CI to pass
qcorporation Sep 13, 2024
cc9ae30
minor tweaks for versioning and naming
qcorporation Sep 13, 2024
f70c5d6
Update fields.yml
qcorporation Sep 16, 2024
6176ace
Reverting changes to sonar-project.properties
qcorporation Sep 17, 2024
e9c8133
Address PR comments
qcorporation Sep 19, 2024
9a27720
Fix build issues
qcorporation Sep 19, 2024
049f893
Update sonar-properties
qcorporation Sep 20, 2024
3698867
Merge branch 'feature-5255-aruba-qcorp' of github.com:elastic/integra…
qcorporation Sep 20, 2024
8dc8f2e
revering sonar-project.properties
qcorporation Sep 20, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions .github/CODEOWNERS
Validating CODEOWNERS rules …
Original file line number Diff line number Diff line change
Expand Up @@ -221,6 +221,7 @@
/packages/haproxy @elastic/obs-infraobs-integrations
/packages/hashicorp_vault @elastic/sec-deployment-and-devices
/packages/hid_bravura_monitor @elastic/sec-windows-platform
/packages/hpe_aruba_cx @elastic/sec-deployment-and-devices
/packages/http_endpoint @elastic/security-service-integrations
/packages/httpjson @elastic/security-service-integrations
/packages/ibmmq @elastic/obs-infraobs-integrations
Expand Down
1 change: 1 addition & 0 deletions .github/ISSUE_TEMPLATE/integration_bug.yml
Original file line number Diff line number Diff line change
Expand Up @@ -138,6 +138,7 @@ body:
- Hadoop [hadoop]
- HAProxy [haproxy]
- Hashicorp Vault [hashicorp_vault]
- HPE Aruba CX [hpe_aruba_cx]
- Bravura Monitor [hid_bravura_monitor]
- Custom HTTP Endpoint Logs [http_endpoint]
- Custom API [httpjson]
Expand Down
93 changes: 93 additions & 0 deletions packages/hpe_aruba_cx/LICENSE.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,93 @@
Elastic License 2.0

URL: https://www.elastic.co/licensing/elastic-license

## Acceptance

By using the software, you agree to all of the terms and conditions below.

## Copyright License

The licensor grants you a non-exclusive, royalty-free, worldwide,
non-sublicensable, non-transferable license to use, copy, distribute, make
available, and prepare derivative works of the software, in each case subject to
the limitations and conditions below.

## Limitations

You may not provide the software to third parties as a hosted or managed
service, where the service provides users with access to any substantial set of
the features or functionality of the software.

You may not move, change, disable, or circumvent the license key functionality
in the software, and you may not remove or obscure any functionality in the
software that is protected by the license key.

You may not alter, remove, or obscure any licensing, copyright, or other notices
of the licensor in the software. Any use of the licensor’s trademarks is subject
to applicable law.

## Patents

The licensor grants you a license, under any patent claims the licensor can
license, or becomes able to license, to make, have made, use, sell, offer for
sale, import and have imported the software, in each case subject to the
limitations and conditions in this license. This license does not cover any
patent claims that you cause to be infringed by modifications or additions to
the software. If you or your company make any written claim that the software
infringes or contributes to infringement of any patent, your patent license for
the software granted under these terms ends immediately. If your company makes
such a claim, your patent license ends immediately for work on behalf of your
company.

## Notices

You must ensure that anyone who gets a copy of any part of the software from you
also gets a copy of these terms.

If you modify the software, you must include in any modified copies of the
software prominent notices stating that you have modified the software.

## No Other Rights

These terms do not imply any licenses other than those expressly granted in
these terms.

## Termination

If you use the software in violation of these terms, such use is not licensed,
and your licenses will automatically terminate. If the licensor provides you
with a notice of your violation, and you cease all violation of this license no
later than 30 days after you receive that notice, your licenses will be
reinstated retroactively. However, if you violate these terms after such
reinstatement, any additional violation of these terms will cause your licenses
to terminate automatically and permanently.

## No Liability

*As far as the law allows, the software comes as is, without any warranty or
condition, and the licensor will not be liable to you for any damages arising
out of these terms or the use or nature of the software, under any kind of
legal claim.*

## Definitions

The **licensor** is the entity offering these terms, and the **software** is the
software the licensor makes available under these terms, including any portion
of it.

**you** refers to the individual or entity agreeing to these terms.

**your company** is any legal entity, sole proprietorship, or other kind of
organization that you work for, plus all organizations that have control over,
are under the control of, or are under common control with that
organization. **control** means ownership of substantially all the assets of an
entity, or the power to direct its management and policies by vote, contract, or
otherwise. Control can be direct or indirect.

**your licenses** are all the licenses granted to you for the software under
these terms.

**use** means anything you do with the software requiring one of your licenses.

**trademark** means trademarks, service marks, and similar rights.
3 changes: 3 additions & 0 deletions packages/hpe_aruba_cx/_dev/build/build.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
dependencies:
ecs:
reference: "git@v8.11.0"
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

What's the decision-making process behind picking this version? This looks like the latest one that's been released from https://github.com/elastic/ecs/tags .

How does this part fit into the broader OTel/ECS efforts?

Understandable if you don't want to address this in this PR.

Copy link
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@dwhyrock good question - it looks like we point to the latest ECS release, which at this point is 8.11.0
In general, our integrations for the foreseeable future will always speak ECS.

In contrast, if we were to pick an older ECS version, then we would not be able to specify fields that are released in a later release. That will limit our 'language' in which we can describe the log message that is coming from the appliance.

Loading