Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security Solution] Environment for testing prebuilt rule customization (Kseniia's demo env) #205883

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

banderror
Copy link
Contributor

@banderror banderror commented Jan 8, 2025

Summary

This PR is needed to create a test environment and won't be merged.

The environment is created for @approksiu.

@banderror banderror added release_note:skip Skip the PR/issue when compiling release notes v9.0.0 Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Detection Rule Management Security Detection Rule Management Team Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area ci:cloud-deploy Create or update a Cloud deployment ci:cloud-persist-deployment Persist cloud deployment indefinitely ci:project-deploy-security Create a Security Serverless Project ci:project-persist-deployment Persist project deployment indefinitely backport:version Backport to applied version labels labels Jan 8, 2025
@banderror banderror self-assigned this Jan 8, 2025
@banderror banderror requested a review from a team as a code owner January 8, 2025 12:59
@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detections-response (Team:Detections and Resp)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detection-rule-management (Team:Detection Rule Management)

@banderror banderror force-pushed the prebuilt-rule-customization-kseniia-demo branch from f696f15 to 0debb7f Compare January 9, 2025 12:57
@banderror
Copy link
Contributor Author

@approksiu Unit and other tests are failing with the feature flag turned on by default. It means we need to fix the tests (and probably the app) before we could use CI for creating environments for testing. We'll do this in the next few weeks, but for now I will find another way for creating this environment. Will ping you when it's ready.

@banderror banderror closed this Jan 10, 2025
@banderror banderror deleted the prebuilt-rule-customization-kseniia-demo branch January 10, 2025 13:27
@banderror banderror restored the prebuilt-rule-customization-kseniia-demo branch January 13, 2025 18:24
@banderror banderror reopened this Jan 13, 2025
@banderror banderror force-pushed the prebuilt-rule-customization-kseniia-demo branch 4 times, most recently from eb54dbf to 72edd6b Compare January 20, 2025 13:36
@banderror banderror force-pushed the prebuilt-rule-customization-kseniia-demo branch 3 times, most recently from a03ad27 to 7f169ba Compare January 27, 2025 09:37
@banderror banderror force-pushed the prebuilt-rule-customization-kseniia-demo branch from 7f169ba to f5fc948 Compare January 31, 2025 17:40
@banderror banderror force-pushed the prebuilt-rule-customization-kseniia-demo branch from f5fc948 to b83dd9b Compare February 3, 2025 18:03
@elasticmachine
Copy link
Contributor

elasticmachine commented Feb 3, 2025

💔 Build Failed

Failed CI Steps

Test Failures

  • [job] [logs] Rule Management - Prebuilt Rules - Security Solution Cypress Tests #1 / Detection rules, Prebuilt Rules Installation and Update workflow Upgrade of prebuilt rules Viewing rule changes in per-field diff view User can see changes in a side-by-side per-field diff view User can see changes in a side-by-side per-field diff view
  • [job] [logs] Serverless Rule Management - Security Solution Cypress Tests #2 / Export rules rules with exceptions exports custom rules with exceptions exports custom rules with exceptions
  • [job] [logs] Serverless Rule Management - Security Solution Cypress Tests #2 / Export rules shows a modal saying that no rules can be exported if all the selected rules are prebuilt shows a modal saying that no rules can be exported if all the selected rules are prebuilt
  • [job] [logs] Serverless Rule Management - Security Solution Cypress Tests #1 / Related integrations integrations installed (AWS CloudFront (enabled), AWS CloudTrail (disabled), System (enabled)) rules management table should display a badge with the installed integrations should display a badge with the installed integrations
  • [job] [logs] Rule Management - Security Solution Cypress Tests #4 / Related integrations integrations installed (AWS CloudFront (enabled), AWS CloudTrail (disabled), System (enabled)) rules management table should display a badge with the installed integrations should display a badge with the installed integrations
  • [job] [logs] Serverless Rule Management - Security Solution Cypress Tests #1 / Related integrations integrations not installed rules management table should display a badge with the installed integrations should display a badge with the installed integrations
  • [job] [logs] Rule Management - Security Solution Cypress Tests #4 / Related integrations integrations not installed rules management table should display a badge with the installed integrations should display a badge with the installed integrations
  • [job] [logs] FTR Configs #9 / Rules Management - Prebuilt Rules - Prebuilt Rule Customization Disabled @ess @serverless @skipInServerlessMKI is_customized calculation with disabled customization should not allow prebuilt rule customization on import
  • [job] [logs] FTR Configs #28 / Rules Management - Prebuilt Rules - Prebuilt Rule Customization Disabled @ess @serverless @skipInServerlessMKI is_customized calculation with disabled customization should not allow prebuilt rule customization on import
  • [job] [logs] FTR Configs #9 / Rules Management - Prebuilt Rules - Prebuilt Rule Customization Disabled @ess @serverless @skipInServerlessMKI is_customized calculation with disabled customization should not allow prebuilt rule customization on import
  • [job] [logs] FTR Configs #28 / Rules Management - Prebuilt Rules - Prebuilt Rule Customization Disabled @ess @serverless @skipInServerlessMKI is_customized calculation with disabled customization should not allow prebuilt rule customization on import
  • [job] [logs] FTR Configs #83 / Rules Management - Rule Bulk Action API @ess @serverless @skipInServerlessMKI perform_bulk_action dry_run edit action should validate immutable rule edit
  • [job] [logs] FTR Configs #110 / Rules Management - Rule Bulk Action API @ess @serverless @skipInServerlessMKI perform_bulk_action dry_run edit action should validate immutable rule edit
  • [job] [logs] FTR Configs #110 / Rules Management - Rule Bulk Action API @ess @serverless @skipInServerlessMKI perform_bulk_action dry_run edit action should validate immutable rule edit
  • [job] [logs] FTR Configs #83 / Rules Management - Rule Bulk Action API @ess @serverless @skipInServerlessMKI perform_bulk_action dry_run edit action should validate immutable rule edit
  • [job] [logs] FTR Configs #31 / Rules Management - Rule import export API @ess @serverless @skipInServerlessMKI import_rules supporting prebuilt rule customization compatibility with prebuilt rule fields rejects rules with "immutable: true" when the feature flag is disabled
  • [job] [logs] FTR Configs #94 / Rules Management - Rule import export API @ess @serverless @skipInServerlessMKI import_rules supporting prebuilt rule customization compatibility with prebuilt rule fields rejects rules with "immutable: true" when the feature flag is disabled
  • [job] [logs] FTR Configs #94 / Rules Management - Rule import export API @ess @serverless @skipInServerlessMKI import_rules supporting prebuilt rule customization compatibility with prebuilt rule fields rejects rules with "immutable: true" when the feature flag is disabled
  • [job] [logs] FTR Configs #31 / Rules Management - Rule import export API @ess @serverless @skipInServerlessMKI import_rules supporting prebuilt rule customization compatibility with prebuilt rule fields rejects rules with "immutable: true" when the feature flag is disabled

Metrics [docs]

✅ unchanged

History

cc @banderror

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport:version Backport to applied version labels ci:cloud-deploy Create or update a Cloud deployment ci:cloud-persist-deployment Persist cloud deployment indefinitely ci:project-deploy-security Create a Security Serverless Project ci:project-persist-deployment Persist project deployment indefinitely Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area release_note:skip Skip the PR/issue when compiling release notes Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. v9.0.0
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants