This repository was archived by the owner on Apr 16, 2021. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 522
This repository was archived by the owner on Apr 16, 2021. It is now read-only.
Elastic Stack Release Candidate 1 #1179
Copy link
Copy link
Closed
Description
-
Elasticsearch
-
Kibana
- Kibana 6.1.2
- metric viz scrollbar issue should be resolved, so replace TSVB metrics with standard metrics
- enable borders on dashboards and adjust borders where necessary
- Indicator dashboard - add viz for SSL server_name
- change
Signature_Info
tosignature_info
-
Logstash
- Logstash 6.1.2
- pipeline errors related to Suricata - need
if [sid]
andif [gid]
before doing comparisons in1033_preprocess_snort.conf
-
/etc/logstash/*-template.json
causing Elasticsearch to reportDeprecated field [template] used, replaced by [index_patterns]
-
/etc/logstash/logstash-template.json
causing Elasticsearch to report[_all] is deprecated in 6.0+ and will be removed in 7.0. As a replacement, you can use [copy_to] on mapping fields to create your own catch all field.
-
/etc/logstash/*-template.json
causing Elasticsearch to report[_default_] mapping is deprecated since it is not useful anymore now that indexes cannot have more than one type
- ensure double quotes are escaped/replaced when using csv filter to prevent illegal quoting errors
- change
Signature_Info
tosignature_info
-
ElastAlert
-
so-elastic-configure
- if choosing master-only in Setup, freqserver and domainstats should be disabled
- if sensor already configured, preserve transport settings in /etc/elasticsearch/elasticsearch.yml
-
so-elastic-download
-
so-allow-view
-
Apache
-
Sguil
-
Squert
-
sosetup-elastic
-
sostat
Metadata
Metadata
Assignees
Labels
No labels