Skip to content

[Security Rules] Update security rules package to v8.7.3-beta.0 #5931

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 3 commits into from
Apr 21, 2023

Conversation

terrancedejesus
Copy link
Contributor

@terrancedejesus terrancedejesus commented Apr 20, 2023

What does this PR do?

Update the Security Rules package to version 8.7.3-beta.0.
Autogenerated from commit https://github.com/elastic/detection-rules/tree/fc162529d9068dcadf6bcb5f5836aa8a1b764f79

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • If I'm introducing a new feature, I have modified the Kibana version constraint in my package's manifest.yml file to point to the latest Elastic stack release (e.g. ^7.13.0).

Author's Checklist

  • Install the most recently release security rules in the Detection Engine
  • Install the package
  • Confirm the update is available in Kibana. Click "Update X rules" or "Install X rules"
  • Look at the changes made after the install and confirm they are consistent

How to test this PR locally

  • Perform the above checklist, and use package-storage to build EPR from source

Related issues

Screenshots

None

@terrancedejesus terrancedejesus requested a review from a team as a code owner April 20, 2023 02:53
@terrancedejesus terrancedejesus self-assigned this Apr 20, 2023
@elasticmachine
Copy link

elasticmachine commented Apr 20, 2023

💚 Build Succeeded

the below badges are clickable and redirect to their specific view in the CI or DOCS
Pipeline View Test View Changes Artifacts preview preview

Expand to view the summary

Build stats

  • Start Time: 2023-04-20T02:56:31.656+0000

  • Duration: 13 min 43 sec

🤖 GitHub comments

Expand to view the GitHub comments

To re-run your PR in the CI, just comment with:

  • /test : Re-trigger the build.

@terrancedejesus
Copy link
Contributor Author

terrancedejesus commented Apr 20, 2023

Package appears to pass all checks. All rule files have the version as _VERSION.json appended to it. Inside of each file, the id key's value is RULEID_VERSION. 11ea6bec-ebde-4d71-a8e9-784948f8e3e9 is a rule with a previous version in the v8.7.2 package.

Once merged, this will be pushed to EPR as a prerelease package and can be installed via Fleet for testing.

@xcrzx @banderror below are the Rule IDs that have historical rules with them:

11ea6bec-ebde-4d71-a8e9-784948f8e3e9
66883649-f908-4a5b-a1e0-54090a1d3a32
f33e68a4-bd19-11ed-b02f-f661ea17fbcc

Copy link
Contributor

@Mikaayenson Mikaayenson left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@terrancedejesus terrancedejesus merged commit 352a9fa into main Apr 21, 2023
@elasticmachine
Copy link

Package security_detection_engine - 8.7.3-beta.0 containing this change is available at https://epr.elastic.co/search?package=security_detection_engine

@terrancedejesus terrancedejesus deleted the detection-rules/8.7.3-beta.0-fc162529 branch July 13, 2023 23:33
@andrewkroh andrewkroh added the Integration:security_detection_engine Prebuilt Security Detection Rules label Jul 22, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Integration:security_detection_engine Prebuilt Security Detection Rules
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants