No description
Find a file
Frank Hassanabad a63e8a4304
[SIEM][Detection Engine] Critical blocker rule changes and ECS changes
## Summary

* Changes ECS `techniques` to the word `technique` as `techniques` is incorrect ECS and incorrect mapping and without this our product could crash
* Changes ECS `threats` to the word `threat` as `threats` is incorrect ECS and incorrect mapping and without this our product could crash
* Added histogram mapping for `signal.rule.threat.tactic.name` as that was missing
* Added `Elastic` and removed `EIA` for tags
* Updates unit tests
* Cleans up rules by removing extra characters and removing fields not required.
* Adds concrete index'es as this was a critical breaking bug
* Fixes issues with imports where imports could change an immutable from false to true and suddenly cause out of band immutables to occur.

### Checklist

Use ~~strikethroughs~~ to remove checklist items you don't feel are applicable to this PR.

~~- [ ] This was checked for cross-browser compatibility, [including a check against IE11](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#cross-browser-compatibility)~~

~~- [ ] Any text added follows [EUI's writing guidelines](https://elastic.github.io/eui/#/guidelines/writing), uses sentence case text and includes [i18n support](https://github.com/elastic/kibana/blob/master/packages/kbn-i18n/README.md)~~

~~- [ ] [Documentation](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#writing-documentation) was added for features that require explanation or tutorials~~

- [x] [Unit or functional tests](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#cross-browser-compatibility) were updated or added to match the most common scenarios

~~- [ ] This was checked for [keyboard-only and screenreader accessibility](https://developer.mozilla.org/en-US/docs/Learn/Tools_and_testing/Cross_browser_testing/Accessibility#Accessibility_testing_checklist)~~

### For maintainers

~~- [ ] This was checked for breaking API changes and was [labeled appropriately](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#release-notes-process)~~

- [x] This includes a feature addition or change that requires a release note and was [labeled appropriately](https://github.com/elastic/kibana/blob/master/CONTRIBUTING.md#release-notes-process)
2020-01-24 22:18:52 -07:00
.ci
.github Update .github/CODEOWNERS (#55728) 2020-01-23 19:07:40 +01:00
bin
common/graphql
config
data
docs Add isSystemRequest support to Kibana Platform (#53734) 2020-01-24 15:20:09 -07:00
examples
licenses
packages Add @kbn/i18n to @kbn/ui-shared-deps (#55891) 2020-01-25 00:24:32 +02:00
rfcs
scripts
src Add isSystemRequest support to Kibana Platform (#53734) 2020-01-24 15:20:09 -07:00
style_guides
tasks Generate a static parser, move tests to vis_type_timelion (#55299) 2020-01-21 17:38:28 +03:00
test Add isSystemRequest support to Kibana Platform (#53734) 2020-01-24 15:20:09 -07:00
typings
utilities
vars
webpackShims
x-pack [SIEM][Detection Engine] Critical blocker rule changes and ECS changes 2020-01-24 22:18:52 -07:00
.backportrc.json
.browserslistrc
.editorconfig
.eslintignore Generate a static parser, move tests to vis_type_timelion (#55299) 2020-01-21 17:38:28 +03:00
.eslintrc.js Disallow importing Joi client side (#55018) 2020-01-24 15:38:44 +01:00
.gitattributes
.gitignore
.i18nrc.json Timelion api migration (#53005) 2020-01-23 18:19:33 +01:00
.node-version
.nvmrc
.prettierrc
.sass-lint.yml
.yarnrc
CONTRIBUTING.md Update CONTRIBUTING.md --ssl documentation to mention it covers Elasticsearch as well (#55876) 2020-01-24 15:35:04 -05:00
FAQ.md
github_checks_reporter.json
Gruntfile.js
Jenkinsfile
kibana.d.ts
LICENSE.txt
NOTICE.txt
package.json [SIEM] Fix Detections page breadcrumbs (#55173) 2020-01-21 19:20:53 +01:00
preinstall_check.js
README.md
renovate.json5 De-angularize vis tooltips (#54954) 2020-01-21 10:46:56 -06:00
STYLEGUIDE.md
tsconfig.browser.json
tsconfig.json
tsconfig.types.json
TYPESCRIPT.md
yarn.lock [SIEM] Fix Detections page breadcrumbs (#55173) 2020-01-21 19:20:53 +01:00

Kibana

Kibana is your window into the Elastic Stack. Specifically, it's a browser-based analytics and search dashboard for Elasticsearch.

Getting Started

If you just want to try Kibana out, check out the Elastic Stack Getting Started Page to give it a whirl.

If you're interested in diving a bit deeper and getting a taste of Kibana's capabilities, head over to the Kibana Getting Started Page.

Using a Kibana Release

If you want to use a Kibana release in production, give it a test run, or just play around:

Building and Running Kibana, and/or Contributing Code

You might want to build Kibana locally to contribute some code, test out the latest features, or try out an open PR:

Documentation

Visit Elastic.co for the full Kibana documentation.

For information about building the documentation, see the README in elastic/docs.

Version Compatibility with Elasticsearch

Ideally, you should be running Elasticsearch and Kibana with matching version numbers. If your Elasticsearch has an older version number or a newer major number than Kibana, then Kibana will fail to run. If Elasticsearch has a newer minor or patch number than Kibana, then the Kibana Server will log a warning.

Note: The version numbers below are only examples, meant to illustrate the relationships between different types of version numbers.

Situation Example Kibana version Example ES version Outcome
Versions are the same. 5.1.2 5.1.2 💚 OK
ES patch number is newer. 5.1.2 5.1.5 ⚠️ Logged warning
ES minor number is newer. 5.1.2 5.5.0 ⚠️ Logged warning
ES major number is newer. 5.1.2 6.0.0 🚫 Fatal error
ES patch number is older. 5.1.2 5.1.0 ⚠️ Logged warning
ES minor number is older. 5.1.2 5.0.0 🚫 Fatal error
ES major number is older. 5.1.2 4.0.0 🚫 Fatal error

Questions? Problems? Suggestions?

  • If you've found a bug or want to request a feature, please create a GitHub Issue. Please check to make sure someone else hasn't already created an issue for the same topic.
  • Need help using Kibana? Ask away on our Kibana Discuss Forum and a fellow community member or Elastic engineer will be glad to help you out.