add missing fields gcp audit logs - #10886
Conversation
|
Pinging @elastic/security-service-integrations (Team:Security-Service Integrations) |
🚀 Benchmarks reportTo see the full report comment with |
|
@efd6 @ShourieG would one of you be able to review the changes to the @kgeller we can't give it a ✅ since we're not codeowners but will you look over too for any feedback? EDIT: also the coverage failure can be ignored. @haetamoudi actually looking at some improvements in elastic/elastic-package#2063. |
kgeller
left a comment
There was a problem hiding this comment.
Overall looks great! Just a couple of suggestions 😄
Co-authored-by: Dan Kortschak <dan.kortschak@elastic.co>
Co-authored-by: Dan Kortschak <dan.kortschak@elastic.co>
…efault.yml Co-authored-by: Dan Kortschak <dan.kortschak@elastic.co>
…efault.yml Co-authored-by: Dan Kortschak <dan.kortschak@elastic.co>
💚 Build Succeeded
History
|
|
|
@efd6 I addressed the changes from the comments, let me know if anything if missing to get approval |
|
Package gcp - 2.38.0 containing this change is available at https://epr.elastic.co/search?package=gcp |
…dit logs (elastic#10886) * add missing fields gcp audit logs * update changelog entry
…dit logs (elastic#10886) * add missing fields gcp audit logs * update changelog entry


Proposed commit message
Add policy_violation_info, metadata and related fields to GCP audit logs.
Changes
policy_violation_info,metadataandrelatedfields to audit logs.emailfieldChecklist
changelog.ymlfile.Author's Checklist
How to test this PR locally
Follow the public documentation to ingest GCP Audit logs https://www.elastic.co/docs/current/integrations/gcp