Skip to content

[sentinel_one] Add configuration option to filter results by Site IDs - #14302

Merged
navnit-elastic merged 1 commit into
elastic:mainfrom
navnit-elastic:sentinel_one-1.36.0
Jun 25, 2025
Merged

[sentinel_one] Add configuration option to filter results by Site IDs#14302
navnit-elastic merged 1 commit into
elastic:mainfrom
navnit-elastic:sentinel_one-1.36.0

Conversation

@navnit-elastic

Copy link
Copy Markdown

Proposed commit message

sentinel_one: Add configuration option to filter results by Site IDs

This change adds a configuration option to all data streams,
allowing users to filter results by Site IDs and fetch data
for selected Site IDs.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

Author's Checklist

  • [ ]

How to test this PR locally

  • Clone integrations repo.
  • Install the elastic package locally.
  • Start the elastic stack using the elastic package.
  • Move to integrations/packages/sentinel_one directory.
  • Run the following command to run tests.

elastic-package test -v

Related issues

Screenshots

Screenshot 2025-06-24 123905

@navnit-elastic navnit-elastic self-assigned this Jun 24, 2025
@navnit-elastic navnit-elastic added enhancement New feature or request Integration:sentinel_one SentinelOne Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] Team:SDE-Crest Crest developers on the Security Integrations team [elastic/sit-crest-contractors] labels Jun 24, 2025
@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

@elasticmachine

Copy link
Copy Markdown

💚 Build Succeeded

cc @navnit-elastic

@navnit-elastic
navnit-elastic marked this pull request as ready for review June 24, 2025 14:52
@navnit-elastic
navnit-elastic requested a review from a team as a code owner June 24, 2025 14:52
@elasticmachine

Copy link
Copy Markdown

Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

@efd6 efd6 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks

@navnit-elastic
navnit-elastic merged commit 30a6827 into elastic:main Jun 25, 2025
@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package sentinel_one - 1.36.0 containing this change is available at https://epr.elastic.co/package/sentinel_one/1.36.0/

shmsr pushed a commit to shmsr/integrations that referenced this pull request Jun 30, 2025
…lastic#14302)

This change adds a configuration option to all data streams,
allowing users to filter results by Site IDs and fetch data
for selected Site IDs.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request Integration:sentinel_one SentinelOne Team:SDE-Crest Crest developers on the Security Integrations team [elastic/sit-crest-contractors] Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations]

3 participants