Skip to content

ssi: add or fix support for request trace deletion - #17963

Merged
efd6 merged 3 commits into
elastic:mainfrom
efd6:13002-ssi_all
Mar 25, 2026
Merged

ssi: add or fix support for request trace deletion#17963
efd6 merged 3 commits into
elastic:mainfrom
efd6:13002-ssi_all

Conversation

@efd6

@efd6 efd6 commented Mar 23, 2026

Copy link
Copy Markdown
Contributor

Proposed commit message

ssi: add or fix support for request trace deletion

This adds or fixes support for request trace deletion for integrations using
input versions of CEL or HTTPJSON that support the feature.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

Author's Checklist

  • [ ]

How to test this PR locally

Related issues

Screenshots

@efd6 efd6 self-assigned this Mar 23, 2026
@efd6 efd6 added enhancement New feature or request bugfix Pull request that fixes a bug issue Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] labels Mar 23, 2026
Comment thread packages/cisco_duo/data_stream/activity/agent/stream/cel.yml.hbs
Comment thread packages/entro/changelog.yml
@efd6 efd6 added Integration:cisco_duo Cisco Duo Integration:bitdefender BitDefender Integration:ti_opencti OpenCTI Integration:eset_protect ESET PROTECT Integration:ti_crowdstrike CrowdStrike Falcon Intelligence Integration:digital_guardian Digital Guardian Integration:authentik authentik Integration:spycloud SpyCloud Enterprise Protection (Partner supported) Integration:first_epss First EPSS (Community supported) Integration:claroty_ctd Claroty CTD Integration:sysdig Sysdig Integration:ti_custom Custom Threat Intelligence Integration:checkpoint_harmony_endpoint Check Point Harmony Endpoint Integration:entro Entro Integration:withsecure_elements WithSecure Elements (Community supported) labels Mar 23, 2026
@elastic-vault-github-plugin-prod

elastic-vault-github-plugin-prod Bot commented Mar 23, 2026

Copy link
Copy Markdown
Contributor

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

@efd6
efd6 marked this pull request as ready for review March 23, 2026 03:30
@efd6
efd6 requested a review from a team as a code owner March 23, 2026 03:30
@elasticmachine

Copy link
Copy Markdown

Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

@andrewkroh andrewkroh added Integration:swimlane Swimlane Turbine (Community supported) Integration:miniflux Miniflux RSS reader Integration:ti_anomali Anomali ThreatStream labels Mar 23, 2026

@kcreddy kcreddy left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice!
Did you use any script?

@efd6

efd6 commented Mar 25, 2026

Copy link
Copy Markdown
Contributor Author

No, I asked Claude to do it.

efd6 added 3 commits March 26, 2026 06:37
The enable_request_tracer manifest variable must declare
default: false when using the v8.15+ tracer configuration
syntax. Without it the variable has no default and the tracer
block in the agent template is not safely configured.
This adds support for request trace deletion for integration using input
versions of CEL or HTTPJSON that support the feature.
@elasticmachine

Copy link
Copy Markdown

💚 Build Succeeded

History

cc @efd6

@efd6
efd6 merged commit acb95eb into elastic:main Mar 25, 2026
9 checks passed
@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package authentik - 1.8.0 containing this change is available at https://epr.elastic.co/package/authentik/1.8.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package bitdefender - 2.8.0 containing this change is available at https://epr.elastic.co/package/bitdefender/2.8.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package checkpoint_harmony_endpoint - 1.2.0 containing this change is available at https://epr.elastic.co/package/checkpoint_harmony_endpoint/1.2.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package cisco_duo - 2.9.0 containing this change is available at https://epr.elastic.co/package/cisco_duo/2.9.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package claroty_ctd - 1.2.0 containing this change is available at https://epr.elastic.co/package/claroty_ctd/1.2.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package digital_guardian - 1.8.0 containing this change is available at https://epr.elastic.co/package/digital_guardian/1.8.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package entro - 0.2.0 containing this change is available at https://epr.elastic.co/package/entro/0.2.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package eset_protect - 2.1.0 containing this change is available at https://epr.elastic.co/package/eset_protect/2.1.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package first_epss - 1.2.0 containing this change is available at https://epr.elastic.co/package/first_epss/1.2.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package miniflux - 1.0.1 containing this change is available at https://epr.elastic.co/package/miniflux/1.0.1/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package spycloud - 1.6.0 containing this change is available at https://epr.elastic.co/package/spycloud/1.6.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package swimlane - 0.4.2 containing this change is available at https://epr.elastic.co/package/swimlane/0.4.2/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package sysdig - 2.3.0 containing this change is available at https://epr.elastic.co/package/sysdig/2.3.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package ti_anomali - 2.6.1 containing this change is available at https://epr.elastic.co/package/ti_anomali/2.6.1/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package ti_crowdstrike - 2.7.0 containing this change is available at https://epr.elastic.co/package/ti_crowdstrike/2.7.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package ti_custom - 1.4.0 containing this change is available at https://epr.elastic.co/package/ti_custom/1.4.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package ti_opencti - 2.13.0 containing this change is available at https://epr.elastic.co/package/ti_opencti/2.13.0/

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Package withsecure_elements - 0.2.0 containing this change is available at https://epr.elastic.co/package/withsecure_elements/0.2.0/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bugfix Pull request that fixes a bug issue enhancement New feature or request Integration:authentik authentik Integration:bitdefender BitDefender Integration:checkpoint_harmony_endpoint Check Point Harmony Endpoint Integration:cisco_duo Cisco Duo Integration:claroty_ctd Claroty CTD Integration:digital_guardian Digital Guardian Integration:entro Entro Integration:eset_protect ESET PROTECT Integration:first_epss First EPSS (Community supported) Integration:miniflux Miniflux RSS reader Integration:spycloud SpyCloud Enterprise Protection (Partner supported) Integration:swimlane Swimlane Turbine (Community supported) Integration:sysdig Sysdig Integration:ti_anomali Anomali ThreatStream Integration:ti_crowdstrike CrowdStrike Falcon Intelligence Integration:ti_custom Custom Threat Intelligence Integration:ti_opencti OpenCTI Integration:withsecure_elements WithSecure Elements (Community supported) Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations]

4 participants