File tree Expand file tree Collapse file tree 1 file changed +0
-16
lines changed
uncoder-core/app/translator/mappings/platforms/elasticsearch_esql Expand file tree Collapse file tree 1 file changed +0
-16
lines changed Original file line number Diff line number Diff line change @@ -39,19 +39,3 @@ field_mapping:
39
39
userIdentity.type : aws.cloudtrail.user_identity.type
40
40
userIdentity.userName : user.name
41
41
vpcEndpointId : aws.cloudtrail.vpc_endpoint_id
42
- overrides :
43
- - field : event.outcome
44
- value : failure
45
- regexes :
46
- - (\(\(aws.cloudtrail.error_message.keyword:.* event.action:\"ConsoleLogin\"\)\))
47
- - (\(\(aws.cloudtrail.error_code.keyword:.* event.action:\"ConsoleLogin\"\)\))
48
- - (\(\(aws.cloudtrail.error_message.keyword:.* aws.cloudtrail.response_elements.keyword:\*Failure\*\)\))
49
- - (\(\(aws.cloudtrail.error_code.keyword:.* aws.cloudtrail.response_elements.keyword:\*Failure\*\)\))
50
- - (\(\(event.action:\"ConsoleLogin\".* aws.cloudtrail.error_message.keyword:\*\)\))
51
- - (\(\(event.action:\"ConsoleLogin\".* aws.cloudtrail.error_code.keyword:\*\)\))
52
- - (\(\(aws.cloudtrail.response_elements.keyword:\*Failure\*.* aws.cloudtrail.error_message.keyword:\*\)\))
53
- - (\(\(aws.cloudtrail.response_elements.keyword:\*Failure\*.* aws.cloudtrail.error_code.keyword:\*\)\))
54
- - field : event.outcome
55
- value : success
56
- literals :
57
- - ' NOT (event.outcome:failure)'
You can’t perform that action at this time.
0 commit comments