elastic / detection-rules

https://www.elastic.co/guide/en/security/current/detection-engine-overview.html
Other
1.86k stars 469 forks source link

[Meta] Refactor Rule Create and Importer Logic #3557

Open Mikaayenson opened 3 months ago

Mikaayenson commented 3 months ago

Parent Epic (If Applicable)

https://github.com/elastic/security-team/issues/8718

Meta Summary

The create-rule and import-rule CLI commands both use the rule_prompt method. It currently interactively will prompt for any fields missing.

Estimated Time to Complete

1 - 2 sprints

Potential Blockers

None

Tasklist

### Meta Tasks
- [ ] Provide Week 1 Update Comment
- [ ] Provide Week 2 Update or Closeout Comment
- [ ] Refactor `rule_prompt` to handle the requirements mentioned above.
- [ ] Provide test cases for each rule type and features. 
- [ ] Test all rule types supported can be exported from Elastic Security as an ndjson and imported all at once.

Resources / References

botelastic[bot] commented 1 month ago

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

botelastic[bot] commented 1 month ago

This has been closed due to inactivity. If you feel this is an error, please re-open and include a justifying comment.