elastic / integrations

Elastic Integrations
https://www.elastic.co/integrations
Other
193 stars 414 forks source link

KSPM integration Indexes not populate event.ingested field #9446

Open janniten opened 4 months ago

janniten commented 4 months ago

Hello, Recently I've added the KSPM integration to one of our policies. Later, when monitoring the execution of security rules I found some rules with warnings due to the fact that the index logs-cloud_security.scores-default does not have the event.ingested field

image

image

willemdh commented 4 months ago

Same for CSPM