Open e40pud opened 1 year ago
Pinging @elastic/security-detections-response (Team:Detections and Resp)
Pinging @elastic/security-solution (Team: SecuritySolution)
@marshallmain did your work utilize these scripts at all? Wondering if these enhancements now exist in your scripts.
Describe the feature:
In 8.10 we added scripts to allow us to generate huge amount of fields in huge amount of indices with the ability to randomly make some of the fields unmapped. This helps security solution team to test UI (e.g. rule's exceptions page) where we use Field Caps which can be slow in certain cases.
Improvements:
@michaelolo24 suggested a few improvements which will make scripts more handy. Here is the summary of those:
mappings:load
into themappings:generate
script thereby just auto-loading it after it's created. To replicate the currentmappings:generate
behavior, we can then provide an arg like--mappings-only
or similar to create the mappings without loading it.--numDocs
to autogenerate docs with the fields from the mappings populated.