Closed jowg-amazon closed 1 week ago
Request
POST _plugins/_security_analytics/threat_intel/source/_search
{
"query": {
"match_all": {}
}
}
Response
{
"took": 15,
"timed_out": false,
"_shards": {
"total": 1,
"successful": 1,
"skipped": 0,
"failed": 0
},
"hits": {
"total": {
"value": 1,
"relation": "eq"
},
"max_score": 0.05715841,
"hits": [
{
"_index": ".opensearch-sap--job",
"_id": "byzUNpABxKcgMID9ZDxA",
"_version": 8,
"_seq_no": 7,
"_primary_term": 1,
"_score": 0.05715841,
"_source": {
"source_config": {
"version": 8,
"name": "my_custom_feed",
"format": "STIX2",
"type": "S3_CUSTOM",
"description": null,
"created_by_user": null,
"source": {
"s3": {
"bucket_name": "threat-intel-s3-test-bucket",
"object_key": "bd",
"region": "us-west-2",
"role_arn": "arn:aws:iam::540654354201:role/threat_intel_s3_test_role"
}
},
"created_at": 1718906807360,
"enabled_time": 1718906807360,
"last_update_time": 1718906897379,
"schedule": {
"interval": {
"start_time": 1717097122,
"period": 1,
"unit": "Minutes"
}
},
"state": "AVAILABLE",
"refresh_type": "FULL",
"last_refreshed_time": 1718906807677,
"last_refreshed_user": null,
"enabled": true,
"ioc_types": [
"ip"
]
}
}
}
]
}
}
Description
Changes the search source config request type to take in a searchSourceBuilder so that the search request can be built in the service layer
Issues Resolved
[List any issues this PR will resolve]
Check List
By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license. For more information on following Developer Certificate of Origin and signing off your commits, please check here.