Aleksandr Maus
d064846416
EQL: Test infrastructure improvements ( #53253 ) ( #53297 )
...
Update CommonEqlRestTestCase code to simplify making changes as requested.
Update EqlActionIT to simplify the test code as requested.
Replace Jackson parser with XContent in EqlActionIT.
Whitelist more EQL tests specs that are now supported.
2020-03-09 14:11:54 -04:00
Aleksandr Maus
b47bffba24
EQL: consistent naming for event type vs event category ( #53073 ) ( #53090 )
...
Related to https://github.com/elastic/elasticsearch/issues/52941
2020-03-04 08:02:38 -05:00
Aleksandr Maus
89ed857c79
EQL: Change request parameter query to filter and rule to query ( #52971 ) ( #53006 )
...
Related to https://github.com/elastic/elasticsearch/issues/52911
2020-03-02 09:26:23 -05:00
Igor Motov
e5b21a3fc6
Add HLRC for EQL search ( #52550 )
...
Adds EQL HLRC client with the search method.
Relates to #51961
2020-02-21 08:44:08 -05:00
Aleksandr Maus
d4f6f38150
EQL: Fix #51541 : [CI] unknown setting [xpack.eql.enabled] in release-tests ( #51699 ) ( #51770 )
...
Fixes #51541
Co-authored-by: Igor Motov <igor@motovs.org>
2020-01-31 15:14:27 -05:00
Aleksandr Maus
d715176c00
Add more Eql REST API validation integration tests, clean up request implementation ( #50822 )
2020-01-27 15:12:48 -05:00
Aleksandr Maus
79875ce4d9
Initial EQL rest API implementation ( #49768 )
2020-01-27 15:11:41 -05:00