Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix language and type typo for EQL #61

Merged
merged 2 commits into from
May 19, 2024

Conversation

webhead404
Copy link
Contributor

Fixes #41. The pipeline accounts for EQL as a query language but doesn't import into the SIEM correctly. Changed language from lucene to eql and type of rule from query to eql.

@thomaspatzke
Copy link
Member

Thanks! Please also adapt the now failing test.

@webhead404
Copy link
Contributor Author

Updated the test file and ran the tests successfully!

@thomaspatzke
Copy link
Member

Great, thanks!

@thomaspatzke thomaspatzke merged commit 544863d into SigmaHQ:main May 19, 2024
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Invalid EQL rule type and language
2 participants