[SIEMINT-72] DDS: Suricata Integration
What does this PR do?
PR for a new integration Suricata 1.0.0
Additional Notes
-- OOTB detection rules JSON would be shared separately with the required teams as a part of separate repository . -- Since during the standard attribute remapping we are not preserving the source attributes as per suggested best practices, it would result in filters using these standard attributes populating the values of other integrations as well as per current datadog behaviour.
Review checklist (to be filled by reviewers)
- [ ] Feature or bugfix MUST have appropriate tests (unit, integration, e2e)
- [ ] Changelog entries must be created for modifications to shipped code
- [ ] Add the
qa/skip-qalabel if the PR doesn't need to be tested during QA. - [ ] If you need to backport this PR to another branch, you can add the
backport/<branch-name>label to the PR and it will automatically open a backport PR once this one is merged
Created Jira card for Docs Team editorial review.
Putting screenshot of logs I tested, looks good to me. I let you double check @tirthrajchaudhari-crest
Putting screenshot of logs I tested, looks good to me. I let you double check @tirthrajchaudhari-crest
Hi @audesikorav , I have checked the tested logs for pipeline, looks good to me as well
Does this PR look good to merge?
This PR looks good however, the dashboards need to be updated to align with the Datadog dashboard style.
This PR looks good however, the dashboards need to be updated to align with the Datadog dashboard style.
Hi Jason, We have updated the dasboaards to align with Datadog dashboard style.