Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add file.fork_name to ECS #1288

Merged
merged 12 commits into from
Jul 13, 2021
Merged

Add file.fork_name to ECS #1288

merged 12 commits into from
Jul 13, 2021

Conversation

rw-access
Copy link
Contributor

@rw-access rw-access commented Mar 4, 2021

Resolves #1285

Added file.fork_name to ECS.

@ebeahan
Copy link
Member

ebeahan commented Jul 12, 2021

@rw-access Is this addition still something you want to move forward on?

@rw-access
Copy link
Contributor Author

Revived the PR and moving from draft to ready for review

@rw-access rw-access marked this pull request as ready for review July 13, 2021 00:03
Copy link
Member

@ebeahan ebeahan left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

One note about the changelog entry, but otherwise LGTM!

I merged #1509 this morning which changed the version in the master branch, and it's the cause of the merge conflicts.

Pulling in those changes and re-running make should clear it up.

@ebeahan ebeahan merged commit d68ee31 into elastic:master Jul 13, 2021
ebeahan pushed a commit to ebeahan/ecs that referenced this pull request Jul 13, 2021
* Add file.fork_name

* Add generated code

* Add comma

Co-authored-by: Eric Beahan <[email protected]>

* Add note to NTFS

Co-authored-by: Eric Beahan <[email protected]>

* Update CHANGELOG.next.md

* Fix comma

* Re-run make generate

* make experimental

* Rearrange changelog entry

Co-authored-by: Eric Beahan <[email protected]>
# Conflicts:
#	experimental/generated/csv/fields.csv
#	generated/csv/fields.csv
ebeahan added a commit that referenced this pull request Jul 13, 2021
* Add file.fork_name

* Add generated code

* Add comma

Co-authored-by: Eric Beahan <[email protected]>

* Add note to NTFS

Co-authored-by: Eric Beahan <[email protected]>

* Update CHANGELOG.next.md

* Fix comma

* Re-run make generate

* make experimental

* Rearrange changelog entry

Co-authored-by: Ross Wolf <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Add Alternate Data Stream Name to File Events
3 participants