Files
sigma-rules/kql
Mika Ayenson 1f015ebe85 1554 update eql schemas to fail validation on text fields (#1866)
* Ensure kql2eql conversion doesnt support `text` fields

* Add unit test cases for`text` not supported in eql

* test `field not recognized` in the rule_validator and output a verbose message.

* use elasticsearch_type_family to lookup text mappings

Co-authored-by: Justin Ibarra <brokensound77@users.noreply.github.com>
2022-03-23 16:22:26 -04:00
..
2021-03-03 22:12:11 -09:00
2021-03-03 22:12:11 -09:00
2021-03-03 22:12:11 -09:00
2020-06-29 23:05:14 -06:00