From 8c3cf73163d4d8351069302d44f23d7e5c6660b3 Mon Sep 17 00:00:00 2001 From: ruflin Date: Mon, 23 Jul 2018 13:36:05 +0200 Subject: [PATCH] Fix Filebeat tests with new region_iso_code field In https://github.com/elastic/elasticsearch/pull/31669 the field `region_iso_code` was added to the geoip processor. Because of this test broke with the most recent release of Elasticsearch as the events contain an undocumented field. --- filebeat/docs/fields.asciidoc | 70 +++++++++++++++++++ filebeat/include/fields.go | 2 +- .../module/apache2/access/_meta/fields.yml | 5 +- filebeat/module/auditd/log/_meta/fields.yml | 4 ++ .../startup/test/test.log-expected.json | 4 +- filebeat/module/iis/access/_meta/fields.yml | 4 ++ .../iis/access/test/test.log-expected.json | 2 + filebeat/module/iis/error/_meta/fields.yml | 4 ++ .../iis/error/test/test.log-expected.json | 3 + .../test/state-change-1.1.0.log-expected.json | 22 +++--- filebeat/module/nginx/access/_meta/fields.yml | 5 +- .../nginx/access/test/test.log-expected.json | 3 + filebeat/module/system/auth/_meta/fields.yml | 5 +- .../system/auth/test/test.log-expected.json | 1 + .../module/traefik/access/_meta/fields.yml | 4 ++ .../access/test/test.log-expected.json | 1 + testing/environments/args.yml | 2 +- 17 files changed, 123 insertions(+), 18 deletions(-) diff --git a/filebeat/docs/fields.asciidoc b/filebeat/docs/fields.asciidoc index 615b55be10f..62389c539b3 100644 --- a/filebeat/docs/fields.asciidoc +++ b/filebeat/docs/fields.asciidoc @@ -305,6 +305,16 @@ type: keyword The city name. +-- + +*`apache2.access.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [float] @@ -556,6 +566,16 @@ type: geo_point The longitude and latitude. +-- + +*`auditd.log.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [[exported-fields-beat]] @@ -2000,6 +2020,16 @@ type: keyword The city name. +-- + +*`iis.access.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [float] @@ -2166,6 +2196,16 @@ type: keyword The city name. +-- + +*`iis.error.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [[exported-fields-kafka]] @@ -3353,6 +3393,16 @@ type: keyword The city name. +-- + +*`nginx.access.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [float] @@ -3890,6 +3940,16 @@ type: geo_point The longitude and latitude. +-- + +*`system.auth.ssh.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- [float] @@ -4333,6 +4393,16 @@ type: keyword The city name. +-- + +*`traefik.access.geoip.region_iso_code`*:: ++ +-- +type: keyword + +Region ISO code. + + -- *`traefik.access.request_count`*:: diff --git a/filebeat/include/fields.go b/filebeat/include/fields.go index 50090ec4e8d..b8576ce4a90 100644 --- a/filebeat/include/fields.go +++ b/filebeat/include/fields.go @@ -31,5 +31,5 @@ func init() { // Asset returns asset data func Asset() string { - return "" + return "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" } diff --git a/filebeat/module/apache2/access/_meta/fields.yml b/filebeat/module/apache2/access/_meta/fields.yml index be09717198c..c73354f629e 100644 --- a/filebeat/module/apache2/access/_meta/fields.yml +++ b/filebeat/module/apache2/access/_meta/fields.yml @@ -112,4 +112,7 @@ type: keyword description: > The city name. - + - name: region_iso_code + type: keyword + description: > + Region ISO code. diff --git a/filebeat/module/auditd/log/_meta/fields.yml b/filebeat/module/auditd/log/_meta/fields.yml index 9fff5ca6a7d..55607c9fa44 100644 --- a/filebeat/module/auditd/log/_meta/fields.yml +++ b/filebeat/module/auditd/log/_meta/fields.yml @@ -77,3 +77,7 @@ type: geo_point description: > The longitude and latitude. + - name: region_iso_code + type: keyword + description: > + Region ISO code. diff --git a/filebeat/module/icinga/startup/test/test.log-expected.json b/filebeat/module/icinga/startup/test/test.log-expected.json index bfbe2f0d06a..2f8cd6198c4 100644 --- a/filebeat/module/icinga/startup/test/test.log-expected.json +++ b/filebeat/module/icinga/startup/test/test.log-expected.json @@ -1,6 +1,6 @@ [ { - "@timestamp": "2018-06-27T06:22:36.186Z", + "@timestamp": "2018-07-23T11:50:38.896Z", "fileset.module": "icinga", "fileset.name": "startup", "icinga.startup.facility": "cli", @@ -11,7 +11,7 @@ "prospector.type": "log" }, { - "@timestamp": "2018-06-27T06:22:36.186Z", + "@timestamp": "2018-07-23T11:50:38.896Z", "fileset.module": "icinga", "fileset.name": "startup", "icinga.startup.facility": "cli", diff --git a/filebeat/module/iis/access/_meta/fields.yml b/filebeat/module/iis/access/_meta/fields.yml index c38779f11b7..0a8181fe258 100644 --- a/filebeat/module/iis/access/_meta/fields.yml +++ b/filebeat/module/iis/access/_meta/fields.yml @@ -157,3 +157,7 @@ type: keyword description: > The city name. + - name: region_iso_code + type: keyword + description: > + Region ISO code. diff --git a/filebeat/module/iis/access/test/test.log-expected.json b/filebeat/module/iis/access/test/test.log-expected.json index 7544fbbb01d..78adf0ee379 100644 --- a/filebeat/module/iis/access/test/test.log-expected.json +++ b/filebeat/module/iis/access/test/test.log-expected.json @@ -8,6 +8,7 @@ "iis.access.geoip.country_iso_code": "DE", "iis.access.geoip.location.lat": 52.5167, "iis.access.geoip.location.lon": 13.4, + "iis.access.geoip.region_iso_code": "DE-BE", "iis.access.geoip.region_name": "Land Berlin", "iis.access.method": "GET", "iis.access.port": "80", @@ -73,6 +74,7 @@ "iis.access.geoip.country_iso_code": "DE", "iis.access.geoip.location.lat": 52.5167, "iis.access.geoip.location.lon": 13.4, + "iis.access.geoip.region_iso_code": "DE-BE", "iis.access.geoip.region_name": "Land Berlin", "iis.access.hostname": "example.com", "iis.access.http_version": "1.1", diff --git a/filebeat/module/iis/error/_meta/fields.yml b/filebeat/module/iis/error/_meta/fields.yml index ff48d7407b7..90ff367b836 100644 --- a/filebeat/module/iis/error/_meta/fields.yml +++ b/filebeat/module/iis/error/_meta/fields.yml @@ -71,3 +71,7 @@ type: keyword description: > The city name. + - name: region_iso_code + type: keyword + description: > + Region ISO code. diff --git a/filebeat/module/iis/error/test/test.log-expected.json b/filebeat/module/iis/error/test/test.log-expected.json index 2730859e55b..e565e78cd7b 100644 --- a/filebeat/module/iis/error/test/test.log-expected.json +++ b/filebeat/module/iis/error/test/test.log-expected.json @@ -26,6 +26,7 @@ "iis.error.geoip.country_iso_code": "DE", "iis.error.geoip.location.lat": 52.5167, "iis.error.geoip.location.lon": 13.4, + "iis.error.geoip.region_iso_code": "DE-BE", "iis.error.geoip.region_name": "Land Berlin", "iis.error.http_version": "1.1", "iis.error.method": "GET", @@ -50,6 +51,7 @@ "iis.error.geoip.country_iso_code": "DE", "iis.error.geoip.location.lat": 52.5167, "iis.error.geoip.location.lon": 13.4, + "iis.error.geoip.region_iso_code": "DE-BE", "iis.error.geoip.region_name": "Land Berlin", "iis.error.http_version": "2.0", "iis.error.method": "GET", @@ -74,6 +76,7 @@ "iis.error.geoip.country_iso_code": "DE", "iis.error.geoip.location.lat": 52.5167, "iis.error.geoip.location.lon": 13.4, + "iis.error.geoip.region_iso_code": "DE-BE", "iis.error.geoip.region_name": "Land Berlin", "iis.error.queue_name": "-", "iis.error.reason_phrase": "Timer_MinBytesPerSecond", diff --git a/filebeat/module/kafka/log/test/state-change-1.1.0.log-expected.json b/filebeat/module/kafka/log/test/state-change-1.1.0.log-expected.json index 263ec3871dd..be011b17d23 100644 --- a/filebeat/module/kafka/log/test/state-change-1.1.0.log-expected.json +++ b/filebeat/module/kafka/log/test/state-change-1.1.0.log-expected.json @@ -1,15 +1,15 @@ [ { - "@timestamp": "2018-07-16T10:17:06.489Z", - "fileset.name": "log", - "fileset.module": "kafka", - "kafka.log.message": "Cached leader info PartitionState(controllerEpoch=25, leader=-1, leaderEpoch=15, isr=[10], zkVersion=15, replicas=[10], offlineReplicas=[10]) for partition __consumer_offsets-16 in response to UpdateMetadata request sent by controller 20 epoch 25 with correlation id 8", - "kafka.log.component": "Broker id=30", - "kafka.log.class": "state.change.logger", - "kafka.log.level": "TRACE", - "message": "[2018-07-16 10:17:06,489] TRACE [Broker id=30] Cached leader info PartitionState(controllerEpoch=25, leader=-1, leaderEpoch=15, isr=[10], zkVersion=15, replicas=[10], offlineReplicas=[10]) for partition __consumer_offsets-16 in response to UpdateMetadata request sent by controller 20 epoch 25 with correlation id 8 (state.change.logger)", - "offset": 0, - "input.type": "log", + "@timestamp": "2018-07-16T10:17:06.489Z", + "fileset.module": "kafka", + "fileset.name": "log", + "input.type": "log", + "kafka.log.class": "state.change.logger", + "kafka.log.component": "Broker id=30", + "kafka.log.level": "TRACE", + "kafka.log.message": "Cached leader info PartitionState(controllerEpoch=25, leader=-1, leaderEpoch=15, isr=[10], zkVersion=15, replicas=[10], offlineReplicas=[10]) for partition __consumer_offsets-16 in response to UpdateMetadata request sent by controller 20 epoch 25 with correlation id 8", + "message": "[2018-07-16 10:17:06,489] TRACE [Broker id=30] Cached leader info PartitionState(controllerEpoch=25, leader=-1, leaderEpoch=15, isr=[10], zkVersion=15, replicas=[10], offlineReplicas=[10]) for partition __consumer_offsets-16 in response to UpdateMetadata request sent by controller 20 epoch 25 with correlation id 8 (state.change.logger)", + "offset": 0, "prospector.type": "log" } -] +] \ No newline at end of file diff --git a/filebeat/module/nginx/access/_meta/fields.yml b/filebeat/module/nginx/access/_meta/fields.yml index 38e89be9ddb..a3ea4de961c 100644 --- a/filebeat/module/nginx/access/_meta/fields.yml +++ b/filebeat/module/nginx/access/_meta/fields.yml @@ -119,4 +119,7 @@ type: keyword description: > The city name. - + - name: region_iso_code + type: keyword + description: > + Region ISO code. diff --git a/filebeat/module/nginx/access/test/test.log-expected.json b/filebeat/module/nginx/access/test/test.log-expected.json index 1d8b69e5c70..d169272c44f 100644 --- a/filebeat/module/nginx/access/test/test.log-expected.json +++ b/filebeat/module/nginx/access/test/test.log-expected.json @@ -65,6 +65,7 @@ "nginx.access.geoip.country_iso_code": "DE", "nginx.access.geoip.location.lat": 52.5167, "nginx.access.geoip.location.lon": 13.4, + "nginx.access.geoip.region_iso_code": "DE-BE", "nginx.access.geoip.region_name": "Land Berlin", "nginx.access.http_version": "1.1", "nginx.access.method": "GET", @@ -100,6 +101,7 @@ "nginx.access.geoip.country_iso_code": "DE", "nginx.access.geoip.location.lat": 52.5167, "nginx.access.geoip.location.lon": 13.4, + "nginx.access.geoip.region_iso_code": "DE-BE", "nginx.access.geoip.region_name": "Land Berlin", "nginx.access.http_version": "1.1", "nginx.access.method": "GET", @@ -133,6 +135,7 @@ "nginx.access.geoip.country_iso_code": "US", "nginx.access.geoip.location.lat": 39.772, "nginx.access.geoip.location.lon": -89.6859, + "nginx.access.geoip.region_iso_code": "US-IL", "nginx.access.geoip.region_name": "Illinois", "nginx.access.http_version": "1.1", "nginx.access.method": "GET", diff --git a/filebeat/module/system/auth/_meta/fields.yml b/filebeat/module/system/auth/_meta/fields.yml index 1e94e3dfe08..92fe1689e29 100644 --- a/filebeat/module/system/auth/_meta/fields.yml +++ b/filebeat/module/system/auth/_meta/fields.yml @@ -79,7 +79,10 @@ type: geo_point description: > The longitude and latitude. - + - name: region_iso_code + type: keyword + description: > + Region ISO code. - name: sudo type: group description: > diff --git a/filebeat/module/system/auth/test/test.log-expected.json b/filebeat/module/system/auth/test/test.log-expected.json index 276558f363a..93e792d5a2a 100644 --- a/filebeat/module/system/auth/test/test.log-expected.json +++ b/filebeat/module/system/auth/test/test.log-expected.json @@ -61,6 +61,7 @@ "system.auth.ssh.geoip.country_iso_code": "CN", "system.auth.ssh.geoip.location.lat": 22.5333, "system.auth.ssh.geoip.location.lon": 114.1333, + "system.auth.ssh.geoip.region_iso_code": "CN-44", "system.auth.ssh.geoip.region_name": "Guangdong", "system.auth.ssh.ip": "116.31.116.24", "system.auth.ssh.method": "password", diff --git a/filebeat/module/traefik/access/_meta/fields.yml b/filebeat/module/traefik/access/_meta/fields.yml index 01250f8f706..f205f72a80d 100644 --- a/filebeat/module/traefik/access/_meta/fields.yml +++ b/filebeat/module/traefik/access/_meta/fields.yml @@ -112,6 +112,10 @@ type: keyword description: > The city name. + - name: region_iso_code + type: keyword + description: > + Region ISO code. - name: request_count type: long description: > diff --git a/filebeat/module/traefik/access/test/test.log-expected.json b/filebeat/module/traefik/access/test/test.log-expected.json index d75a0d93a44..623a948a340 100644 --- a/filebeat/module/traefik/access/test/test.log-expected.json +++ b/filebeat/module/traefik/access/test/test.log-expected.json @@ -35,6 +35,7 @@ "traefik.access.geoip.country_iso_code": "DE", "traefik.access.geoip.location.lat": 52.5167, "traefik.access.geoip.location.lon": 13.4, + "traefik.access.geoip.region_iso_code": "DE-BE", "traefik.access.geoip.region_name": "Land Berlin", "traefik.access.http_version": "1.1", "traefik.access.method": "GET", diff --git a/testing/environments/args.yml b/testing/environments/args.yml index db44bdda79b..033b0db0bac 100644 --- a/testing/environments/args.yml +++ b/testing/environments/args.yml @@ -7,4 +7,4 @@ services: args: DOWNLOAD_URL: https://snapshots.elastic.co/downloads ELASTIC_VERSION: 7.0.0-alpha1-SNAPSHOT - CACHE_BUST: 20180501 + CACHE_BUST: 20180723