-
Notifications
You must be signed in to change notification settings - Fork 25
Open
Labels
enhancementNew feature or requestNew feature or requestschemaschema related issueschema related issue
Description
Currently, when one uses the AWS WAF Integrations, the Index is considered to have the following mapping and the dashboard, visualizations are created based on that.
However, if we check the sample logs of the WAF then it seems to be quite different from the fields defined in the above mapping and fields like httpRequest
are not within the aws.waf
object. So, if one tries to send the default WAF logs to the OpenSearch, then this native integration cannot be used correctly.
Would like to propose that either an option to define the initial mapping of the Index should be provided [or the mapping should fetched when the Index is selected] or consider updating the schema of the Integration which matches the schema of the default WAF logs.
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or requestschemaschema related issueschema related issue