Skip to content

Conversation

@brijesh-elastic
Copy link
Collaborator

@brijesh-elastic brijesh-elastic commented Dec 22, 2025

Proposed commit message

ti_rapid7_threat_command: don't update fleet health status to degraded pagination completes

system tests were skipped for the alert data stream due to the fleet health status being incorrectly
set to DEGRADED when an array of strings is returned in the response. (see (beats issue)[1])

This change bumps minimum Kibana version to ^8.19.4 || ~9.0.7 || ^9.1.4 and adds
`do_not_log_failure: true` in set transforms to avoid updating
fleet health status to degraded.

[1] https://github.com/elastic/beats/issues/48254

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

How to test this PR locally

  • Clone integrations repo.
  • Install elastic package locally.
  • Start elastic stack using elastic-package.
  • Move to integrations/packages/ti_rapid7_threat_command directory.
  • Run the following command to run tests.

elastic-package test

Related issues

@brijesh-elastic brijesh-elastic self-assigned this Dec 22, 2025
@brijesh-elastic brijesh-elastic added documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. enhancement New feature or request Integration:ti_rapid7_threat_command Rapid7 Threat Command (Partner supported) Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] Team:Sit-Crest Crest developers on the Security Integrations team [elastic/sit-crest-contractors] labels Dec 22, 2025
@brijesh-elastic brijesh-elastic marked this pull request as ready for review December 26, 2025 04:57
@brijesh-elastic brijesh-elastic requested a review from a team as a code owner December 26, 2025 04:57
@elasticmachine
Copy link

Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

This was referenced Dec 26, 2025
@elastic-vault-github-plugin-prod

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

@elasticmachine
Copy link

💚 Build Succeeded

History

cc @brijesh-elastic

@brijesh-elastic brijesh-elastic merged commit b63084e into elastic:main Dec 29, 2025
8 checks passed
@elastic-vault-github-plugin-prod

Package ti_rapid7_threat_command - 2.7.0 containing this change is available at https://epr.elastic.co/package/ti_rapid7_threat_command/2.7.0/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. enhancement New feature or request Integration:ti_rapid7_threat_command Rapid7 Threat Command (Partner supported) Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] Team:Sit-Crest Crest developers on the Security Integrations team [elastic/sit-crest-contractors]

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants