Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Timestamps not present when uploaded to elastic #1091

Open
grizzlycode opened this issue Jun 9, 2023 · 1 comment
Open

Timestamps not present when uploaded to elastic #1091

grizzlycode opened this issue Jun 9, 2023 · 1 comment
Assignees
Labels
bug Something isn't working documentation Improvements or additions to documentation

Comments

@grizzlycode
Copy link

Describe the bug
A clear and concise description of what the bug is.

Timestamps are not showing up when imported into Elasticsearch.

Step to Reproduce
Steps to reproduce the behavior:

I tried with two different versions of the elasticsearch stack and they had different results. Also note the directions to import are slightly different in Kibana 8.8.8 as the GUI has changed for "Override Settings" section.

Elasticsearch stack 7.17.7 (SOF-ELK)

I followed the guide on this Github to import a Haybusa CSV file into Elasticearch. It imports the data however, the "Timestamp" field is not present in the results. The timestamp field missing breaks functionality and usefulness of imported data.

Elasticsearch stack 8.8.8

The data imports however, it is not visible in Discover or Dashboard.

Expected behavior
A clear and concise description of what you expected to happen.

CSV imported with timestamps. Able to view data in Discover and associated Dashboards with timestamps.

  • OS: Windows 10 Version 21H2
  • hayabusa version v2.5.1 64bit Windows
@grizzlycode grizzlycode added the bug Something isn't working label Jun 9, 2023
@YamatoSecurity YamatoSecurity self-assigned this Jun 9, 2023
@YamatoSecurity YamatoSecurity added the documentation Improvements or additions to documentation label Jun 9, 2023
@YamatoSecurity
Copy link
Collaborator

@grizzlycode Thanks for letting us know. I'll try to update the Elastic import documents.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working documentation Improvements or additions to documentation
Projects
None yet
Development

No branches or pull requests

2 participants