Skip to content

Commit 66d1c83

Browse files
committed
Merge remote-tracking branch 'origin/main' into fix/cre-2025-0026
2 parents 712cad8 + d53a7bd commit 66d1c83

File tree

79 files changed

+2574
-24
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

79 files changed

+2574
-24
lines changed

rules/cre-2024-0021/keda-nil-pointer.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@ rules:
4040
set:
4141
window: 5s
4242
event:
43-
source: cre.log.keda-operator.2.*
43+
source: cre.log.keda-operator
4444
match:
4545
- value: "ResolveScaleTargetPodSpec"
4646
- value: "scale_resolvers.go"

rules/cre-2025-0028/opentelemetry-python-fails-to.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ rules:
3838
rule:
3939
set:
4040
event:
41-
source: cre.log.opentelemetry-python
41+
source: cre.log.opentelemetry-collector
4242
window: 5s
4343
match:
4444
- value: ERROR opentelemetry.context:Failed to detach context

rules/cre-2025-0034/datadog-agent-disabled-due-to.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -40,6 +40,6 @@ rules:
4040
rule:
4141
set:
4242
event:
43-
source: cre.log.datadog
43+
source: cre.log.datadog.agent
4444
match:
4545
- regex: .*DD_API_KEY undefined\. Metrics, logs and events will not be reported to DataDog.*

rules/cre-2025-0059/dd-cws-instrumentation-webhook-fails.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -43,7 +43,7 @@ rules:
4343
rule:
4444
set:
4545
event:
46-
source: cre.log.datadog
46+
source: cre.log.datadog.agent
4747
match:
4848
- regex: 'failed to register CWS Instrumentation webhook.*cluster_agent\.service_account_name'
4949

rules/cre-2025-0060/dd-openmetrics-scrape-404.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -37,6 +37,6 @@ rules:
3737
rule:
3838
set:
3939
event:
40-
source: cre.log.datadog
40+
source: cre.log.datadog.agent
4141
match:
4242
- regex: "Error running check:.*http://[0-9.]+:7801/metrics: 404 Client Error: Not Found for url: http://[0-9.]+:7801/metrics"

rules/cre-2025-0069/kubernetes-fsgroup-nfs-ignored.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -49,7 +49,7 @@ rules:
4949
set:
5050
window: 5s
5151
event:
52-
source: cre.k8s.manifest
52+
source: cre.prequel.kubernetes.resource.persistentvolumes.v1
5353
match:
5454
- jq: '.kind == "PersistentVolume" and (.spec.nfs != null)'
5555
- jq: >

rules/cre-2025-0071/coredns-unavailable-dns-outage.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -53,6 +53,6 @@ rules:
5353
rule:
5454
set:
5555
event:
56-
source: cre.log.kubernetes
56+
source: cre.kubernetes
5757
match:
5858
- regex: "Scaled down replica set coredns-.+ from [1-9]+ to 0|Stopping container coredns|Readiness probe failed.+connection refused"

rules/cre-2025-0088/nats-slow-consumer-concise.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -47,7 +47,7 @@ rules:
4747
rule:
4848
set:
4949
event:
50-
source: cre.log.nats.jetstream
50+
source: cre.log.nats
5151
match:
5252
- regex: '(?i)jetstream\s+failed\s+to\s+store.*maximum\s+bytes\s+exceeded'
5353
count: 1

rules/cre-2025-0090/loki-log-line-long.yaml

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -46,9 +46,11 @@ rules:
4646
- grafana
4747
references:
4848
- "https://grafana.com/docs/grafana-cloud/send-data/logs/troubleshoot/#line-too-long"
49+
impactScore: 5
50+
mitigationScore: 5
4951
rule:
5052
set: # Using 'set' for single event matching, as it's a single log line detection
5153
event:
52-
source: Alloy log
54+
source: cre.log.alloy
5355
match:
5456
- regex: level=error(.+)final error sending batch(.+)component_id=loki\.write\.endpoint(.+)error(.+)server returned HTTP status 400 Bad Request(.+)Max entry size(.+)exceeded for stream

rules/cre-2025-0099/redpanda-memory-startup-crash.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -61,7 +61,7 @@ rules:
6161
sequence:
6262
window: "120s"
6363
event:
64-
source: application-logs
64+
source: cre.log.redpanda
6565
origin: true
6666
order:
6767
- permission_failures

0 commit comments

Comments
 (0)