[ 
https://issues.apache.org/jira/browse/EAGLE-239?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15240488#comment-15240488
 ] 

ASF GitHub Bot commented on EAGLE-239:
--------------------------------------

Github user qingwen220 commented on the pull request:

    https://github.com/apache/incubator-eagle/pull/145#issuecomment-209733102
  
    **Previous**
    ```
    {  
       "timestamp":1460542328725,
       "tags":{  
          "site":"sandbox",
          "alertSource":"30...@sandbox.hortonworks.com",
          "application":"hdfsAuditLog",
          "sourceStreams":"hdfsAuditLogEventStream",
          "policyId":"testHDFS",
          "alertExecutorId":"hdfsAuditLogAlertExecutor"
       },
       
"alertContext":"{\"site\":\"sandbox\",\"allowed\":\"true\",\"application\":\"hdfsAuditLog\",\"host\":\"10.115.59.58\",\"policyDetailUrl\":\"http://localhost:9099/eagle-service/#/dam/policyDetail?policy=testHDFS&site=sandbox&executor=hdfsAuditLogAlertExecutor\",\"securityZone\":\"NA\",\"dst\":\"NA\",\"alertMessage\":\"The
 Policy \\\"testHDFS\\\" has been detected with the below information: 
timestamp=\\\"1438307675161\\\" allowed=\\\"true\\\" cmd=\\\"open\\\" 
host=\\\"10.115.59.58\\\" sensitivityType=\\\"NA\\\" securityZone=\\\"NA\\\" 
src=\\\"/tmp/private\\\" dst=\\\"NA\\\" user=\\\"b_pcatalogs\\\" 
\",\"alertEvent\":\"timestamp=\\\"1438307675161\\\" allowed=\\\"true\\\" 
cmd=\\\"open\\\" host=\\\"10.115.59.58\\\" sensitivityType=\\\"NA\\\" 
securityZone=\\\"NA\\\" src=\\\"/tmp/private\\\" dst=\\\"NA\\\" 
user=\\\"b_pcatalogs\\\" \",\"alertTimestamp\":\"2016-04-13 
10:12:08\",\"timestamp\":\"1438307675161\",\"cmd\":\"open\",\"alertDetailUrl\":\"http://localhost:9099/eagle-service/#/dam/alertDetail/tv4MJX%5F%5F%5Fqvw5LBqlXeMWIuAAAjHMWiXlB00YOsfe8qEr9wdADXfR28vvscgmSntu59uW1ykBVB3iZNS\",\"sourceStreams\":\"hdfsAuditLogEventStream\",\"sensitivityType\":\"NA\",\"policyId\":\"testHDFS\",\"src\":\"/tmp/private\",\"user\":\"b_pcatalogs\"}";
       "serializeVerbose":true
    }
    ```
    
    **Current**
    ```
    {  
       "timestamp":1460542328725,
       "tags":{  
          "site":"sandbox",
          "alertSource":"30...@sandbox.hortonworks.com",
          "application":"hdfsAuditLog",
          "sourceStreams":"hdfsAuditLogEventStream",
          "policyId":"testHDFS",
          "alertExecutorId":"hdfsAuditLogAlertExecutor"
       },
       "alertContext":{  
          "properties":{  
             "allowed":"true",
             "site":"sandbox",
             "application":"hdfsAuditLog",
             "host":"10.115.59.58",
             
"policyDetailUrl":"http://localhost:9099/eagle-service/#/dam/policyDetail?policy=testHDFS&site=sandbox&executor=hdfsAuditLogAlertExecutor";,
             "securityZone":"NA",
             "dst":"NA",
             "alertMessage":"The Policy \"testHDFS\" has been detected with the 
below information: timestamp=\"1438307675161\" allowed=\"true\" cmd=\"open\" 
host=\"10.115.59.58\" sensitivityType=\"NA\" securityZone=\"NA\" 
src=\"/tmp/private\" dst=\"NA\" user=\"b_pcatalogs\" ",
             "alertEvent":"timestamp=\"1438307675161\" allowed=\"true\" 
cmd=\"open\" host=\"10.115.59.58\" sensitivityType=\"NA\" securityZone=\"NA\" 
src=\"/tmp/private\" dst=\"NA\" user=\"b_pcatalogs\" ",
             "timestamp":"1438307675161",
             "alertTimestamp":"2016-04-13 10:12:08",
             "cmd":"open",
             
"alertDetailUrl":"http://localhost:9099/eagle-service/#/dam/alertDetail/tv4MJX%5F%5F%5Fqvw5LBqlXeMWIuAAAjHMWiXlB00YOsfe8qEr9wdADXfR28vvscgmSntu59uW1ykBVB3iZNS";,
             "sourceStreams":"hdfsAuditLogEventStream",
             "policyId":"testHDFS",
             "sensitivityType":"NA",
             "src":"/tmp/private",
             "user":"b_pcatalogs"
          }
       }
    }
    
    ```


> Alert list and details are not correctly displayed
> --------------------------------------------------
>
>                 Key: EAGLE-239
>                 URL: https://issues.apache.org/jira/browse/EAGLE-239
>             Project: Eagle
>          Issue Type: Bug
>    Affects Versions: v0.3.0
>            Reporter: Hao Chen
>            Assignee: Jilin, Jiang
>              Labels: front-end
>             Fix For: v0.4.0
>
>         Attachments: alert-detail.png, alert-list.png
>
>
> Detail contents of policy alerts are empty, but the alert entity is
> {code}
> {"meta":{"elapsedms":2,"totalResults":1,"lastTimestamp":0,"firstTimestamp":0},"success":true,"obj":[{"prefix":"hadoop","timestamp":1460439827376,"tags":{"site":"sandbox","alertSource":"57347@LM-SHC-00950798","application":"cassandraQueryLog","sourceStreams":"cassandraQueryLogStream","policyId":"cf_
>  customer_details_and_ ks_ 
> dg_keyspace_policy","hostname":null,"alertExecutorId":"cassandraQueryLogExecutor"},"encodedRowkey":"tv4MJX___qv3ALxPlXeMWPh3G-THMWiXsK8Rgesfe8rGJjw3ADXfR28vvscgmSntlDikFVykBVAKa2NE","alertContext":"{\"site\":\"sandbox\",\"application\":\"cassandraQueryLog\",\"host\":\"/192.168.6.227\",\"ks\":\"dg_keyspace\",\"policyDetailUrl\":\"http://localhost:9099/eagle-service/#/dam/policyDetail?policy=cf_
>  customer_details_and_ ks_ 
> dg_keyspace_policy&site=sandbox&executor=cassandraQueryLogExecutor\",\"masked_columns\":\"bank|ccno|email|ip|name|sal|ssn|tel|url\",\"type\":\"CQL_SELECT\",\"alertMessage\":\"The
>  Policy \\\"cf_ customer_details_and_ ks_ dg_keyspace_policy\\\" has been 
> detected with the below information: timestamp=\\\"1455574202864\\\" 
> operation=\\\"CQL_SELECT\\\" category=\\\"QUERY\\\" 
> host=\\\"/192.168.6.227\\\" source=\\\"/192.168.6.227\\\" 
> ks=\\\"dg_keyspace\\\" other_columns=\\\"id|npi\\\" 
> masked_columns=\\\"bank|ccno|email|ip|name|sal|ssn|tel|url\\\" 
> type=\\\"CQL_SELECT\\\" user=\\\"jaspa\\\" cf=\\\"customer_details\\\" 
> \",\"alertEvent\":\"timestamp=\\\"1455574202864\\\" 
> operation=\\\"CQL_SELECT\\\" category=\\\"QUERY\\\" 
> host=\\\"/192.168.6.227\\\" source=\\\"/192.168.6.227\\\" 
> ks=\\\"dg_keyspace\\\" other_columns=\\\"id|npi\\\" 
> masked_columns=\\\"bank|ccno|email|ip|name|sal|ssn|tel|url\\\" 
> type=\\\"CQL_SELECT\\\" user=\\\"jaspa\\\" cf=\\\"customer_details\\\" 
> \",\"alertTimestamp\":\"2016-04-12 
> 05:43:47\",\"timestamp\":\"1455574202864\",\"operation\":\"CQL_SELECT\",\"category\":\"QUERY\",\"alertDetailUrl\":\"http://localhost:9099/eagle-service/#/dam/alertDetail/tv4MJX%5F%5F%5Fqv3ALxPlXeMWPh3G%2DTHMWiXsK8Rgesfe8rGJjw3ADXfR28vvscgmSntlDikFVykBVAKa2NE\",\"source\":\"/192.168.6.227\",\"sourceStreams\":\"cassandraQueryLogStream\",\"policyId\":\"cf_
>  customer_details_and_ ks_ 
> dg_keyspace_policy\",\"other_columns\":\"id|npi\",\"cf\":\"customer_details\",\"user\":\"jaspa\"}"}],"type":"org.apache.eagle.alert.entity.AlertAPIEntity"}
> {code}



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to