Skip to content

[LogsDB] [Subscription basic] [auditd_manager] Failing test daily: system test: default in auditd_manager.auditd #14024

Description

  • Stack version: maximum of either the version used in PR builds or 8.17.0 (GA version for LogsDB index mode)
  • LogsDB: enabled
  • Subscription: basic
  • Package: auditd_manager
  • Failing test: system test: default
  • DataStream: auditd
  • Owners:
    • @elastic/sec-linux-platform

Failure:

test case failed: one or more errors found in mappings in logs-auditd_manager.auditd index template: [0] field "auditd.data.prog_id" is undefined: field definition not found

First build failed: https://buildkite.com/elastic/integrations/builds/26454

Activity

  1. botelastic commented on May 28, 2026

    @botelastic

    Hi! We just realized that we haven't looked into this issue in a while. We're sorry! We're labeling this issue as Stale to make it hit our filters and make sure we get back to it as soon as possible. In the meantime, it'd be extremely helpful if you could take a look at it as well and confirm its relevance. A simple comment with a nice emoji will be enough :+1. Thank you for your contribution!

  2. added
    Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]
    and removed
    Team:Security-Linux PlatformLinux Platform Security team [elastic/sec-linux-platform]
    on Aug 17, 2026
  3. infra-vault-gh-plugin-prod commented on Aug 17, 2026

    @infra-vault-gh-plugin-prod

    Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

  4. self-assigned this
    on Sep 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions