Add shadow security finding inbox
CI / Rust checks (push) Canceled after 0s
CI / Docs and registry checks (push) Canceled after 0s
CI / Smoke checks (push) Canceled after 0s
Coverage / Coverage baseline (push) Canceled after 0s
Security / Cargo audit (push) Canceled after 0s
Security / Cargo deny (push) Canceled after 0s
Security / Secret pattern check (push) Canceled after 0s
Security / Dependency review (push) Canceled after 0s

This commit is contained in:
igor04091968
2026-07-01 06:12:08 +03:00
parent fe87c85a31
commit 757fd3125d
27 changed files with 5524 additions and 19 deletions
+3
View File
@@ -66,6 +66,9 @@ File 1C + reglog + host telemetry
- `grafana/provisioning/dashboards/files/1c-telemetry-board.json` — telemetry dashboard по состоянию файловых баз, reglog growth, busy markers и host load.
- `detections/build_entity_timeline.sql` — сборка единого timeline слоя.
- `detections/open_cases_from_detections.sql` — шаблон открытия cases из detections.
- `security/security_finding_inbox.sql` — schema Security Finding Inbox:
подозрительные станции, raw finding evidence, workflow/executor events и
latest-state view для DetMir Portal.
- `ops/etl-cron.example` — legacy cron example; production использует
`aw-1c-ingest.timer`.
- `ops/retention-policy.md` — минимальная retention policy.