elastic / elastic/integrations
[Subscription basic] [cloudflare_logpush] Failing test daily: policy test: test-aws-s3.yml in cloudflare_logpush.gateway_http
- Dominant language
- Handlebars
- Stars
- 333
- Forks
- 647
- Avg merge
- 2d 17h
- Merged PRs (30d)
- 225
Description
- Stack version: Same as in Pull Request builds
- Subscription: basic
- Package: cloudflare_logpush
- Failing test: policy test: test-aws-s3.yml
- DataStream: gateway_http
- Owners:
- @elastic/security-service-integrations
- @elastic/sit-crest-contractors
Error:
```
cleanup failed: there was an apply error: could not delete policy "test-aws-s3-19095": could not delete policy; API status code = 400; response body = {"statusCode":400,"error":"Bad Request","message":"KQLSyntaxError: Expected \")\" but \"N\" found.\ningest-package-policies.attributes.secret_references.id: (_v87RZ8Bg9k13wUkTNot or AP87RZ8Bg9k13wUkTNsu or __87RZ8Bg9k13wUkTNot)\n---------------------------------------------------------------------------^: Bad Request"}
```
First build failed: https://buildkite.com/elastic/integrations/builds/45770
Contributor guide
Research direction
Start with the failing policy test in cloudflare_logpush.gateway_http, specifically test-aws-s3.yml, and compare its behavior with Buildkite build 45770. Trace the cleanup failure and KQLSyntaxError involving secret_references.id; done means the test completes without the policy deletion error.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- yaml
- Domain
- testing
- Issue type
- Bug
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Quiet
- Clarity
- Mostly clear
- Newbie friendliness
- 48/100