Documentation
¶
Overview ¶
Package correlationuc orchestrates durable, two-phase event-time correlation.
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
This section is empty.
Types ¶
type IncidentNotifier ¶
type IncidentRecorder ¶
type RiskReassessor ¶
type Service ¶
type Service struct {
// contains filtered or unexported fields
}
func NewService ¶
func NewService(source ports.CorrelationDetectionSource, provenance ports.CorrelationProvenanceSource, timeline ports.EndpointTimelineStore, state ports.CorrelationStateStore, incidents IncidentRecorder, reassessor RiskReassessor, cfg correlation.Config, audit ports.AuditLogger, now func() time.Time) (*Service, error)
func (*Service) CorrelateEngagement ¶
func (s *Service) CorrelateEngagement(ctx context.Context, actor string, engagementID shared.ID) (Result, error)
CorrelateEngagement performs exactly one bounded step. Source pages are only materialized; incident output is exclusively produced by the globally event-time ordered consume phase.
func (*Service) SetNotifier ¶
func (s *Service) SetNotifier(n IncidentNotifier)
func (*Service) SetTransactionRunner ¶
func (s *Service) SetTransactionRunner(t ports.TenantTransactionRunner)
Click to show internal directories.
Click to hide internal directories.