Remove passwords from soctopus templates since these are the basis for elastalert rules, which will use the user/pass at the elastalert global config level

This commit is contained in:
Jason Ertel
2021-06-17 15:51:53 -04:00
parent 0cb4562254
commit afe7ddb480
3 changed files with 0 additions and 18 deletions

View File

@@ -1,13 +1,7 @@
{% set ES = salt['pillar.get']('global:managerip', '') %} {% set ES = salt['pillar.get']('global:managerip', '') %}
{%- set ES_USER = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:user', '') %}
{%- set ES_PASS = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:pass', '') %}
alert: modules.so.playbook-es.PlaybookESAlerter alert: modules.so.playbook-es.PlaybookESAlerter
elasticsearch_host: "{{ ES }}:9200" elasticsearch_host: "{{ ES }}:9200"
{% if salt['pillar.get']('elasticsearch:auth:enabled') is sameas true %}
elasticsearch_user: "{{ ES_USER }}"
elasticsearch_pass: "{{ ES_PASS }}"
{% endif %}
play_title: "" play_title: ""
play_url: "https://{{ ES }}/playbook/issues/6000" play_url: "https://{{ ES }}/playbook/issues/6000"
sigma_level: "" sigma_level: ""

View File

@@ -1,15 +1,9 @@
{% set es = salt['pillar.get']('global:url_base', '') %} {% set es = salt['pillar.get']('global:url_base', '') %}
{%- set ES_USER = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:user', '') %}
{%- set ES_PASS = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:pass', '') %}
alert: alert:
- "modules.so.playbook-es.PlaybookESAlerter" - "modules.so.playbook-es.PlaybookESAlerter"
elasticsearch_host: "{{ es }}:9200" elasticsearch_host: "{{ es }}:9200"
{% if salt['pillar.get']('elasticsearch:auth:enabled') is sameas true %}
elasticsearch_user: "{{ ES_USER }}"
elasticsearch_pass: "{{ ES_PASS }}"
{% endif %}
play_title: "" play_title: ""
play_id: "" play_id: ""
event.module: "playbook" event.module: "playbook"

View File

@@ -1,15 +1,9 @@
{% set es = salt['pillar.get']('global:url_base', '') %} {% set es = salt['pillar.get']('global:url_base', '') %}
{%- set ES_USER = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:user', '') %}
{%- set ES_PASS = salt['pillar.get']('elasticsearch:auth:users:so_elastic_user:pass', '') %}
alert: alert:
- "modules.so.playbook-es.PlaybookESAlerter" - "modules.so.playbook-es.PlaybookESAlerter"
elasticsearch_host: "{{ es }}:9200" elasticsearch_host: "{{ es }}:9200"
{% if salt['pillar.get']('elasticsearch:auth:enabled') is sameas true %}
elasticsearch_user: "{{ ES_USER }}"
elasticsearch_pass: "{{ ES_PASS }}"
{% endif %}
play_title: "" play_title: ""
event.module: "playbook" event.module: "playbook"
event.dataset: "alert" event.dataset: "alert"