mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 17:22:49 +01:00
Merge pull request #10829 from Security-Onion-Solutions/2.4/heavynoderedux
Heavy Node fixes
This commit is contained in:
@@ -33,19 +33,22 @@ so-elastic-agent:
|
|||||||
{% endif %}
|
{% endif %}
|
||||||
- binds:
|
- binds:
|
||||||
- /opt/so/conf/elastic-agent/elastic-agent.yml:/usr/share/elastic-agent/elastic-agent.yml:ro
|
- /opt/so/conf/elastic-agent/elastic-agent.yml:/usr/share/elastic-agent/elastic-agent.yml:ro
|
||||||
|
- /etc/pki/tls/certs/intca.crt:/etc/pki/tls/certs/intca.crt:ro
|
||||||
- /nsm:/nsm:ro
|
- /nsm:/nsm:ro
|
||||||
{% if DOCKER.containers['so-elastic-agent'].custom_bind_mounts %}
|
{% if DOCKER.containers['so-elastic-agent'].custom_bind_mounts %}
|
||||||
{% for BIND in DOCKER.containers['so-elastic-agent'].custom_bind_mounts %}
|
{% for BIND in DOCKER.containers['so-elastic-agent'].custom_bind_mounts %}
|
||||||
- {{ BIND }}
|
- {{ BIND }}
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
{% endif %}
|
{% endif %}
|
||||||
{% if DOCKER.containers['so-elastic-agent'].extra_env %}
|
|
||||||
- environment:
|
- environment:
|
||||||
|
- FLEET_CA=/etc/pki/tls/certs/intca.crt
|
||||||
|
{% if DOCKER.containers['so-elastic-agent'].extra_env %}
|
||||||
{% for XTRAENV in DOCKER.containers['so-elastic-agent'].extra_env %}
|
{% for XTRAENV in DOCKER.containers['so-elastic-agent'].extra_env %}
|
||||||
- {{ XTRAENV }}
|
- {{ XTRAENV }}
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
{% endif %}
|
{% endif %}
|
||||||
|
- watch:
|
||||||
|
- file: create-elastic-agent-config
|
||||||
|
|
||||||
delete_so-elastic-agent_so-status.disabled:
|
delete_so-elastic-agent_so-status.disabled:
|
||||||
file.uncomment:
|
file.uncomment:
|
||||||
|
|||||||
@@ -11,7 +11,7 @@ outputs:
|
|||||||
- 'https://{{ GLOBALS.hostname }}:9200'
|
- 'https://{{ GLOBALS.hostname }}:9200'
|
||||||
username: '{{ ES_USER }}'
|
username: '{{ ES_USER }}'
|
||||||
password: '{{ ES_PASS }}'
|
password: '{{ ES_PASS }}'
|
||||||
ssl.verification_mode: none
|
ssl.verification_mode: full
|
||||||
output_permissions: {}
|
output_permissions: {}
|
||||||
agent:
|
agent:
|
||||||
download:
|
download:
|
||||||
|
|||||||
@@ -999,6 +999,14 @@ firewall:
|
|||||||
portgroups:
|
portgroups:
|
||||||
- elasticsearch_node
|
- elasticsearch_node
|
||||||
- elasticsearch_rest
|
- elasticsearch_rest
|
||||||
|
managersearch:
|
||||||
|
portgroups:
|
||||||
|
- elasticsearch_node
|
||||||
|
- elasticsearch_rest
|
||||||
|
standalone:
|
||||||
|
portgroups:
|
||||||
|
- elasticsearch_node
|
||||||
|
- elasticsearch_rest
|
||||||
dockernet:
|
dockernet:
|
||||||
portgroups:
|
portgroups:
|
||||||
- elasticsearch_node
|
- elasticsearch_node
|
||||||
|
|||||||
Reference in New Issue
Block a user