mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-24 01:43:11 +01:00
94 lines
2.6 KiB
YAML
94 lines
2.6 KiB
YAML
kibana:
|
|
enabled: True
|
|
config:
|
|
server:
|
|
name: kibana
|
|
host: "0.0.0.0"
|
|
basePath: /kibana
|
|
publicBaseUrl: https://{{salt['pillar.get']('global:url_base')}}/kibana
|
|
rewriteBasePath: false
|
|
elasticsearch:
|
|
ssl:
|
|
verificationMode: none
|
|
requestTimeout: 90000
|
|
logging:
|
|
appenders:
|
|
file:
|
|
type: file
|
|
fileName: /var/log/kibana/kibana.log
|
|
layout:
|
|
type: json
|
|
root:
|
|
appenders:
|
|
- default
|
|
- file
|
|
telemetry:
|
|
enabled: False
|
|
security:
|
|
showInsecureClusterWarning: False
|
|
xpack:
|
|
security:
|
|
secureCookies: true
|
|
reporting:
|
|
kibanaServer:
|
|
hostname: localhost
|
|
fleet:
|
|
packages:
|
|
- name: fleet_server
|
|
version: latest
|
|
- name: log
|
|
version: latest
|
|
- name: osquery_manager
|
|
version: latest
|
|
- name: system
|
|
version: latest
|
|
- name: windows
|
|
version: latest
|
|
agentPolicies:
|
|
- name: SO-Manager
|
|
id: so-manager
|
|
description: "SO Manager Fleet Server Policy"
|
|
namespace: default
|
|
is_default_fleet_server: true
|
|
monitoring_enabled: ['logs']
|
|
package_policies:
|
|
- name: fleet-server_manager
|
|
package:
|
|
name: fleet_server
|
|
- name: SO-Grid-Nodes
|
|
id: so-grid-nodes
|
|
description: "SO Grid Node Policy"
|
|
namespace: default
|
|
monitoring_enabled: ['logs']
|
|
package_policies:
|
|
- name: osquery-grid-nodes
|
|
package:
|
|
name: osquery_manager
|
|
- name: system-grid-nodes
|
|
package:
|
|
name: system
|
|
inputs:
|
|
- type: system/metrics
|
|
enabled: false
|
|
- name: Endpoints-Initial
|
|
id: endpoints-default
|
|
description: "Initial Endpoint Policy"
|
|
namespace: default
|
|
monitoring_enabled: ['logs']
|
|
package_policies:
|
|
- name: system-endpoints
|
|
package:
|
|
name: system
|
|
inputs:
|
|
- type: system/metrics
|
|
enabled: false
|
|
- name: osquery-endpoints
|
|
package:
|
|
name: osquery_manager
|
|
- name: windows-endpoints
|
|
package:
|
|
name: windows
|
|
inputs:
|
|
- type: windows/metrics
|
|
enabled: false
|