|
|
@@ -1,3 +1,4 @@
|
|
|
+---
|
|
|
network.host: "0.0.0.0"
|
|
|
node.name: "wazuh.indexer"
|
|
|
path.data: /var/lib/wazuh-indexer
|
|
|
@@ -16,15 +17,27 @@ plugins.security.ssl.http.enabled: true
|
|
|
plugins.security.ssl.transport.enforce_hostname_verification: false
|
|
|
plugins.security.ssl.transport.resolve_hostname: false
|
|
|
plugins.security.authcz.admin_dn:
|
|
|
-- "CN=admin,OU=Wazuh,O=Wazuh,L=California,C=US"
|
|
|
+ - "CN=admin,OU=Wazuh,O=Wazuh,L=California,C=US"
|
|
|
plugins.security.check_snapshot_restore_write_privileges: true
|
|
|
plugins.security.enable_snapshot_restore_privilege: true
|
|
|
plugins.security.nodes_dn:
|
|
|
-- "CN=wazuh.indexer,OU=Wazuh,O=Wazuh,L=California,C=US"
|
|
|
+ - "CN=wazuh.indexer,OU=Wazuh,O=Wazuh,L=California,C=US"
|
|
|
plugins.security.restapi.roles_enabled:
|
|
|
-- "all_access"
|
|
|
-- "security_rest_api_access"
|
|
|
+ - "all_access"
|
|
|
+ - "security_rest_api_access"
|
|
|
plugins.security.system_indices.enabled: true
|
|
|
-plugins.security.system_indices.indices: [".opendistro-alerting-config", ".opendistro-alerting-alert*", ".opendistro-anomaly-results*", ".opendistro-anomaly-detector*", ".opendistro-anomaly-checkpoints", ".opendistro-anomaly-detection-state", ".opendistro-reports-*", ".opendistro-notifications-*", ".opendistro-notebooks", ".opensearch-observability", ".opendistro-asynchronous-search-response*", ".replication-metadata-store"]
|
|
|
+plugins.security.system_indices.indices:
|
|
|
+ - ".opendistro-alerting-config"
|
|
|
+ - ".opendistro-alerting-alert*"
|
|
|
+ - ".opendistro-anomaly-results*"
|
|
|
+ - ".opendistro-anomaly-detector*"
|
|
|
+ - ".opendistro-anomaly-checkpoints"
|
|
|
+ - ".opendistro-anomaly-detection-state"
|
|
|
+ - ".opendistro-reports-*"
|
|
|
+ - ".opendistro-notifications-*"
|
|
|
+ - ".opendistro-notebooks"
|
|
|
+ - ".opensearch-observability"
|
|
|
+ - ".opendistro-asynchronous-search-response*"
|
|
|
+ - ".replication-metadata-store"
|
|
|
plugins.security.allow_default_init_securityindex: true
|
|
|
cluster.routing.allocation.disk.threshold_enabled: false
|