Install directory update

This commit is contained in:
Gonzalo Acuña 2022-03-17 13:46:24 -03:00
parent f352f6144e
commit 43d6bb6508
No known key found for this signature in database
GPG Key ID: 646BA79A313A2270
4 changed files with 19 additions and 19 deletions

View File

@ -39,15 +39,15 @@ spec:
memory: 1Gi
volumeMounts:
- name: config
mountPath: /etc/wazuh-dashboard/opensearch_dashboards.yml
mountPath: /usr/share/wazuh-dashboard/opensearch_dashboards.yml
subPath: opensearch_dashboards.yml
readOnly: false
- name: dashboard-certs
mountPath: /etc/wazuh-dashboard/certs/cert.pem
mountPath: /usr/share/wazuh-dashboard/certs/cert.pem
readOnly: true
subPath: cert.pem
- name: dashboard-certs
mountPath: /etc/wazuh-dashboard/certs/key.pem
mountPath: /usr/share/wazuh-dashboard/certs/key.pem
readOnly: true
subPath: key.pem
ports:
@ -69,9 +69,9 @@ spec:
- name: SERVER_SSL_ENABLED
value: "true"
- name: SERVER_SSL_CERTIFICATE
value: /etc/wazuh-dashboard/certs/cert.pem
value: /usr/share/wazuh-dashboard/certs/cert.pem
- name: SERVER_SSL_KEY
value: /etc/wazuh-dashboard/certs/key.pem
value: /usr/share/wazuh-dashboard/certs/key.pem
- name: WAZUH_API_URL
value: https://wazuh-manager-master-0.wazuh-cluster
- name: API_USERNAME

View File

@ -9,6 +9,6 @@ opensearch_security.multitenancy.tenants.preferred: ["Private", "Global"]
opensearch_security.readonly_mode.roles: ["kibana_read_only"]
server.ssl.enabled: true
server.ssl.key: "/etc/wazuh-dashboard/certs/key.pem"
server.ssl.certificate: "/etc/wazuh-dashboard/certs/cert.pem"
opensearch.ssl.certificateAuthorities: ["/etc/wazuh-dashboard/certs/root-ca.pem"]
server.ssl.certificate: "/usr/share/wazuh-dashboard/certs/cert.pem"
opensearch.ssl.certificateAuthorities: ["/usr/share/wazuh-dashboard/certs/root-ca.pem"]
uiSettings.overrides.defaultRoute: /app/wazuh?security_tenant=global

View File

@ -90,27 +90,27 @@ spec:
- name: wazuh-indexer
mountPath: /usr/share/wazuh-indexer/data
- name: indexer-certs
mountPath: /etc/wazuh-indexer/certs/node-key.pem
mountPath: /usr/share/wazuh-indexer/certs/node-key.pem
subPath: node-key.pem
readOnly: true
- name: indexer-certs
mountPath: /etc/wazuh-indexer/certs/node.pem
mountPath: /usr/share/wazuh-indexer/certs/node.pem
subPath: node.pem
readOnly: true
- name: indexer-certs
mountPath: /etc/wazuh-indexer/certs/root-ca.pem
mountPath: /usr/share/wazuh-indexer/certs/root-ca.pem
subPath: root-ca.pem
readOnly: true
- name: indexer-certs
mountPath: /etc/wazuh-indexer/certs/admin.pem
mountPath: /usr/share/wazuh-indexer/certs/admin.pem
subPath: admin.pem
readOnly: true
- name: indexer-certs
mountPath: /etc/wazuh-indexer/certs/admin-key.pem
mountPath: /usr/share/wazuh-indexer/certs/admin-key.pem
subPath: admin-key.pem
readOnly: true
- name: indexer-conf
mountPath: /etc/wazuh-indexer/opensearch.yml
mountPath: /usr/share/wazuh-indexer/opensearch.yml
subPath: opensearch.yml
readOnly: true
- name: indexer-conf

View File

@ -8,12 +8,12 @@ cluster.initial_master_nodes:
node.max_local_storage_nodes: "3"
path.data: /var/lib/wazuh-indexer
path.logs: /var/log/wazuh-indexer
plugins.security.ssl.http.pemcert_filepath: /etc/wazuh-indexer/certs/node.pem
plugins.security.ssl.http.pemkey_filepath: /etc/wazuh-indexer/certs/node-key.pem
plugins.security.ssl.http.pemtrustedcas_filepath: /etc/wazuh-indexer/certs/root-ca.pem
plugins.security.ssl.transport.pemcert_filepath: /etc/wazuh-indexer/certs/node.pem
plugins.security.ssl.transport.pemkey_filepath: /etc/wazuh-indexer/certs/node-key.pem
plugins.security.ssl.transport.pemtrustedcas_filepath: /etc/wazuh-indexer/certs/root-ca.pem
plugins.security.ssl.http.pemcert_filepath: /usr/share/wazuh-indexer/certs/node.pem
plugins.security.ssl.http.pemkey_filepath: /usr/share/wazuh-indexer/certs/node-key.pem
plugins.security.ssl.http.pemtrustedcas_filepath: /usr/share/wazuh-indexer/certs/root-ca.pem
plugins.security.ssl.transport.pemcert_filepath: /usr/share/wazuh-indexer/certs/node.pem
plugins.security.ssl.transport.pemkey_filepath: /usr/share/wazuh-indexer/certs/node-key.pem
plugins.security.ssl.transport.pemtrustedcas_filepath: /usr/share/wazuh-indexer/certs/root-ca.pem
plugins.security.ssl.http.enabled: true
plugins.security.ssl.transport.enforce_hostname_verification: false
plugins.security.ssl.transport.resolve_hostname: false