当前位置:网站首页>SearchGuard configuration
SearchGuard configuration
2022-08-11 06:33:00 【cjx__】
elk security plugin searchguard installation
Install under es (es version 6.5.4)
Download plugin
/bin/elasticsearch-plugin install -b com.floragunn:search-guard-6:Go to the searchguard installation directory
cd
/plugins/search-guard-/toolsRun Install
/install_demo_configuration.sh
Generated file
/config/elasticsearch.yml
Install demo certificates? [y/N] yInitialize Search Guard? [y/N] y# Cluster configuration select yEnable cluster mode? [y/N] n
Verify the installation
https://
:9200 Enter the admin\admin account password to access the test installation
https://
:9200/_searchguard/authinfo Displays information about the currently logged in user by accessingModify the default account password
Generate a new hash password
sh hash.sh -p chenfh5
Modify
/plugins/search-guard-6/sgconfig/sg_internal_users.ymlDistribute new configuration to es cluster
cd
/plugins/search-guard-6/tools
./sgadmin.sh -cd ../sgconfig/ -icl -nhnv \-cacert ../../../config/root-ca.pem \-cert ../../../config/kirk.pem \-key ../../../config/kirk-key.pem
kibana install SearchGuard (kibana version 6.5.4)
Run Install
/bin/kibana-plugin install https://search.maven.org/remotecontent?filepath=com/floragunn/search-guard-kibana-plugin/6.5.4-17/search-guard-kibana-plugin-6.5.4-17.zipModify kibana configuration
vim
/config/kibana.yml
# Turn off xpack security authenticationxpack.security.enabled: false#xpack.monitoring.enabled: falsenetwork.host: 0.0.0.0
Startup error/bin/kibana
Browserslist: caniuse-lite is outdated. Please run next command `npm update caniuse-lite browserslist`
The reason is that the browserslist without node has not been updated. If it is updated directly, an error will be reported. You can only download the package manually and then cover it to the original installation directory
# Install npm tools, if there is no need to installyum install npm# Create a new directory to download new filesmkdir cd npm install caniuse-lite browserslistcd /node_modules# Create a new directory to save the original copymv /node_modules/browserslist mv /node_modules/caniuse-lite mv /node_modules/electron-to-chromium mv /node_modules/node-releases mv /node_modules/semver cd mv /* /kibana-6.5.4-linux-x86_64/node_modules
Restart /bin/kibana and wait for node compilation to complete
- [error][admin][elasticsearch] Request error, retrying error
Edit kibana.yml
# Turn off xpack security authenticationxpack.security.enabled: false#xpack.spaces.enabled: false# connectelasticsearch.url: "https://xxx.xxx.xxx.xxx:9200"
- Open the browser https://: enter the admin account and password to open the management page
logstash configure searchguard
- xxx.conf add the following configuration
output {elasticsearch {user => logstashpassword => logstashssl => truessl_certificate_verification => falsecacert => "/config/spock.pem"...}}
边栏推荐
猜你喜欢
Vscode远程连接服务器终端zsh+Oh-my-zsh + Powerlevel10 + Autosuggestions + Autojump + Syntax-highlighting
弱监督语义分割CLIMS(CVPR2022)
论文解读:跨模态/多光谱/多模态检测 Cross-Modality Fusion Transformer for Multispectral Object Detection
华为IOT平台温度过高时自动关闭设备场景试用
10 个超好用的 DataGrip 快捷键,快加入收藏! | 实用技巧
使用ActiveReports制作第一张报表
The third phase of the contributor task is wonderful
USB 枚举过程中8 字节标准请求解析
STM32-库函数-SetSysClock(void)函数解析-正点原子探索者
产品经理与演员有着天然的相似
随机推荐
STM32学习笔记(白话文理解版)—USART通信接口
CMT2380F32模块开发8-Base Timer例程
C语言中switch的嵌套
KANO模型——确定需求优先级的神器
stm32-WS2812 PWM+DMA(自己写库函数)
The latest safety helmet wearing recognition system in 2022
珍爱网App竞品分析报告
STM32-库函数-SetSysClock(void)函数解析-正点原子探索者
ASP.NET MVC 4中实现action的事务功能
STM32F407-浅~~析UART异步通信&USART_Init函数入口参数
CMT2380F32模块开发1-硬件
【调试记录1】提高MC3172浮点运算能力,IQmath库的获取与导入使用教程
跨应用间调用: URL Scheme
IIC 和 SPI
张小龙的微信公开课(2019年)
Hard hat recognition algorithm
Ubuntu下安装mysql笔记
C语言的编译
yolov3+centerloss+replay buffer实现单人物跟踪
vmware不可恢复错误vmui