values.yaml 1.1 KB

123456789101112131415161718192021222324252627282930313233
  1. daemonset:
  2. extraEnvs:
  3. - name: "ELASTICSEARCH_HOSTS"
  4. value: "c-c9qfrs7u8i6g59dkb0vj.rw.mdb.yandexcloud.net:9200"
  5. - name: "ELASTICSEARCH_USERNAME"
  6. valueFrom:
  7. secretKeyRef:
  8. name: security-master-credentials
  9. key: username
  10. - name: "ELASTICSEARCH_PASSWORD"
  11. valueFrom:
  12. secretKeyRef:
  13. name: security-master-credentials
  14. key: password
  15. filebeatConfig:
  16. filebeat.yml: |
  17. setup.ilm.enabled: auto
  18. setup.ilm.rollover_alias: "filebeat-osquery"
  19. setup.ilm.pattern: "{now/d}-000001"
  20. filebeat.inputs:
  21. filebeat.modules:
  22. - module: osquery
  23. output.elasticsearch:
  24. hosts: '${ELASTICSEARCH_HOSTS:elasticsearch-master:9200}'
  25. username: '${ELASTICSEARCH_USERNAME}'
  26. password: '${ELASTICSEARCH_PASSWORD}'
  27. protocol: https
  28. ssl.certificate_authorities:
  29. - /usr/share/filebeat/config/certs/elastic-certificate.pem
  30. secretMounts:
  31. - name: elastic-certificate-pem
  32. secretName: elastic-certificate-pem
  33. path: /usr/share/filebeat/config/certs