ES X-Pack密码认证与用户管理

发布时间 2023-04-14 11:41:48作者: 张冲andy

Elasticsearch6.8X-packSearch GuardReadOnly RESTElasticsearchElasticsearch 6.8Security  x-pack  Basic 使X-pack

 X-Pack 

1.1  elasticsearch.yml 

 

xpack.security.enabled: true
xpack.security.transport.ssl.enabled: true
xpack.security.transport.ssl.verification_mode: certificate
xpack.security.transport.ssl.keystore.path: elastic-certificates.p12
xpack.security.transport.ssl.truststore.path: elastic-certificates.p12

1.2 

bin/elasticsearch-certutil ca   

bin/elasticsearch-certutil cert --ca elastic-stack-ca.p12    

1.3 ElasticsearchElasticsearch

bin/elasticsearch-setup-passwords interactive/auto  

: interactiveauto使auto

 

Privilege

ElasticsearchElasticsearchcluster:

● Cluster Privileges
   ● all / monitor / manager / manage_index / manage_index_template / manage_rollup
● Indices Privileges
    ● all / create / create_index / delete / delete_index / index / manage / read /write / view_index_metadata

 

3.1 

3.2 ES

3.3 bdp_role

3.4 bdp_user

3.5 

3.6 

3.7 

 

https://www.elastic.co/what-is/elastic-stack-security

https://www.elastic.co/guide/en/elasticsearch/reference/current/configuring-stack-security.html