forked from wazuh/wazuh-docker
Merge pull request #322 from wazuh/feature-describe-vars
Explain environment variables
This commit is contained in:
@@ -22,10 +22,70 @@ In addition, a docker-compose file is provided to launch the containers mentione
|
|||||||
* [Wazuh documentation for Docker](https://documentation.wazuh.com/current/docker/index.html)
|
* [Wazuh documentation for Docker](https://documentation.wazuh.com/current/docker/index.html)
|
||||||
* [Docker hub](https://hub.docker.com/u/wazuh)
|
* [Docker hub](https://hub.docker.com/u/wazuh)
|
||||||
|
|
||||||
|
|
||||||
### Setup SSL certificate and Basic Authentication
|
### Setup SSL certificate and Basic Authentication
|
||||||
|
|
||||||
Before starting the environment it is required to provide an SSL certificate (or just generate one self-signed) and setup the basic auth.
|
Before starting the environment it is required to provide an SSL certificate (or just generate one self-signed) and setup the basic auth.
|
||||||
|
|
||||||
|
Documentation on how to provide these two can be found at [nginx_conf/README.md](nginx_conf/README.md).
|
||||||
|
|
||||||
|
|
||||||
|
## Environment Variables
|
||||||
|
|
||||||
|
Default values are included when available.
|
||||||
|
|
||||||
|
### Wazuh
|
||||||
|
```
|
||||||
|
API_USERNAME="wazuh" # Wazuh API username
|
||||||
|
API_PASSWORD="wazuh" # Wazuh API password - Must comply with requirements
|
||||||
|
# (8+ length, uppercase, lowercase, specials chars)
|
||||||
|
|
||||||
|
ELASTICSEARCH_URL=https://elasticsearch:9200 # Elasticsearch URL
|
||||||
|
ELASTIC_USERNAME=admin # Elasticsearch Username
|
||||||
|
ELASTIC_PASSWORD=admin # Elasticsearch Password
|
||||||
|
FILEBEAT_SSL_VERIFICATION_MODE=full # Filebeat SSL Verification mode (full or none)
|
||||||
|
SSL_CERTIFICATE_AUTHORITIES="" # Path of Filebeat SSL CA
|
||||||
|
SSL_CERTIFICATE="" # Path of Filebeat SSL Certificate
|
||||||
|
SSL_KEY="" # Path of Filebeat SSL Key
|
||||||
|
```
|
||||||
|
|
||||||
|
### Kibana
|
||||||
|
```
|
||||||
|
PATTERN="wazuh-alerts-*" # Default index pattern to use
|
||||||
|
|
||||||
|
CHECKS_PATTERN=true # Defines which checks must to be consider by the healthcheck
|
||||||
|
CHECKS_TEMPLATE=true # step once the Wazuh app starts. Values must to be true or false
|
||||||
|
CHECKS_API=true
|
||||||
|
CHECKS_SETUP=true
|
||||||
|
|
||||||
|
EXTENSIONS_PCI=true # Enable PCI Extension
|
||||||
|
EXTENSIONS_GDPR=true # Enable GDPR Extension
|
||||||
|
EXTENSIONS_HIPAA=true # Enable HIPAA Extension
|
||||||
|
EXTENSIONS_NIST=true # Enable NIST Extension
|
||||||
|
EXTENSIONS_TSC=true # Enable TSC Extension
|
||||||
|
EXTENSIONS_AUDIT=true # Enable Audit Extension
|
||||||
|
EXTENSIONS_OSCAP=false # Enable OpenSCAP Extension
|
||||||
|
EXTENSIONS_CISCAT=false # Enable CISCAT Extension
|
||||||
|
EXTENSIONS_AWS=false # Enable AWS Extension
|
||||||
|
EXTENSIONS_GCP=false # Enable GCP Extension
|
||||||
|
EXTENSIONS_VIRUSTOTAL=false # Enable Virustotal Extension
|
||||||
|
EXTENSIONS_OSQUERY=false # Enable OSQuery Extension
|
||||||
|
EXTENSIONS_DOCKER=false # Enable Docker Extension
|
||||||
|
|
||||||
|
APP_TIMEOUT=20000 # Defines maximum timeout to be used on the Wazuh app requests
|
||||||
|
|
||||||
|
API_SELECTOR=true Defines if the user is allowed to change the selected API directly from the Wazuh app top menu
|
||||||
|
IP_SELECTOR=true # Defines if the user is allowed to change the selected index pattern directly from the Wazuh app top menu
|
||||||
|
IP_IGNORE="[]" # List of index patterns to be ignored
|
||||||
|
|
||||||
|
WAZUH_MONITORING_ENABLED=true # Custom settings to enable/disable wazuh-monitoring indices
|
||||||
|
WAZUH_MONITORING_FREQUENCY=900 # Custom setting to set the frequency for wazuh-monitoring indices cron task
|
||||||
|
WAZUH_MONITORING_SHARDS=2 # Configure wazuh-monitoring-* indices shards and replicas
|
||||||
|
WAZUH_MONITORING_REPLICAS=0 #
|
||||||
|
|
||||||
|
ADMIN_PRIVILEGES=true # App privileges
|
||||||
|
```
|
||||||
|
|
||||||
## Directory structure
|
## Directory structure
|
||||||
|
|
||||||
wazuh-docker
|
wazuh-docker
|
||||||
|
|||||||
Reference in New Issue
Block a user