-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathelk.yml
More file actions
138 lines (105 loc) · 3.18 KB
/
elk.yml
File metadata and controls
138 lines (105 loc) · 3.18 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
version: "3.8"
services:
elasticsearch:
image: docker.elastic.co/elasticsearch/elasticsearch:8.12.2
container_name: elasticsearch
environment:
- node.name=elasticsearch
- discovery.type=single-node
# ===============================
# DEV MODE (ACTIVE)
# ===============================
- xpack.security.enabled=false
- ES_JAVA_OPTS=-Xms512m -Xmx512m
# ===============================
# PRODUCTION MODE (COMMENTED)
# Uncomment these when moving to production
# ===============================
# Enable security
# - xpack.security.enabled=true
# Set bootstrap password for elastic superuser
# - ELASTIC_PASSWORD=StrongElasticPassword123
# Enable TLS for HTTP layer (REQUIRED in real production)
# - xpack.security.http.ssl.enabled=true
# - xpack.security.http.ssl.keystore.path=certs/http.p12
# Enable TLS for transport layer (node-to-node)
# - xpack.security.transport.ssl.enabled=true
# Increase memory for production
# - ES_JAVA_OPTS=-Xms1g -Xmx1g
ports:
- "9200:9200"
volumes:
- es_data:/usr/share/elasticsearch/data
# For production TLS certificates
# - ./certs:/usr/share/elasticsearch/config/certs
networks:
- elk
logstash:
image: docker.elastic.co/logstash/logstash:8.12.2
container_name: logstash
depends_on:
- elasticsearch
ports:
- "6000:5000"
- "9600:9600"
volumes:
- ./logstash/pipeline:/usr/share/logstash/pipeline
environment:
- LS_JAVA_OPTS=-Xms512m -Xmx512m
# ===============================
# PRODUCTION OPTION (COMMENTED)
# ===============================
# If ES security is enabled, use credentials
# - ELASTIC_USER=elastic
# - ELASTIC_PASSWORD=StrongElasticPassword123
networks:
- elk
kibana:
image: docker.elastic.co/kibana/kibana:8.12.2
container_name: kibana
depends_on:
- elasticsearch
ports:
- "5601:5601"
environment:
# ===============================
# DEV MODE (ACTIVE)
# ===============================
- ELASTICSEARCH_HOSTS=http://elasticsearch:9200
# ===============================
# PRODUCTION MODE (COMMENTED)
# ===============================
# Enable when ES security is enabled
# - ELASTICSEARCH_USERNAME=elastic
# - ELASTICSEARCH_PASSWORD=StrongElasticPassword123
# If TLS is enabled in ES
# - ELASTICSEARCH_HOSTS=https://elasticsearch:9200
# - ELASTICSEARCH_SSL_VERIFICATIONMODE=certificate
networks:
- elk
kibana-init:
image: curlimages/curl:latest
depends_on:
- kibana
entrypoint: >
sh -c "
sleep 20;
curl -X POST http://kibana:5601/api/data_views/data_view \
-H 'kbn-xsrf: true' \
-H 'Content-Type: application/json' \
-d '{
\"data_view\": {
\"title\": \"spring-microservices-logs-*\",
\"name\": \"Spring Logs\",
\"timeFieldName\": \"@timestamp\"
}
}';
exit 0;
"
networks:
- elk
volumes:
es_data:
networks:
elk:
driver: bridge