...
Code Block |
---|
http://192.168.0.1:9200,http://192.168.0.2:9200,http://192.168.0.3:9200 |
Enable TLS 1.2 and 1.3 versions for Elasticsearch
You to add the following two lines in the elasticsearch.yml file:
Code Block |
---|
xpack.security.http.ssl:
supported_protocols: TLSv1.3, TLSv1.2
xpack.security.transport.ssl:
supported_protocols: TLSv1.3, TLSv1.2 |
The following is the sample .yml file:
Code Block |
---|
cluster.name: zephyr
node.name: node-1
http.port: 9200
network.host: 192.168.0.1
xpack.security.enabled: true
xpack.security.enrollment.enabled: true
xpack.security.http.ssl:
enabled: true
keystore.path: certs/http.p12
supported_protocols: TLSv1.3, TLSv1.2
xpack.security.transport.ssl:
enabled: true
verification_mode: certificate
keystore.path: certs/transport.p12
truststore.path: certs/transport.p12
supported_protocols: TLSv1.3, TLSv1.2
http.host: 0.0.0.0
indices.query.bool.max_clause_count: 9024
action.auto_create_index: ".watches,.triggered_watches,.watcher-history-*,-zephyr*,+*" |
Connect Zephyr to Elasticsearch
...