
* Created the version 6 for ELK. Fixed #135 * Needed to make sure all the data volumes were set up properly. Some paths had VulnWhisperer, vulnwhisperer, vulnwhisp/data. * Delete 9998_output_broker_rabbitmq.conf * Delete 9998_input_broker_rabbitmq.conf * Delete 0001_input_beats.conf * add to gitignore creds files + correct elk5 docker-compose * elk changed to 6.6.0 from 6.5.2, output path from logstash to elasticsearch host
76 lines
1.8 KiB
YAML
76 lines
1.8 KiB
YAML
version: '2'
|
|
services:
|
|
elasticsearch:
|
|
image: docker.elastic.co/elasticsearch/elasticsearch:6.6.0
|
|
container_name: elasticsearch
|
|
environment:
|
|
- cluster.name=vulnwhisperer
|
|
- bootstrap.memory_lock=true
|
|
- "ES_JAVA_OPTS=-Xms512m -Xmx512m"
|
|
- xpack.security.enabled=false
|
|
|
|
ulimits:
|
|
memlock:
|
|
soft: -1
|
|
hard: -1
|
|
nofile:
|
|
soft: 65536
|
|
hard: 65536
|
|
mem_limit: 8g
|
|
volumes:
|
|
- esdata1:/usr/share/elasticsearch/data
|
|
ports:
|
|
- 9200:9200
|
|
restart: always
|
|
networks:
|
|
esnet:
|
|
aliases:
|
|
- elasticsearch.local
|
|
kibana:
|
|
image: docker.elastic.co/kibana/kibana:6.6.0
|
|
container_name: kibana
|
|
environment:
|
|
SERVER_NAME: kibana
|
|
ELASTICSEARCH_URL: http://elasticsearch:9200
|
|
ports:
|
|
- 5601:5601
|
|
depends_on:
|
|
- elasticsearch
|
|
networks:
|
|
esnet:
|
|
aliases:
|
|
- kibana.local
|
|
logstash:
|
|
image: docker.elastic.co/logstash/logstash:6.6.0
|
|
container_name: logstash
|
|
volumes:
|
|
- ./elk6/pipeline/:/usr/share/logstash/pipeline
|
|
#- ./elk6/logstash.yml:/usr/share/logstash/config/logstash.yml
|
|
- ./data/:/opt/vulnwhisperer/data
|
|
environment:
|
|
- xpack.monitoring.enabled=false
|
|
depends_on:
|
|
- elasticsearch
|
|
networks:
|
|
esnet:
|
|
aliases:
|
|
- logstash.local
|
|
vulnwhisperer:
|
|
image: hasecuritysolutions/vulnwhisperer:latest
|
|
container_name: vulnwhisperer
|
|
entrypoint: [
|
|
"vuln_whisperer",
|
|
"-c",
|
|
"/opt/vulnwhisperer/vulnwhisperer.ini"
|
|
]
|
|
volumes:
|
|
- ./data/:/opt/vulnwhisperer/data
|
|
- ./elk6/vulnwhisperer.ini:/opt/vulnwhisperer/vulnwhisperer.ini
|
|
network_mode: host
|
|
volumes:
|
|
esdata1:
|
|
driver: local
|
|
|
|
networks:
|
|
esnet:
|