1 配置文件中插入以下内容,es接入ldap
network.host: 0.0.0.0
xpack.watcher.enabled: true
xpack.security.enabled: true
xpack.security.transport.ssl.enabled: true
xpack.security.transport.ssl.verification_mode: certificate
xpack.security.transport.ssl.keystore.path: certs/elastic-certificates.p12
xpack.security.transport.ssl.truststore.path: certs/elastic-certificates.p12
xpack.security.authc.realms.ldap.ldap1.order: 0
xpack.security.authc.realms.ldap.ldap1.url: "ldap://ldap.example.com:389"
xpack.security.authc.realms.ldap.ldap1.bind_dn: "cn=elk,ou=People,dc=example,dc=com"
#xpack.security.authc.realms.ldap.ldap1.bind_password: "Passw0rdldap#@$"
xpack.security.authc.realms.ldap.ldap1.user_search.base_dn: "dc=example,dc=com"
xpack.security.authc.realms.ldap.ldap1.user_search.attribute: uid
xpack.security.authc.realms.ldap.ldap1.group_search.base_dn: "dc=example,dc=com"
xpack.security.authc.realms.ldap.ldap1.files.role_mapping: "/etc/elasticsearch/role_mapping.yml"
xpack.security.authc

本文介绍了如何配置Elasticsearch以接入LDAP进行身份验证,包括设置网络主机、安全选项和LDAP连接参数。同时展示了如何在Kibana中利用LDAP登录,并通过`role_mapping.yml`文件实现用户角色映射,对用户权限进行精细控制。

1204

被折叠的 条评论
为什么被折叠?



