Atualização - 16/04/2026 - 11:36
This commit is contained in:
2
.gitignore
vendored
Normal file
2
.gitignore
vendored
Normal file
@@ -0,0 +1,2 @@
|
||||
pipelines/
|
||||
hosts/host03/dados
|
||||
@@ -31,6 +31,8 @@ services:
|
||||
- 5601:5601 # Interface Web
|
||||
expose:
|
||||
- 5601
|
||||
command: ["/bin/bash", "-c", "/etc/init.d/opensearch-dashboards start && tail -f /var/log/opensearch-dashboards/opensearch-dashboards.stdout"]
|
||||
restart: always
|
||||
environment:
|
||||
- 'OPENSEARCH_HOSTS=["https://rk-siem-core:9200"]'
|
||||
- "DISABLE_SECURITY_DASHBOARDS_PLUGIN=false"
|
||||
|
||||
27
hosts/host02/fluent-bit.conf
Normal file
27
hosts/host02/fluent-bit.conf
Normal file
@@ -0,0 +1,27 @@
|
||||
# cat /etc/fluent-bit/fluent-bit.conf
|
||||
[SERVICE]
|
||||
Flush 1
|
||||
Log_Level info
|
||||
Daemon off
|
||||
# Parsers_File parsers.conf
|
||||
|
||||
# Coleta logs do Apache
|
||||
[INPUT]
|
||||
Name tail
|
||||
Path /var/log/apache2/access.log
|
||||
Tag apache-logs-acesso
|
||||
# Parser apache2
|
||||
|
||||
# Envio para o RK-SIEM-CORE
|
||||
[OUTPUT]
|
||||
Name opensearch
|
||||
Match apache-logs-acesso
|
||||
Host 172.20.0.1
|
||||
Port 9200
|
||||
Index host02-logs
|
||||
Type _doc
|
||||
HTTP_User admin
|
||||
HTTP_Passwd admin
|
||||
tls On
|
||||
tls.verify Off
|
||||
Suppress_Type_Name On
|
||||
22
hosts/host03/docker-compose.yml
Normal file
22
hosts/host03/docker-compose.yml
Normal file
@@ -0,0 +1,22 @@
|
||||
services:
|
||||
rk-siem-host03:
|
||||
# image: ricardokleber/rk-siem-host03:latest
|
||||
image: docker.ifrncn.com.br/rk/rk-windows:latest
|
||||
container_name: rk-siem-host03
|
||||
devices:
|
||||
- /dev/kvm # Essencial para aceleração de hardware (KVM)
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
ports:
|
||||
- 8006:8006 # Interface Web (NoVNC)
|
||||
volumes:
|
||||
- ./dados:/storage
|
||||
stop_grace_period: 2m
|
||||
restart: on-failure
|
||||
environment:
|
||||
VERSION: "7u" # Define a versão (win11, win10, etc)
|
||||
RAM_SIZE: "2G" # Mínimo recomendado para Win11
|
||||
CPU_CORES: "2" # Quantidade de núcleos
|
||||
DISK_SIZE: "15G" # Tamanho do disco virtual
|
||||
USERNAME: "admin"
|
||||
PASSWORD: "admin"
|
||||
9
rk-siem-collector/docker-compose.yml
Normal file
9
rk-siem-collector/docker-compose.yml
Normal file
@@ -0,0 +1,9 @@
|
||||
services:
|
||||
rk-siem-collector:
|
||||
image: opensearchproject/data-prepper:2.15.0
|
||||
container_name: rk-siem-collector
|
||||
volumes:
|
||||
- ./log_pipeline.yaml:/usr/share/data-prepper/pipelines/log_pipeline.yaml
|
||||
- ./rk-siem-collector-config.yaml:/usr/share/data-prepper/config/data-prepper-config.yaml
|
||||
ports:
|
||||
- 2021:2021
|
||||
Reference in New Issue
Block a user