1. https://www.pandasecurity.com/mediacenter/news/billion-consu...
2. https://thedefenceworks.com/blog/250-million-microsoft-recor...
Edited for clarity
1. https://www.pandasecurity.com/mediacenter/news/billion-consu...
2. https://thedefenceworks.com/blog/250-million-microsoft-recor...
Edited for clarity
Notice how it also doesn't talk about system architecture, load balancers, disaster recovery, etc? It's because the author chose to focus the post on cluster configuration. The topic of security could be its own standalone writeup and I highly doubt that its omission is an endorsement for running an ES cluster totally exposed and unsecured.
Or they aren't given the time, running on ASAP-brand project management and/or pushing the POC to prod.
What's your point? The ops side of anything also covers security. In fact, you cannot have ops without effective security.
This isn't an expensive course on setting up the perfect ES cluster in production.
As someone who is currently planning to set up a substantial ES cluster, I'm very grateful for someone to write up their learnings in such a compact overview.
Still waiting on these guys to review my perf patch though:
https://github.com/opendistro-for-elasticsearch/security/pul...
I'm sorry about the lack of engagement on that PR, Dmitry. Let me see if I can get some attention on it.
I tried reaching out on forums and was assured they’d get to it. I’m used to things going slow in OpenSource so not too worried at this point.
Would be lovely to upstream it though, as I’ve patched 2 versions now and not looking forward to continue doing so ;) Plus I’d be glad to contribute more things based on our experience running ODFE, I’m very intrigued by other upcoming plugins in ODFE repos as well.
I am one of the PMs and we discussed this PR internally. Our engineer will connect with you soon. Apologize for the delay but our team was working on getting the release out.
Thanks
Hope to work with you guys on OpenDistro more closely in the future.
* [Making security bits available with the ("free") basic license](https://www.elastic.co/blog/security-for-elasticsearch-is-no...) * [Releasing Kubernetes Operators with security enabled by default](https://www.elastic.co/guide/en/cloud-on-k8s/current/index.h...)
This has the effect of making most "getting started" guide setups more secure by default, which is good.
Unfortunately this is a new change and those bits are not in the Apache licensed core offering, but it's still a big improvement IMHO.
/s