diff --git a/deploy-as-code/helm/charts/backbone-services/elasticsearch-data-v1/values.yaml b/deploy-as-code/helm/charts/backbone-services/elasticsearch-data-v1/values.yaml index 91919d78b5..725a1dd554 100644 --- a/deploy-as-code/helm/charts/backbone-services/elasticsearch-data-v1/values.yaml +++ b/deploy-as-code/helm/charts/backbone-services/elasticsearch-data-v1/values.yaml @@ -63,6 +63,8 @@ extraEnvs: value: "true" - name: xpack.security.transport.ssl.enabled value: "true" + - name: xpack.security.http.ssl.enabled + value: "true" - name: xpack.security.transport.ssl.verification_mode value: "certificate" - name: xpack.security.transport.ssl.key @@ -71,6 +73,12 @@ extraEnvs: value: "/usr/share/elasticsearch/config/certs/tls.crt" - name: xpack.security.transport.ssl.certificate_authorities value: "/usr/share/elasticsearch/config/certs/ca.crt" + - name: xpack.security.http.ssl.key + value: "/usr/share/elasticsearch/config/certs/tls.key" + - name: xpack.security.http.ssl.certificate + value: "/usr/share/elasticsearch/config/certs/tls.crt" + - name: xpack.security.http.ssl.certificate_authorities + value: "/usr/share/elasticsearch/config/certs/ca.crt" createCert: false @@ -86,7 +94,7 @@ envFrom: [] # the X-Pack license secretMounts: - name: elastic-certificates - secretName: elasticsearch-master-V1-certs + secretName: elasticsearch-master-v1-certs path: /usr/share/elasticsearch/config/certs podAnnotations: {} @@ -195,7 +203,7 @@ nodeAffinity: {} # the same time when bootstrapping the cluster podManagementPolicy: "Parallel" -protocol: http +protocol: https httpPort: 9200 transportPort: 9300 diff --git a/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/templates/statefulset.yaml b/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/templates/statefulset.yaml index 6a2eb57835..41319db3c1 100644 --- a/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/templates/statefulset.yaml +++ b/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/templates/statefulset.yaml @@ -318,6 +318,8 @@ spec: value: "true" - name: xpack.security.transport.ssl.enabled value: "true" + - name: xpack.security.http.ssl.enabled + value: "true" - name: xpack.security.enrollment.enabled value: "true" - name: xpack.security.transport.ssl.verification_mode @@ -328,6 +330,12 @@ spec: value: "/usr/share/elasticsearch/config/certs/tls.crt" - name: xpack.security.transport.ssl.certificate_authorities value: "/usr/share/elasticsearch/config/certs/ca.crt" + - name: xpack.security.http.ssl.key + value: "/usr/share/elasticsearch/config/certs/tls.key" + - name: xpack.security.http.ssl.certificate + value: "/usr/share/elasticsearch/config/certs/tls.crt" + - name: xpack.security.http.ssl.certificate_authorities + value: "/usr/share/elasticsearch/config/certs/ca.crt" {{- end }} {{- if .Values.extraEnvs }} {{ toYaml .Values.extraEnvs | indent 10 }} diff --git a/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/values.yaml b/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/values.yaml index 8105933f80..9c1088053b 100644 --- a/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/values.yaml +++ b/deploy-as-code/helm/charts/backbone-services/elasticsearch-master-v1/values.yaml @@ -178,7 +178,7 @@ nodeAffinity: {} # the same time when bootstrapping the cluster podManagementPolicy: "Parallel" -protocol: http +protocol: https httpPort: 9200 transportPort: 9300