-
Notifications
You must be signed in to change notification settings - Fork 0
/
docker-compose.yml
118 lines (115 loc) · 5.26 KB
/
docker-compose.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
version: '3'
services:
odfe-node1:
image: amazon/opendistro-for-elasticsearch:1.3.0
container_name: odfe-node1
environment:
- cluster.name=odfe-cluster
- node.name=odfe-node1
- discovery.seed_hosts=odfe-node1,odfe-node2
- cluster.initial_master_nodes=odfe-node1,odfe-node2
- bootstrap.memory_lock=true # along with the memlock settings below, disables swapping
- "ES_JAVA_OPTS=-Xms512m -Xmx512m" # minimum and maximum Java heap size, recommend setting both to 50% of system RAM
ulimits:
memlock:
soft: -1
hard: -1
nofile:
soft: 65536 # maximum number of open files for the Elasticsearch user, set to at least 65536 on modern systems
hard: 65536
volumes:
- odfe-data1:/usr/share/elasticsearch/data
- ${DATA_PATH}/opendistro/elasticsearch/config/elasticsearch.yml:/usr/share/elasticsearch/config/elasticsearch.yml
- ./root-ca.pem:/usr/share/elasticsearch/config/root-ca.pem
- ./node1.pem:/usr/share/elasticsearch/config/node.pem
- ./node1-key.pem:/usr/share/elasticsearch/config/node-key.pem
- ./admin.pem:/usr/share/elasticsearch/config/admin.pem
- ./admin-key.pem:/usr/share/elasticsearch/config/admin-key.pem
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/internal_users.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/internal_users.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/roles_mapping.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/roles_mapping.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/tenants.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/tenants.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/roles.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/roles.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/action_groups.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/action_groups.yml
ports:
- 9200:9200
- 9600:9600 # required for Performance Analyzer
networks:
- odfe-net
odfe-node2:
image: amazon/opendistro-for-elasticsearch:1.3.0
container_name: odfe-node2
environment:
- cluster.name=odfe-cluster
- node.name=odfe-node2
- discovery.seed_hosts=odfe-node1,odfe-node2
- cluster.initial_master_nodes=odfe-node1,odfe-node2
- bootstrap.memory_lock=true
- "ES_JAVA_OPTS=-Xms512m -Xmx512m"
ulimits:
memlock:
soft: -1
hard: -1
nofile:
soft: 65536
hard: 65536
volumes:
- odfe-data2:/usr/share/elasticsearch/data
- ${DATA_PATH}/opendistro/elasticsearch/config/elasticsearch.yml:/usr/share/elasticsearch/config/elasticsearch.yml
- ./root-ca.pem:/usr/share/elasticsearch/config/root-ca.pem
- ./node2.pem:/usr/share/elasticsearch/config/node.pem
- ./node2-key.pem:/usr/share/elasticsearch/config/node-key.pem
- ./admin.pem:/usr/share/elasticsearch/config/admin.pem
- ./admin-key.pem:/usr/share/elasticsearch/config/admin-key.pem
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/internal_users.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/internal_users.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/roles_mapping.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/roles_mapping.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/tenants.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/tenants.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/roles.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/roles.yml
- ${DATA_PATH}/opendistro/elasticsearch/securityconfig/action_groups.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/action_groups.yml
networks:
- odfe-net
kibana:
image: amazon/opendistro-for-elasticsearch-kibana:1.3.0
container_name: odfe-kibana
ports:
- 5601:5601
volumes:
- ${DATA_PATH}/opendistro/kibana/kibana.yml:/usr/share/kibana/config/kibana.yml
- ./root-ca.pem:/usr/share/kibana/config/root-ca.pem
- ./kibana-key.pem:/usr/share/kibana/config/kibana-key.pem
- ./kibana.pem:/usr/share/kibana/config/kibana.pem
expose:
- "5601"
environment:
ELASTICSEARCH_URL: https://odfe-node1:9200
ELASTICSEARCH_HOSTS: https://odfe-node1:9200
networks:
- odfe-net
logstash:
image: docker.elastic.co/logstash/logstash-oss:7.5.2
container_name: odfe-logstash
volumes:
- ${DATA_PATH}/opendistro/logstash/pipeline/:/usr/share/logstash/pipeline/
- ./root-ca.pem:/etc/logstash/config/certs/root-ca.pem
- ./logstash-key.pem:/etc/logstash/config/certs/logstash-key.pem
- ./logstash.pem:/etc/logstash/config/certs/logstash.pem
ports:
- "5044:5044"
networks:
- odfe-net
depends_on:
- odfe-node1
volumes:
odfe-data1:
driver: local
driver_opts:
type: 'none'
o: 'bind'
device: '${DATA_PATH}/opendistro/elasticsearch/data/'
odfe-data2:
driver: local
driver_opts:
type: 'none'
o: 'bind'
device: '${DATA_PATH}/opendistro/elasticsearch/data/'
networks:
odfe-net: