diff --git a/elasticsearch/values.yaml b/elasticsearch/values.yaml index 7ae5c31..7c1fd4f 100644 --- a/elasticsearch/values.yaml +++ b/elasticsearch/values.yaml @@ -28,14 +28,13 @@ esMajorVersion: "" # Allows you to add any config files in /usr/share/elasticsearch/config/ # such as elasticsearch.yml and log4j2.properties -esConfig: {} -# elasticsearch.yml: | -# key: -# nestedkey: value -# log4j2.properties: | -# key = value +esConfig: + elasticsearch.yml: | + xpack.security.enabled: false # Disable Elasticsearch security + xpack.security.http.ssl.enabled: false # Disable HTTP SSL + xpack.security.transport.ssl.enabled: false # Disable transport SSL -createCert: true +createCert: false esJvmOptions: {} # processors.options: | @@ -58,7 +57,7 @@ extraEnvs: - name: CA_CERT value: "/usr/share/elasticsearch/config/http-certs/ca.crt" - name: ES_URL - value: "https://elasticsearch-master:9200" + value: "http://elasticsearch-master:9200" - name: TEMPLATE_PATH_1 value: "/usr/share/elasticsearch/templates/chat_v1_idx.json" - name: TEMPLATE_PATH_2 @@ -77,7 +76,7 @@ envFrom: [] # Disable it to use your own elastic-credential Secret. secret: - enabled: true + enabled: false password: "" # generated randomly if not defined # A list of secrets and their paths to mount inside the pod @@ -486,7 +485,7 @@ podManagementPolicy: "Parallel" # If you experience slow pod startups you probably want to set this to `false`. enableServiceLinks: true -protocol: https +protocol: http httpPort: 9200 transportPort: 9300 @@ -630,7 +629,7 @@ networkPolicy: ## elasticsearch-master-transport-client: "true" http: - enabled: false + enabled: true ## if explicitNamespacesSelector is not set or set to {}, only client Pods being in the networkPolicy's namespace ## and matching all criteria can reach the DB. ## But sometimes, we want the Pods to be accessible to clients from other namespaces, in this case, we can use this