Sign inSign up

keygood/elk

By keygood

•Updated almost 5 years ago

Image
0

4.5K

keygood/elk repository overview

Elastic Stack Dockerfile

CircleCI License Docker Stars Docker Pulls Docker Image

This repository contains a Dockerfile of the Elastic Stack.

Dependencies

alpine:3.11

openjdk8-jre

Elasticsearch

Logstash

Kibana

Getting Started

$ docker run -d --name elk -p 5044:5044 -p 9200:9200 keygood/elk:7.9.3

Now Navigate To

With Docker for Mac : http://localhost⁠

With docker-machine : http://$(docker-machine ip)

With docker-engine : $(docker inspect -f '{{ .NetworkSettings.IPAddress }}' elk)

elk-logo

You can also use each part of the stack independently

keygood/elk:elasticsearch

keygood/elk:logstash

keygood/elk:kibana

Documentation

Add some demo data

Enable SSL

Change nginx password

Build a multi-node Elastic Stack cluster

Known Issues

I have noticed when running the new 5.0 version on a linux host you need to increase the memory map areas with the following command

echo "vm.max_map_count=262144" | sudo tee -a /etc/sysctl.conf

sudo sysctl -w vm.max_map_count=262144

Issues

Find a bug? Want more features? Find something missing in the documentation? Let me know! Please don't hesitate to file an issue

Credits

Heavily (if not entirely) influenced by all the elastic official docker images

Todo

Install/Run Elastic Stack

Start Daemon and watch folder with supervisord

Expose Logstash config folder as well as Nginx sites folder as Volumes

Build ES test data docker image

Add Nginx entrypoint to pass USER/PASS in as env vars

Add SSL (auto-create certs if not found)

Add back a 3.0 version of the stack (elk stack)

Integrate with Bro-IDS

Tag summary

Content type

Image

Digest

Size

40.7 MB

Last updated

almost 5 years ago

docker pull keygood/elk:filebeat-7.15.0