Skip to content

Commit

Permalink
Merge pull request #11648 from Security-Onion-Solutions/fix/ilm_remov…
Browse files Browse the repository at this point in the history
…e_policy

Remove ILM policies for Cases and OSQuery manager indices
  • Loading branch information
weslambert authored Oct 27, 2023
2 parents d35483a + 76dd6f0 commit 9a1e95c
Showing 1 changed file with 0 additions and 78 deletions.
78 changes: 0 additions & 78 deletions salt/elasticsearch/defaults.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -108,8 +108,6 @@ elasticsearch:
match_mapping_type: string
settings:
index:
lifecycle:
name: so-case-logs
mapping:
total_fields:
limit: 1500
Expand All @@ -119,30 +117,6 @@ elasticsearch:
sort:
field: '@timestamp'
order: desc
policy:
phases:
cold:
actions:
set_priority:
priority: 0
min_age: 30d
delete:
actions:
delete: {}
min_age: 365d
hot:
actions:
rollover:
max_age: 30d
max_primary_shard_size: 50gb
set_priority:
priority: 100
min_age: 0ms
warm:
actions:
set_priority:
priority: 50
min_age: 30d
so-common:
close: 30
delete: 365
Expand Down Expand Up @@ -6349,33 +6323,7 @@ elasticsearch:
template:
settings:
index:
lifecycle:
name: so-logs-osquery-manager-action.responses-logs
number_of_replicas: 0
policy:
phases:
cold:
actions:
set_priority:
priority: 0
min_age: 30d
delete:
actions:
delete: {}
min_age: 365d
hot:
actions:
rollover:
max_age: 30d
max_primary_shard_size: 50gb
set_priority:
priority: 100
min_age: 0ms
warm:
actions:
set_priority:
priority: 50
min_age: 30d
so-logs-osquery-manager-actions:
index_sorting: false
index_template:
Expand All @@ -6392,33 +6340,7 @@ elasticsearch:
template:
settings:
index:
lifecycle:
name: so-logs-osquery-manager-actions-logs
number_of_replicas: 0
policy:
phases:
cold:
actions:
set_priority:
priority: 0
min_age: 30d
delete:
actions:
delete: {}
min_age: 365d
hot:
actions:
rollover:
max_age: 30d
max_primary_shard_size: 50gb
set_priority:
priority: 100
min_age: 0ms
warm:
actions:
set_priority:
priority: 50
min_age: 30d
so-logs-panw_x_panos:
index_sorting: false
index_template:
Expand Down

0 comments on commit 9a1e95c

Please sign in to comment.