jason4
March 12, 2024, 1:06am
1
Hello,
Is it possible to set a ca cert along with the advanced.artifacts.global.base_url
in the advanced settings for Elastic Defend, to be used when downloading from the security artifacts repository. Following the guide described here:
Configure offline endpoints and air-gapped environments | Elastic Security Solution [8.12] | Elastic
I only see options for ca cert options for "elasticsearch" and "users" (for fleet server), but non for the artifacts repo.
lesio
(Leszek Kubik)
March 18, 2024, 5:19pm
2
You are correct, unfortunately. There is no way to provide ca cert for security artifacts repository URL.
Note however, the artifacts themselves are RSA-signed so Elastic Defend won't accept any "untrusted" artifacts.
lesio
(Leszek Kubik)
March 18, 2024, 5:32pm
3
The only workaround for now to use https with custom self-signed ca would be to import it into cert store / key chain on all machines.
lesio
(Leszek Kubik)
March 22, 2024, 3:26pm
4
Configuration option will be provided in Kibana in 8.14.0
jason4
April 3, 2024, 5:24pm
5
Awesome, thank you for the confirmation and progress!
system
(system)
Closed
May 1, 2024, 5:24pm
6
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.