Files
infra-prod/deploy/elk-stack/kibana.yaml
2025-03-31 10:41:56 +02:00

19 lines
912 B
YAML

apiVersion: kibana.k8s.elastic.co/v1
kind: Kibana
metadata:
name: kibana-ha
spec:
version: 8.17.4
count: 2
elasticsearchRef:
name: elasticsearch-ha
config:
# Enable OIDC and basic auth as available providers.
xpack.security.authc.providers: [oidc, basic]
# Specify which OIDC realm to use (this should match the name of your OIDC realm in Elasticsearch)
xpack.security.authc.providers.oidc.realm: "panic"
# Client settings that Kibana will use (and which must match your OIDC realm settings in Elasticsearch)
xpack.security.authc.providers.oidc.panic.client_id: "kibana"
xpack.security.authc.providers.oidc.panic.client_secret: "NDgPp4m8IhdpZ5z6wrCFByD9Y00dN7ga"
# The URL for the Keycloak OpenID Connect discovery document.
xpack.security.authc.providers.oidc.panic.openid_connect_url: "https://sso.panic.haus/realms/panic-haus/.well-known/openid-configuration"