[Fleet] Change permissions for Fleet enroll role (#85802)

* Add APM traces index names to Fleet enroll role

* Removes fleet permissions for `events-*` as they became obsolete

fixes #85761
This commit is contained in:
Silvia Mitter 2020-12-15 09:31:39 +01:00 committed by GitHub
parent ffe29f769a
commit 98308f8680
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23
3 changed files with 4 additions and 4 deletions

View file

@ -24,7 +24,7 @@ export async function generateOutputApiKey(
cluster: ['monitor'],
index: [
{
names: ['logs-*', 'metrics-*', 'events-*', '.ds-logs-*', '.ds-metrics-*', '.ds-events-*'],
names: ['logs-*', 'metrics-*', 'traces-*', '.ds-logs-*', '.ds-metrics-*', '.ds-traces-*'],
privileges: ['write', 'create_index', 'indices:admin/auto_create'],
},
],

View file

@ -139,7 +139,7 @@ export async function setupFleet(
cluster: ['monitor', 'manage_api_key'],
indices: [
{
names: ['logs-*', 'metrics-*', 'events-*', '.ds-logs-*', '.ds-metrics-*', '.ds-events-*'],
names: ['logs-*', 'metrics-*', 'traces-*', '.ds-logs-*', '.ds-metrics-*', '.ds-traces-*'],
privileges: ['write', 'create_index', 'indices:admin/auto_create'],
},
],

View file

@ -62,10 +62,10 @@ export default function (providerContext: FtrProviderContext) {
names: [
'logs-*',
'metrics-*',
'events-*',
'traces-*',
'.ds-logs-*',
'.ds-metrics-*',
'.ds-events-*',
'.ds-traces-*',
],
privileges: ['write', 'create_index', 'indices:admin/auto_create'],
allow_restricted_indices: false,