赞
踩
https://elastalert2.readthedocs.io/en/latest/recipes/writing_filters.html
1、下载elastalert镜像
docker pull anjia0532/elastalert-docker
2、启动docker
#!/bin/bash
docker run -itd --restart=always --name elastalert --network host \
-v /data/elastalert/rules:/opt/elastalert/rules \
-v /data/elastalert/elastalert_modules:/opt/elastalert/elastalert_modules \
-e ELASTICSEARCH_HOST="172.16.xx.xx" \
-e ELASTICSEARCH_PORT=9200 \
-e CONTAINER_TIMEZONE="Asia/Shanghai" \
-e SET_CONTAINER_TIMEZONE=True \
-e TZ="Asia/Shanghai" \
-e SET_CONTAINER_TIMEZONE=True \
-e ELASTALERT_BUFFER_TIME=10 \
-e ELASTALERT_RUN_EVERY=1 \
-e ELASTICSEARCH_USER="elastic" \
-e ELASTICSEARCH_PASSWORD='xxxxxxx' \
anjia0532/elastalert-docker
Copyright © 2003-2013 www.wpsshop.cn 版权所有,并保留所有权利。