Skip to content

Commit

Permalink
roles yml changes for security-analytics plugin (#2192) (#2225)
Browse files Browse the repository at this point in the history
* roles yml changes for security-analytics plugin

Signed-off-by: Raj Chakravarthi <[email protected]>
Signed-off-by: Raj Chakravarthi <[email protected]>
(cherry picked from commit 89a11c5)

Co-authored-by: Peter Nied <[email protected]>
  • Loading branch information
raj-chak and peternied authored Nov 3, 2022
1 parent 2a1e7d7 commit 4533c8c
Showing 1 changed file with 35 additions and 0 deletions.
35 changes: 35 additions & 0 deletions config/roles.yml
Original file line number Diff line number Diff line change
Expand Up @@ -255,3 +255,38 @@ point_in_time_full_access:
- '*'
allowed_actions:
- 'manage_point_in_time'

# Allows users to see security analytics detectors and others
security_analytics_read_access:
reserved: true
cluster_permissions:
- 'cluster:admin/opensearch/securityanalytics/alerts/get'
- 'cluster:admin/opensearch/securityanalytics/detector/get'
- 'cluster:admin/opensearch/securityanalytics/detector/search'
- 'cluster:admin/opensearch/securityanalytics/findings/get'
- 'cluster:admin/opensearch/securityanalytics/mapping/get'
- 'cluster:admin/opensearch/securityanalytics/mapping/view/get'
- 'cluster:admin/opensearch/securityanalytics/rule/get'
- 'cluster:admin/opensearch/securityanalytics/rule/search'

# Allows users to use all security analytics functionality
security_analytics_full_access:
reserved: true
cluster_permissions:
- 'cluster:admin/opensearch/securityanalytics/alerts/*'
- 'cluster:admin/opensearch/securityanalytics/detector/*'
- 'cluster:admin/opensearch/securityanalytics/findings/*'
- 'cluster:admin/opensearch/securityanalytics/mapping/*'
- 'cluster:admin/opensearch/securityanalytics/rule/*'
index_permissions:
- index_patterns:
- '*'
allowed_actions:
- 'indices:admin/mapping/put'
- 'indices:admin/mappings/get'

# Allows users to view and acknowledge alerts
security_analytics_ack_alerts:
reserved: true
cluster_permissions:
- 'cluster:admin/opensearch/securityanalytics/alerts/*'

0 comments on commit 4533c8c

Please sign in to comment.