@@ -106,6 +106,7 @@ services:
106106 depends_on :
107107 - opensearch
108108 volumes :
109+ - dashboards-helper-data-init:/data/init
109110 - type : bind
110111 bind :
111112 create_host_path : false
@@ -218,6 +219,7 @@ services:
218219 ports :
219220 - 127.0.0.1:5044:5044
220221 volumes :
222+ - logstash-persistent-queue:/logstash-persistent-queue
221223 - type : bind
222224 bind :
223225 create_host_path : false
@@ -323,6 +325,12 @@ services:
323325 - 127.0.0.1:5045:5045
324326 volumes :
325327 - nginx-log-path:/nginx:ro
328+ - filebeat-logs-registry:/usr/share/filebeat-logs/data
329+ - filebeat-nginx-registry:/usr/share/filebeat-nginx/data
330+ - filebeat-syslog-tcp-registry:/usr/share/filebeat-syslog-tcp/data
331+ - filebeat-syslog-udp-registry:/usr/share/filebeat-syslog-udp/data
332+ - filebeat-tcp-registry:/usr/share/filebeat-tcp/data
333+ - filebeat-zeek-files-logs-registry:/usr/share/filebeat-zeek-files-logs/data
326334 - type : bind
327335 bind :
328336 create_host_path : false
@@ -723,6 +731,9 @@ services:
723731 - ./config/suricata.env
724732 - ./config/suricata-offline.env
725733 volumes :
734+ - suricata-config:/etc/suricata
735+ - suricata-managed:/var/lib/suricata
736+ - suricata-run:/var/run/suricata
726737 - type : bind
727738 bind :
728739 create_host_path : false
@@ -791,6 +802,9 @@ services:
791802 - ./config/suricata.env
792803 - ./config/suricata-live.env
793804 volumes :
805+ - suricata-live-config:/etc/suricata
806+ - suricata-live-managed:/var/lib/suricata
807+ - suricata-live-run:/var/run/suricata
794808 - type : bind
795809 bind :
796810 create_host_path : false
@@ -849,6 +863,7 @@ services:
849863 - ./config/filescan-secret.env
850864 - ./config/filescan.env
851865 volumes :
866+ - filescan-data:/filescan/data
852867 - type : bind
853868 bind :
854869 create_host_path : false
@@ -904,6 +919,9 @@ services:
904919 - ./config/pipeline.env
905920 shm_size : 512mb
906921 volumes :
922+ - strelka-backend-clamav-rules:/var/lib/clamav
923+ - strelka-backend-yara-rules-src:/yara-rules-src
924+ - strelka-backend-yara-rules:/yara-rules
907925 - type : bind
908926 bind :
909927 create_host_path : false
@@ -954,6 +972,7 @@ services:
954972 - ./config/redis.env
955973 - ./config/pipeline.env
956974 volumes :
975+ - strelka-frontend-logs:/var/log/strelka
957976 - type : bind
958977 bind :
959978 create_host_path : false
@@ -966,7 +985,6 @@ services:
966985 source : ./strelka/config/frontend/
967986 target : /etc/strelka/configmap
968987 read_only : true
969- - strelka-logs:/var/log/strelka/
970988 healthcheck :
971989 test : ["CMD", "/usr/local/bin/container_health.sh"]
972990 interval : 30s
@@ -1611,9 +1629,26 @@ services:
16111629 traefik.enable : false
16121630
16131631volumes :
1614- # shared named volume so filebeat can access nginx access logs
1632+ dashboards-helper-data-init :
1633+ filebeat-logs-registry :
1634+ filebeat-nginx-registry :
1635+ filebeat-syslog-tcp-registry :
1636+ filebeat-syslog-udp-registry :
1637+ filebeat-tcp-registry :
1638+ filebeat-zeek-files-logs-registry :
1639+ filescan-data :
1640+ logstash-persistent-queue :
16151641 nginx-log-path :
1616- strelka-logs :
1642+ strelka-backend-clamav-rules :
1643+ strelka-backend-yara-rules-src :
1644+ strelka-backend-yara-rules :
1645+ strelka-frontend-logs :
1646+ suricata-config :
1647+ suricata-live-config :
1648+ suricata-live-managed :
1649+ suricata-live-run :
1650+ suricata-managed :
1651+ suricata-run :
16171652
16181653networks :
16191654 default :
0 commit comments