-
Notifications
You must be signed in to change notification settings - Fork 490
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[DOC] Add a new section in documentation for security best practices and recommendations. #5782
Comments
Examples:
@DarshitChanpura @cwperks @peternied any other suggestions for good common practices we can add |
Please add a note about #3084. Thanks! |
@scrawfor99 You may also want to consider adding a section on dashboards security setup as well.
Instead:
Link to: https://opensearch.org/docs/latest/install-and-configure/install-dashboards/tls/ |
Thanks for calling this out @hdhalter just a couple more to add on:
|
linking xkcd is certainly never wrong 😉 👍 (i don't know how often i've sent a link to this specific comic - it's just a very good way of explaining the very hard concept of "safe" passwords) what about TLS settings? i guess they should also be documented (i remember that the default settings for OS have been updated; for OSD the PR is AFAIK still hanging to even add support for TLS v1.3, much less make it the default?). though in the best case the default is already the current "strong" default and no further documentation is needed as it just works out of the box. |
Hi @hdhalter , adding my comment to be assigned to this one. Thx, John |
@leanneeliatra/@anton - Can you please add a comment so I can assign you? |
@hdhalter Please assign me! Thank you. |
PR submitted for review #7113 |
* adding top ten security best practices Signed-off-by: [email protected] <[email protected]> * changing nav order Signed-off-by: [email protected] <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding bonus tip Signed-off-by: [email protected] <[email protected]> * updates to best practices Signed-off-by: [email protected] <[email protected]> * integrating Darshits suggestions for improvement and reviewdog fixes Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * reviewdog update Signed-off-by: [email protected] <[email protected]> * Apply suggestions from code review Co-authored-by: Naarcha-AWS <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * reviewdog updates Signed-off-by: [email protected] <[email protected]> * Update _security/configuration/best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Add editorial comment Signed-off-by: Naarcha-AWS <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update _security/configuration/best-practices.md Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> --------- Signed-off-by: [email protected] <[email protected]> Signed-off-by: AntonEliatra <[email protected]> Signed-off-by: leanneeliatra <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> Co-authored-by: AntonEliatra <[email protected]> Co-authored-by: Naarcha-AWS <[email protected]> Co-authored-by: Nathan Bower <[email protected]>
* adding top ten security best practices Signed-off-by: [email protected] <[email protected]> * changing nav order Signed-off-by: [email protected] <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding bonus tip Signed-off-by: [email protected] <[email protected]> * updates to best practices Signed-off-by: [email protected] <[email protected]> * integrating Darshits suggestions for improvement and reviewdog fixes Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * reviewdog update Signed-off-by: [email protected] <[email protected]> * Apply suggestions from code review Co-authored-by: Naarcha-AWS <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * reviewdog updates Signed-off-by: [email protected] <[email protected]> * Update _security/configuration/best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Add editorial comment Signed-off-by: Naarcha-AWS <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update _security/configuration/best-practices.md Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> --------- Signed-off-by: [email protected] <[email protected]> Signed-off-by: AntonEliatra <[email protected]> Signed-off-by: leanneeliatra <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> Co-authored-by: AntonEliatra <[email protected]> Co-authored-by: Naarcha-AWS <[email protected]> Co-authored-by: Nathan Bower <[email protected]> (cherry picked from commit 8e049cd) Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
…5782 (opensearch-project#7113) * adding top ten security best practices Signed-off-by: [email protected] <[email protected]> * changing nav order Signed-off-by: [email protected] <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding to best practices Signed-off-by: AntonEliatra <[email protected]> * adding bonus tip Signed-off-by: [email protected] <[email protected]> * updates to best practices Signed-off-by: [email protected] <[email protected]> * integrating Darshits suggestions for improvement and reviewdog fixes Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * review suggestions to grammer Signed-off-by: [email protected] <[email protected]> * reviewdog update Signed-off-by: [email protected] <[email protected]> * Apply suggestions from code review Co-authored-by: Naarcha-AWS <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * reviewdog updates Signed-off-by: [email protected] <[email protected]> * Update _security/configuration/best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: leanneeliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Add editorial comment Signed-off-by: Naarcha-AWS <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update _security/configuration/best-practices.md Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: AntonEliatra <[email protected]> * Update best-practices.md Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Signed-off-by: Naarcha-AWS <[email protected]> * Apply suggestions from code review Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> --------- Signed-off-by: [email protected] <[email protected]> Signed-off-by: AntonEliatra <[email protected]> Signed-off-by: leanneeliatra <[email protected]> Signed-off-by: Naarcha-AWS <[email protected]> Co-authored-by: AntonEliatra <[email protected]> Co-authored-by: Naarcha-AWS <[email protected]> Co-authored-by: Nathan Bower <[email protected]>
Add a new section in documentation for security best practices and recommendations
The text was updated successfully, but these errors were encountered: