From: Nelson Ko <ne...@sy...> - 2015-05-01 22:30:51
|
+1 Anything helps :) I'll add contribute what I can to the page, and will also encourage Amette to contribute as I know he has a fair bit of experience helping manage Synergiq's search cluster, but also his knowledge is also not full. For example, both he and I wondered why Tiki need dynamic scripting enabled (at least for our site) and haven't fully investigated. Also, he is going to upgrade our search cluster soon which allow Kibana 4, which is a really cool tool to be able to see what is in the index of ElasticSearch, which is really useful when configuring any Unified Search related queries in LIST plugin etc... https://www.elastic.co/blog/kibana-4-literally The Elasticsearch company also provide a non-open source security product called Shield which we are going to evaluate, against at the same time https://github.com/salyh/elasticsearch-security-plugin which is a 3rd party elasticsearch plugin. Nelson. On Thu, Apr 23, 2015 at 11:47 AM, Bernard Sfez <bs...@sh...> wrote: > Hello Tikiers, > > Tiki is more and more relying on ElasticSearch. > ES like everything else require attention and it seems most of us are not > ES pro (and may be no sysadmin oriented). > > It is now twice my server’s is shutdown because someone tried to hack it > using ES vulnerability and my lack of knowledge to set it as it should. > I asked the question to a few honorable menbers of the Tiki community and > it seems that I’m not alone with my thoughts (and problems). > > Even if ES is not Tiki wouldn’t be wise to have a “ES good/bad practicing” > page ? > Wouldn’t be wise to also keep tikiers informed when there is an ES > security update (https://www.elastic.co/community/security) ? > > > Bernard > > > ------------------------------------------------------------------------------ > BPM Camp - Free Virtual Workshop May 6th at 10am PDT/1PM EDT > Develop your own process in accordance with the BPMN 2 standard > Learn Process modeling best practices with Bonita BPM through live > exercises > http://www.bonitasoft.com/be-part-of-it/events/bpm-camp-virtual- > event?utm_ > source=Sourceforge_BPM_Camp_5_6_15&utm_medium=email&utm_campaign=VA_SF > _______________________________________________ > TikiWiki-devel mailing list > Tik...@li... > https://lists.sourceforge.net/lists/listinfo/tikiwiki-devel > > |