Skip to content

Commit 8f1cc68

Browse files
authored
move restrictions doc up a level (#1109)
1 parent b98f1a2 commit 8f1cc68

File tree

5 files changed

+28
-68
lines changed

5 files changed

+28
-68
lines changed
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
{{ecloud}} has built-in security. For example, HTTPS communications between {{ecloud}} and the internet, as well as inter-node communications, are secured automatically, and cluster data is encrypted at rest.
2+
3+
In {{ech}}, you can augment these security features in the following ways:
4+
* Configure [traffic filtering](/deploy-manage/security/traffic-filtering.md) to prevent unauthorized access to your deployments.
5+
* Encrypt your deployment with a [customer-managed encryption key](/deploy-manage/security/encrypt-deployment-with-customer-managed-encryption-key.md).
6+
* [Secure your settings](/deploy-manage/security/secure-settings.md) using {{es}} and {{kib}} keystores.
7+
* Use the list of [{{ecloud}} static IPs](/deploy-manage/security/elastic-cloud-static-ips.md) to allow or restrict communications in your infrastructure.
8+
9+
{{ech}} doesn't support custom SSL certificates, which means that a custom CNAME for an {{ech}} endpoint such as *mycluster.mycompanyname.com* also is not supported.
10+
11+
Refer to [{{ecloud}} security](https://www.elastic.co/cloud/security) for more details about Elastic security and privacy programs.

deploy-manage/deploy/elastic-cloud/cloud-hosted.md

Lines changed: 14 additions & 55 deletions
Original file line numberDiff line numberDiff line change
@@ -11,47 +11,6 @@ mapped_pages:
1111

1212
# {{ech}}
1313

14-
% What needs to be done: Refine
15-
16-
% GitHub issue: https://github.com/elastic/docs-projects/issues/338
17-
18-
% Use migrated content from existing pages that map to this page:
19-
20-
% - [ ] ./raw-migrated-files/cloud/cloud/ec-getting-started.md
21-
% - [ ] ./raw-migrated-files/cloud/cloud/ec-prepare-production.md
22-
% Notes: link roundup is good but the plan for prod content is not needed here
23-
% - [ ] ./raw-migrated-files/cloud/cloud/ec-faq-getting-started.md
24-
% Notes: extract what we can from faq
25-
% - [ ] ./raw-migrated-files/cloud/cloud/ec-about.md
26-
% Notes: redirect only
27-
% - [ ] ./raw-migrated-files/cloud/cloud-heroku/ech-configure.md
28-
29-
% Internal links rely on the following IDs being on this page (e.g. as a heading ID, paragraph ID, etc):
30-
31-
$$$faq-aws-difference$$$
32-
33-
$$$faq-aws$$$
34-
35-
$$$faq-config$$$
36-
37-
$$$faq-elastic$$$
38-
39-
$$$faq-full-stack$$$
40-
41-
$$$faq-limit$$$
42-
43-
$$$faq-subscriptions$$$
44-
45-
$$$faq-trial$$$
46-
47-
$$$faq-vs-aws$$$
48-
49-
$$$faq-what$$$
50-
51-
$$$faq-where$$$
52-
53-
$$$faq-x-pack$$$
54-
5514
**{{ech}} is the {{stack}}, managed through {{ecloud}} deployments.**
5615

5716
It is also formerly known as {{es}} Service.
@@ -64,7 +23,6 @@ A **hosted deployment** helps you manage an {{es}} cluster and instances of othe
6423
{{ech}} is one of the two deployment options available on {{ecloud}}. [Depending on your needs](../elastic-cloud.md), you can also run [{{serverless-full}} projects](/deploy-manage/deploy/elastic-cloud/serverless.md).
6524
::::
6625

67-
6826
**Hardware profiles to optimize deployments for your usage.**
6927

7028
You can optimize the configuration and performance of a deployment by selecting a **hardware profile** that matches your usage.
@@ -91,7 +49,7 @@ These solutions help you accomplish your use cases: Ingest data into the deploym
9149
Of course, you can choose to follow your own path and use Elastic components available in your deployment to ingest, visualize, and analyze your data independently from solutions.
9250

9351

94-
## How to operate {{ech}}? [ec_how_to_operate_elasticsearch_service]
52+
## How to operate {{ech}} [ec_how_to_operate_elasticsearch_service]
9553

9654
**Where to start?**
9755

@@ -110,7 +68,13 @@ There are a few things that can help you make sure that your production deployme
11068

11169
**Secure your environment**
11270

113-
Control which users and services can access your deployments by [securing your environment](/deploy-manage/security/secure-your-cluster-deployment.md). [Add authentication mechanisms](/deploy-manage/users-roles.md), configure [traffic filtering](/deploy-manage/security/traffic-filtering.md) for private link, encrypt your deployment data and snapshots at rest [with your own key](/deploy-manage/security/encrypt-deployment-with-customer-managed-encryption-key.md), [manage trust](/deploy-manage/remote-clusters.md) with {{es}} clusters from other environments, and more.
71+
:::{include} /deploy-manage/_snippets/ecloud-security.md
72+
:::
73+
74+
Refer to [](/deploy-manage/security.md) for more details.
75+
76+
:::{include} /deploy-manage/security/_snippets/complete-security.md
77+
:::
11478

11579
**Monitor your deployments and keep them healthy**
11680

@@ -120,13 +84,13 @@ Control which users and services can access your deployments by [securing your e
12084

12185
Find more information about {{ech}} on the following pages:
12286

123-
* [Subscription Levels](/deploy-manage/license.md)
124-
* [Version Policy](/deploy-manage/deploy/elastic-cloud/available-stack-versions.md)
125-
* [{{ech}} Hardware](cloud://reference/cloud-hosted/hardware.md)
126-
* [{{ech}} Regions](cloud://reference/cloud-hosted/regions.md)
127-
* [Service Status](/deploy-manage/cloud-organization/service-status.md)
87+
* [](/deploy-manage/license.md)
88+
* [](/deploy-manage/deploy/elastic-cloud/available-stack-versions.md)
89+
* [{{ech}} hardware](cloud://reference/cloud-hosted/hardware.md)
90+
* [{{ech}} regions](cloud://reference/cloud-hosted/regions.md)
91+
* [](/deploy-manage/cloud-organization/service-status.md)
12892
* [Getting help](/troubleshoot/index.md)
129-
* [Restrictions and known problems](/deploy-manage/deploy/elastic-cloud/restrictions-known-problems.md)
93+
* [](/deploy-manage/deploy/elastic-cloud/restrictions-known-problems.md)
13094

13195
:::{dropdown} {{ech}} FAQ
13296

@@ -144,7 +108,6 @@ This frequently-asked-questions list helps you with common questions while you g
144108
* [What is the difference between {{ech}} and the Amazon {{es}} Service?](/deploy-manage/deploy/elastic-cloud/cloud-hosted.md#faq-vs-aws)
145109
* [Can I use {{ech}} on platforms other than AWS?](/deploy-manage/deploy/elastic-cloud/cloud-hosted.md#faq-aws)
146110
* [Do you offer Elastic’s commercial products?](/deploy-manage/deploy/elastic-cloud/cloud-hosted.md#faq-elastic)
147-
* [Is my {{es}} cluster protected by X-Pack?](/deploy-manage/deploy/elastic-cloud/cloud-hosted.md#faq-x-pack)
148111
* [Is there a limit on the number of documents or indexes I can have in my cluster?](/deploy-manage/deploy/elastic-cloud/cloud-hosted.md#faq-limit)
149112

150113
$$$faq-what$$$**What is {{ech}}?**
@@ -191,10 +154,6 @@ $$$faq-elastic$$$**Do you offer Elastic’s commercial products?**
191154

192155
[Contact us](https://www.elastic.co/cloud/contact) to learn more.
193156

194-
195-
$$$faq-x-pack$$$**Is my {{es}} cluster protected by X-Pack?**
196-
: Yes, X-Pack security features offer the full power to protect your {{ech}} deployment with basic authentication and role-based access control.
197-
198157
$$$faq-limit$$$**Is there a limit on the number of documents or indexes I can have in my cluster?**
199158
: No. We do not enforce any artificial limit on the number of indexes or documents you can store in your cluster.
200159

deploy-manage/deploy/elastic-cloud/restrictions-known-problems.md

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,6 @@
22
applies_to:
33
deployment:
44
ess: ga
5-
serverless: ga
65
mapped_pages:
76
- https://www.elastic.co/guide/en/cloud/current/ec-restrictions.html
87
---

deploy-manage/security.md

Lines changed: 2 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -32,22 +32,13 @@ deployment:
3232
serverless: all
3333
```
3434
35-
{{ecloud}} has built-in security. For example, HTTPS communications between {{ecloud}} and the internet, as well as inter-node communications, are secured automatically, and cluster data is encrypted at rest.
36-
37-
In {{ech}}, you can augment these Security features in the following ways:
38-
* Configure [traffic filtering](/deploy-manage/security/traffic-filtering.md) to prevent unauthorized access to your deployments.
39-
* Encrypt your deployment with a [customer-managed encryption key](/deploy-manage/security/encrypt-deployment-with-customer-managed-encryption-key.md).
40-
* [Secure your settings](/deploy-manage/security/secure-settings.md) using {{es}} and {{kib}} keystores.
41-
* Use the list of [{{ecloud}} static IPs](/deploy-manage/security/elastic-cloud-static-ips.md) to allow or restrict communications in your infrastructure.
42-
43-
{{ech}} doesn't support custom SSL certificates, which means that a custom CNAME for an {{ech}} endpoint such as *mycluster.mycompanyname.com* also is not supported.
35+
:::{include} /deploy-manage/_snippets/ecloud-security.md
36+
:::
4437
4538
::::{note}
4639
Serverless projects are fully managed and secured by Elastic, and do not have any configurable Security features at the project level.
4740
::::
4841
49-
Refer to [{{ecloud}} security](https://www.elastic.co/cloud/security) for more details about Elastic security and privacy programs.
50-
5142
## Securing your orchestrator
5243
```yaml {applies_to}
5344
deployment:

deploy-manage/toc.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -59,8 +59,8 @@ toc:
5959
- file: deploy/elastic-cloud/change-hardware.md
6060
- file: deploy/elastic-cloud/manage-deployments-using-elastic-cloud-api.md
6161
- file: deploy/elastic-cloud/keep-track-of-deployment-activity.md
62+
- file: deploy/elastic-cloud/restrictions-known-problems.md
6263
- file: deploy/elastic-cloud/tools-apis.md
63-
- file: deploy/elastic-cloud/restrictions-known-problems.md
6464
- file: deploy/cloud-enterprise.md
6565
children:
6666
- file: deploy/cloud-enterprise/ece-architecture.md

0 commit comments

Comments
 (0)