-
Notifications
You must be signed in to change notification settings - Fork 73
Description
Description
We discovered a scenario where deploying Elastic agent with Fleet server integration need to have certificate to connect to Kibana.
This is setup apparently with variable KIBANA_CA or KIBANA_FLEET_CA.
I believe the code (reference in resources below) is related to the installation of Elastic agent with Fleet server on Kubernetes or docker.
Resources
The code related to this is here
I'm not seeing mention of setting up certificate between Elastic agent to Kibana in our documentation here and there.
This was discovered when we investigated error:
Kibana fetch policy failed: http GET request to https://kibana-multi:5601/api/fleet/agent_policies fails: fail to execute the HTTP GET request: Get "https://kibana-multi:5601/api/fleet/agent_policies": x509: certificate signed by unknown authority.
Collaboration
TBD. The docs and product team will work together to determine the best path forward.
Point of contact.
Main contact: @merlixelastic
Stakeholders: @lucabelluccini