Install Lets Encrypt On Wazuh

428 views
Skip to first unread message

Catatan mpoo

unread,
Aug 1, 2022, 11:53:05 PM8/1/22
to Wazuh mailing list
is it possible to install Lets Encrypt on Wazuh? If yes, I ask for a recommendation

Miguel Angel Fernandez Torralbo

unread,
Aug 2, 2022, 3:21:10 AM8/2/22
to Wazuh mailing list

Hi! Yes, it is possible.
The best option for this is running Nginx as a proxy server for the Dashboard. You need either certbot or Let's Encrypt on it. Then you can perform Let's Encrypt verification on the Dashboard, you will only need one domain/subdomain for your deployment. Internally, you could use the self-signed certificates .
Check this out: https://www.the-digital-life.com/nginx-reverse-proxy/

Another option is to use Let's Encrypt for every Wazuh component I would not recommend this option for a small environment as it is harder to implement and maintain. For this you will need:
- Set up a domain or subdomain for each node example
- Validate and generate the certs for the public domains. Certbot job. (With a valid date of 2 months).
- Renew the certificates.
This may be helpful: https://www.linkedin.com/pulse/encrypting-communications-elasticsearch-lets-encrypt-fl%C3%A1vio-knob

Regards.

Catatan mpoo

unread,
Aug 3, 2022, 12:38:52 AM8/3/22
to Wazuh mailing list
I use option #1 and i can results like this.
when I type in the domain, the wazuh-indexer appears
Screenshot_2022-08-03_11-36-54.png
Reply all
Reply to author
Forward
0 new messages