elastic / elastic/terraform-provider-elasticstack

[Feature] Manage Elastic Endpoint Policy Settings

Open
#399 1 comment 2 reactions 0 assignees View on GitHub
enhancement needs-research triaged
Dominant language
Go
Stars
209
Forks
150
Avg merge
23h 11m
Merged PRs (30d)
169

Description

**Is your feature request related to a problem? Please describe.**

I would like to manage my Elastic Endpoint policies as configuration, specifically: Trusted Applications, Event Filters, Host Isolation Exceptions, and Blocklist.

These can grow quite big and complex, and having a proper way to manage and audit trail them would be helpful.

**Describe the resource you would like to have implemented.**

I'm honestly not sure which API endpoint this would be, it might be part of Fleet, or part of Security, I wasn't really able to find this information clearly.

**Describe the solution you'd like**

I'd like resources to be able to manage these.

**Describe alternatives you've considered**

I could either manage them via the UI, via a script of some kind, or via something like the generic Mastercard rest api.

**Additional context**

![image](https://github.com/elastic/terraform-provider-elasticstack/assets/8277432/a9b6f8c3-9251-43ad-957b-6e44623806cf)

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by determining whether Fleet or Security owns the Elastic Endpoint policy APIs mentioned in the issue, then review the provider's existing resource patterns. Done means Terraform resources can manage Trusted Applications, Event Filters, Host Isolation Exceptions, and Blocklist settings with auditable configuration and documented behavior.

Written by the indexing model from the issue text.

Assessment

Tech stack
elasticsearch, terraform
Domain
devops, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.