# Sovereign tenant branding for Wazuh Dashboard (OpenSearch Dashboards). # Mounted over the default config — all required fields must be present. server.host: "0.0.0.0" server.port: 5601 opensearch.hosts: ["https://wazuh-indexer:9200"] opensearch.ssl.verificationMode: certificate opensearch.username: kibanaserver opensearch.password: "{{ wazuh_admin_password }}" opensearch.requestHeadersAllowlist: ["securitytenant","Authorization"] opensearch_security.multitenancy.enabled: false opensearch_security.readonly_mode.roles: ["kibana_read_only"] server.ssl.enabled: true server.ssl.key: /usr/share/wazuh-dashboard/certs/wazuh-dashboard-key.pem server.ssl.certificate: /usr/share/wazuh-dashboard/certs/wazuh-dashboard.pem opensearch.ssl.certificateAuthorities: ["/usr/share/wazuh-dashboard/certs/root-ca.pem"] uiSettings.overrides.defaultRoute: /app/wazuh opensearchDashboards.branding: applicationTitle: "{{ tenant_name }} Security" {% if tenant_logo_local_path | default('') != '' %} logo: defaultUrl: "/ui/logos/branding-logo.png" darkModeUrl: "/ui/logos/branding-logo.png" mark: defaultUrl: "/ui/logos/branding-logo.png" darkModeUrl: "/ui/logos/branding-logo.png" {% endif %}