10장. Using Collector runtime configuration
Using Collector runtime configuration is a Technology Preview feature only. Technology Preview features are not supported with Red Hat production service level agreements (SLAs) and might not be functionally complete. Red Hat does not recommend using them in production. These features provide early access to upcoming product features, enabling customers to test functionality and provide feedback during the development process.
For more information about the support scope of Red Hat Technology Preview features, see Technology Preview Features Support Scope.
Collector runtime configuration enables you to modify some collector behaviors without restarting Collector. Collector runtime configuration is set using a ConfigMap object called collector-config. When you create or update the ConfigMap object, Collector refreshes the runtime configuration. When you delete the ConfigMap object, the settings revert to the default runtime configuration values.
Currently, only two settings are controlled by using Collector runtime configuration:
-
networking.externalIps.enabledcontrols if the visualizing external entities feature is enabled or disabled. The default isDISABLED. In release 4.6, this setting wasnetworking.externalIps.enableand was a boolean. For more information, see Visualizing external entities. -
networking.maxConnectionsPerMinuteis the maximum number of open networking connections reported by Collector per container per minute. The default value is 2048.
The following example enables the visualizing external entities feature and sets maxConnectionsPerMinute to 2048.
apiVersion: v1
kind: ConfigMap
metadata:
name: collector-config
namespace: stackrox
data:
runtime_config.yaml: |
networking:
externalIps:
enabled: ENABLED
direction: EGRESS
maxConnectionsPerMinute: 2048
where:
data.runtime_config.yaml-
Specifies whether RHACS mounts this file at
/etc/stackrox/runtime_config.yaml. data.runtime_config.yaml.networking.externalIps.direction-
Specifies whether to collect ingress connections, egress connections, or both. If you do not specify a value, it defaults to
BOTH.