# Authentication Clarification for Elasticsearch 6+

**URL:** <https://discuss.elastic.co/t/authentication-clarification-for-elasticsearch-6/124344>\
**Category:** Elasticsearch\
**Created:** [March 16, 2018, 5:58pm UTC](https://discuss.elastic.co/t/authentication-clarification-for-elasticsearch-6/124344 "2018-03-16T17:58:20Z")\
**Posts on this page:** 1\
**Showing post:** 3

<div class="post-metadata">

**Author:** ![Airn5475](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/airn5475/32/13757_2.png) [@Airn5475](https://discuss.elastic.co/u/Airn5475)\
**Post date:** [March 16, 2018, 7:04pm UTC](https://discuss.elastic.co/t/authentication-clarification-for-elasticsearch-6/124344/3 "2018-03-16T19:04:51Z")

</div>

Sorry, I feel a bit confused.  
In our current setup I use 'elastic'/'changeme' to "secure" our stack. Yes, I know, shame on me.

Everything I'm reading now for 6+ says there is no longer a default password and you need to install X-Pack and run through `setup-passwords` to create built-in user passwords for elasticsearch, kibana and logstash. (As mentioned, I've tried a couple times without success).

Is it possible for me, using a Basic License, to secure my Elasticsearch, Kibana & Logstash using a username and password?

---

_[View the full topic](https://discuss.elastic.co/t/authentication-clarification-for-elasticsearch-6/124344)._
