# Can't login to Kibana

**URL:** https://discuss.elastic.co/t/cant-login-to-kibana/145159
**Category:** Elasticsearch
**Created:** [August 20, 2018, 12:22pm UTC](https://discuss.elastic.co/t/cant-login-to-kibana/145159 "2018-08-20T12:22:10Z")
**Posts on this page:** 3
**Page:** 1

<div class="post-metadata">

### Author: ![Michake](https://avatars.discourse-cdn.com/v4/letter/m/65b543/32.png) [@Michake](https://discuss.elastic.co/u/Michake)
#### Post date: [August 20, 2018, 12:22pm UTC](https://discuss.elastic.co/t/cant-login-to-kibana/145159/1 "2018-08-20T12:22:10Z")

</div>

Hi

```
After I installed EFK in K8S cluster, I tried to login Kibana, but I can't login, could you help me figure it out? Thanks!

```

I got Kibana link address by running following command: kubectl cluster-info  
Kibana is running at [http://10.25.73.147:8080/api/v1/namespaces/kube-system/services/kibana-logging/proxy](http://10.25.73.147:8080/api/v1/namespaces/kube-system/services/kibana-logging/proxy)

 ![kibana%20login%20%20error](https://us1.discourse-cdn.com/elastic/original/3X/3/d/3db9164e3acae6757fe7ba52f2b1856a6a655183.jpeg) ![kibana%20logs](https://us1.discourse-cdn.com/elastic/original/3X/1/d/1dde36fc188fa30277c3936eec301409c0450d33.jpeg) ![kibana%20login%20error%202](https://us1.discourse-cdn.com/elastic/original/3X/e/e/ee02b0585ddffb587751751544e36a7244dfc289.jpeg)

**es-statefulset.yaml**

# RBAC authn and authz

## apiVersion: v1 kind: ServiceAccount metadata: name: elasticsearch-logging namespace: kube-system labels: k8s-app: elasticsearch-logging [kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true" [addonmanager.kubernetes.io/mode:](http://addonmanager.kubernetes.io/mode:) Reconcile

kind: ClusterRole  
apiVersion: [rbac.authorization.k8s.io/v1beta1](http://rbac.authorization.k8s.io/v1beta1)  
metadata:  
name: elasticsearch-logging  
labels:  
k8s-app: elasticsearch-logging  
[kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true"  
[addonmanager.kubernetes.io/mode:](http://addonmanager.kubernetes.io/mode:) Reconcile  
rules:

- apiGroups:
  - ""  
resources:
  - "services"
  - "namespaces"
  - "endpoints"  
verbs:
  - "get"

* * *

kind: ClusterRoleBinding  
apiVersion: [rbac.authorization.k8s.io/v1beta1](http://rbac.authorization.k8s.io/v1beta1)  
metadata:  
namespace: kube-system  
name: elasticsearch-logging  
labels:  
k8s-app: elasticsearch-logging  
[kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true"  
[addonmanager.kubernetes.io/mode:](http://addonmanager.kubernetes.io/mode:) Reconcile  
subjects:

- kind: ServiceAccount  
name: elasticsearch-logging  
namespace: kube-system  
apiGroup: ""  
roleRef:  
kind: ClusterRole  
name: elasticsearch-logging  
apiGroup: ""

* * *

# Elasticsearch deployment itself

apiVersion: apps/v1beta1  
kind: StatefulSet  
metadata:  
name: elasticsearch-logging  
namespace: kube-system  
labels:  
k8s-app: elasticsearch-logging  
version: v5.6.4  
[kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true"  
[addonmanager.kubernetes.io/mode:](http://addonmanager.kubernetes.io/mode:) Reconcile  
spec:  
serviceName: elasticsearch-logging  
replicas: 2  
selector:  
matchLabels:  
k8s-app: elasticsearch-logging  
version: v5.6.4  
template:  
metadata:  
labels:  
k8s-app: elasticsearch-logging  
version: v5.6.4  
[kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true"  
spec:  
serviceAccountName: elasticsearch-logging  
containers:  
- image: x.x.x.x/kubernetes/elasticsearch:v5.6.4  
name: elasticsearch-logging  
resources:  
# need more cpu upon initialization, therefore burstable class  
limits:  
cpu: 1000m  
requests:  
cpu: 100m  
ports:  
- containerPort: 9200  
name: db  
protocol: TCP  
- containerPort: 9300  
name: transport  
protocol: TCP  
volumeMounts:  
- name: elasticsearch-logging  
mountPath: /data  
env:  
- name: "NAMESPACE"  
valueFrom:  
fieldRef:  
fieldPath: metadata.namespace  
volumes:  
- name: elasticsearch-logging  
emptyDir: {}  
# Elasticsearch requires vm.max\_map\_count to be at least 262144.  
# If your OS already sets up this number to a higher value, feel free  
# to remove this init container.  
initContainers:  
- image: x.x.x.x/kubernetes/alpine:3.6  
command: ["/sbin/sysctl", "-w", "vm.max\_map\_count=262144"]  
name: elasticsearch-logging-init  
securityContext:  
privileged: true

**kibana-deployment.yaml**

apiVersion: extensions/v1beta1  
kind: Deployment  
metadata:  
name: kibana-logging  
namespace: kube-system  
labels:  
k8s-app: kibana-logging  
[kubernetes.io/cluster-service:](http://kubernetes.io/cluster-service:) "true"  
[addonmanager.kubernetes.io/mode:](http://addonmanager.kubernetes.io/mode:) Reconcile  
spec:  
replicas: 1  
selector:  
matchLabels:  
k8s-app: kibana-logging  
template:  
metadata:  
labels:  
k8s-app: kibana-logging  
annotations:  
[seccomp.security.alpha.kubernetes.io/pod:](http://seccomp.security.alpha.kubernetes.io/pod:) 'docker/default'  
spec:  
containers:  
- name: kibana-logging  
#image: [docker.elastic.co/kibana/kibana:5.6.4](http://docker.elastic.co/kibana/kibana:5.6.4)  
image: 30.23.12.198/kubernetes/kibana:5.6.4  
resources:  
# need more cpu upon initialization, therefore burstable class  
limits:  
cpu: 1000m  
requests:  
cpu: 100m  
env:  
- name: ELASTICSEARCH\_URL  
value: [http://elasticsearch-logging:9200](http://elasticsearch-logging:9200)  
#value: [http://10.254.191.255:9200](http://10.254.191.255:9200)  
- name: SERVER\_BASEPATH  
value: /api/v1/namespaces/kube-system/services/kibana-logging/proxy  
#value: ""  
- name: XPACK\_MONITORING\_ENABLED  
value: "false"  
- name: XPACK\_SECURITY\_ENABLED  
value: "false"  
ports:  
- containerPort: 5601  
name: ui  
protocol: TCP

---

<div class="post-metadata">

### Author: ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)
#### Post date: [August 22, 2018, 2:11am UTC](https://discuss.elastic.co/t/cant-login-to-kibana/145159/2 "2018-08-22T02:11:59Z")

</div>

Please don't post pictures of text, they are difficult to read and some people may not be even able to see them.

It'd also greatly help if you formatted your post correctly, changing config into code format, as it will really help readability 🙂

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [September 19, 2018, 2:12am UTC](https://discuss.elastic.co/t/cant-login-to-kibana/145159/3 "2018-09-19T02:12:07Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
