# Configure Kibana for HTTPS

**URL:** <https://discuss.elastic.co/t/configure-kibana-for-https/21712>\
**Category:** Elasticsearch\
**Created:** [January 19, 2015, 2:45pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712 "2015-01-19T14:45:37Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![Karthik\_M](https://avatars.discourse-cdn.com/v4/letter/k/e19b73/32.png) [@Karthik\_M](https://discuss.elastic.co/u/Karthik_M)\
**Post date:** [January 19, 2015, 2:45pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/1 "2015-01-19T14:45:37Z")

</div>

I want the front end of ES (kibana) to run on SSL but keep the backend  
connection from Kibana to ES unencrypted since both are running on the same  
host. I configured Apache2 to accept SSL connections and it works but when  
Kibana populates the dashboard it get the below error. Any help is very  
much appreciated. Could not reach  
[http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/\_nodes](http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/_nodes)  
[http://ec2-xx-xx-xx-xx.compute-1.amazonaws.com/elasticsearch/\_nodes](http://ec2-xx-xx-xx-xx.compute-1.amazonaws.com/elasticsearch/_nodes). If  
you are using a proxy, ensure it is configured correctly

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/00d13d00-3687-42ca-8b9a-b5c52612de48%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/00d13d00-3687-42ca-8b9a-b5c52612de48%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [January 20, 2015, 7:17am UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/2 "2015-01-20T07:17:41Z")

</div>

On Monday, January 19, 2015 at 15:45 CET,  
Karthik M [karthik40us@gmail.com](mailto:karthik40us@gmail.com) wrote:

> I want the front end of ES (kibana) to run on SSL but keep the  
> backend connection from Kibana to ES unencrypted since both are  
> running on the same host. I configured Apache2 to accept SSL  
> connections and it works but when Kibana populates the dashboard it  
> get the below error. Any help is very much appreciated. Could not  
> reach [1][http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/\_](http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/_)  
> nodes. If you are using a proxy, ensure it is configured correctly

Which version of Kibana is this?

--  
Magnus Bäck | Software Engineer, Development Tools  
[magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) | Sony Mobile Communications

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/20150120071740.GA2980%40seldlx20533.corpusers.net](https://groups.google.com/d/msgid/elasticsearch/20150120071740.GA2980%40seldlx20533.corpusers.net).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Karthik\_M](https://avatars.discourse-cdn.com/v4/letter/k/e19b73/32.png) [@Karthik\_M](https://discuss.elastic.co/u/Karthik_M)\
**Post date:** [January 20, 2015, 1:54pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/3 "2015-01-20T13:54:50Z")

</div>

Kibana version 3

On Tuesday, January 20, 2015 at 2:17:49 AM UTC-5, Magnus Bäck wrote:

> On Monday, January 19, 2015 at 15:45 CET,  
> Karthik M \<[karth...@gmail.com](mailto:karth...@gmail.com) \<javascript:\>\> wrote:
> 
> > I want the front end of ES (kibana) to run on SSL but keep the  
> > backend connection from Kibana to ES unencrypted since both are  
> > running on the same host. I configured Apache2 to accept SSL  
> > connections and it works but when Kibana populates the dashboard it  
> > get the below error. Any help is very much appreciated. Could not  
> > reach [1][http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/\_](http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/_)  
> > nodes. If you are using a proxy, ensure it is configured correctly
> 
> Which version of Kibana is this?
> 
> --  
> Magnus Bäck | Software Engineer, Development Tools  
> [magnu...@sonymobile.com](mailto:magnu...@sonymobile.com) \<javascript:\> | Sony Mobile Communications

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/3b9f1175-3ad1-4936-893c-4996be207494%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/3b9f1175-3ad1-4936-893c-4996be207494%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [January 20, 2015, 2:01pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/4 "2015-01-20T14:01:07Z")

</div>

On Tuesday, January 20, 2015 at 14:54 CET,  
Karthik M [karthik40us@gmail.com](mailto:karthik40us@gmail.com) wrote:

> On Tuesday, January 20, 2015 at 2:17:49 AM UTC-5, Magnus Bäck wrote:
> 
> > > I want the front end of ES (kibana) to run on SSL but keep the  
> > > backend connection from Kibana to ES unencrypted since both are  
> > > running on the same host. I configured Apache2 to accept SSL  
> > > connections and it works but when Kibana populates the dashboard  
> > > it get the below error. Any help is very much appreciated. Could  
> > > not reach  
> > > [http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/\_](http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/_)  
> > > nodes. If you are using a proxy, ensure it is configured correctly
> > 
> > ```
> > Which version of Kibana is this?
> > 
> > ```
> 
> Kibana version 3

Kibana 3 doesn't have a backend. The connections to Elasticsearch  
originate from your browser so you'll want to encrypt them as well.  
Placing just the Kibana files behind HTTPS isn't useful.

--  
Magnus Bäck | Software Engineer, Development Tools  
[magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) | Sony Mobile Communications

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/20150120140106.GA484%40seldlx20533.corpusers.net](https://groups.google.com/d/msgid/elasticsearch/20150120140106.GA484%40seldlx20533.corpusers.net).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Karthik\_M](https://avatars.discourse-cdn.com/v4/letter/k/e19b73/32.png) [@Karthik\_M](https://discuss.elastic.co/u/Karthik_M)\
**Post date:** [January 20, 2015, 2:59pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/5 "2015-01-20T14:59:35Z")

</div>

Thanks Magnus. Would be able to point me towards on how to set that up?

> On Jan 20, 2015, at 9:01 AM, Magnus Bäck [magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) wrote:
> 
> On Tuesday, January 20, 2015 at 14:54 CET,  
> Karthik M [karthik40us@gmail.com](mailto:karthik40us@gmail.com) wrote:
> 
> > On Tuesday, January 20, 2015 at 2:17:49 AM UTC-5, Magnus Bäck wrote:
> > 
> > > > I want the front end of ES (kibana) to run on SSL but keep the  
> > > > backend connection from Kibana to ES unencrypted since both are  
> > > > running on the same host. I configured Apache2 to accept SSL  
> > > > connections and it works but when Kibana populates the dashboard  
> > > > it get the below error. Any help is very much appreciated. Could  
> > > > not reach  
> > > > [http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/\_](http://ec2-XX-XX-XX-XX.compute-1.amazonaws.com/elasticsearch/_)  
> > > > nodes. If you are using a proxy, ensure it is configured correctly
> > > 
> > > ```
> > > Which version of Kibana is this?
> > > 
> > > ```
> > 
> > Kibana version 3
> 
> Kibana 3 doesn't have a backend. The connections to Elasticsearch  
> originate from your browser so you'll want to encrypt them as well.  
> Placing just the Kibana files behind HTTPS isn't useful.
> 
> --  
> Magnus Bäck | Software Engineer, Development Tools  
> [magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) | Sony Mobile Communications
> 
> --  
> You received this message because you are subscribed to a topic in the Google Groups "elasticsearch" group.  
> To unsubscribe from this topic, visit [https://groups.google.com/d/topic/elasticsearch/\_WeJQGeQ6Gg/unsubscribe](https://groups.google.com/d/topic/elasticsearch/_WeJQGeQ6Gg/unsubscribe).  
> To unsubscribe from this group and all its topics, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/20150120140106.GA484%40seldlx20533.corpusers.net](https://groups.google.com/d/msgid/elasticsearch/20150120140106.GA484%40seldlx20533.corpusers.net).  
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/4EFBA424-56EA-45F8-8499-FCE7E61BB9FE%40gmail.com](https://groups.google.com/d/msgid/elasticsearch/4EFBA424-56EA-45F8-8499-FCE7E61BB9FE%40gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [January 20, 2015, 3:03pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/6 "2015-01-20T15:03:31Z")

</div>

On Tuesday, January 20, 2015 at 15:59 CET,  
Karthik Gmail [karthik40us@gmail.com](mailto:karthik40us@gmail.com) wrote:

> > On Jan 20, 2015, at 9:01 AM, Magnus Bäck  
> > [magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) wrote:
> > 
> > Kibana 3 doesn't have a backend. The connections to Elasticsearch  
> > originate from your browser so you'll want to encrypt them as well.  
> > Placing just the Kibana files behind HTTPS isn't useful.
> 
> Thanks Magnus. Would be able to point me towards on how to set that up?

Googling "kibana reverse proxy" should yield some useful results,  
but start with the blog post from the Elasticsearch team.

> **[Elasticsearch Platform — Find real-time answers at scale](https://www.elastic.co)**
>
> Power insights and outcomes with the Elasticsearch Platform and AI. See into your data and find answers that matter with enterprise solutions designed to help you build, observe, and protect. Try Elasticsearch free today.

--  
Magnus Bäck | Software Engineer, Development Tools  
[magnus.back@sonymobile.com](mailto:magnus.back@sonymobile.com) | Sony Mobile Communications

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/20150120150330.GA5033%40seldlx20533.corpusers.net](https://groups.google.com/d/msgid/elasticsearch/20150120150330.GA5033%40seldlx20533.corpusers.net).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Iain\_Woolf](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/iain_woolf/32/981_2.png) [@Iain\_Woolf](https://discuss.elastic.co/u/Iain_Woolf)\
**Post date:** [January 20, 2015, 3:37pm UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/7 "2015-01-20T15:37:33Z")

</div>

On Tuesday, January 20, 2015 at 10:03:47 AM UTC-5, Magnus Bäck wrote:

> On Tuesday, January 20, 2015 at 15:59 CET,  
> Karthik Gmail \<[karth...@gmail.com](mailto:karth...@gmail.com) \<javascript:\>\> wrote:
> 
> > > On Jan 20, 2015, at 9:01 AM, Magnus Bäck  
> > > \<[magnu...@sonymobile.com](mailto:magnu...@sonymobile.com) \<javascript:\>\> wrote:
> > > 
> > > Kibana 3 doesn't have a backend. The connections to Elasticsearch  
> > > originate from your browser so you'll want to encrypt them as well.  
> > > Placing just the Kibana files behind HTTPS isn't useful.
> > 
> > Thanks Magnus. Would be able to point me towards on how to set that up?
> 
> Googling "kibana reverse proxy" should yield some useful results,  
> but start with the blog post from the Elasticsearch team.
> 
> [Elasticsearch Platform — Find real-time answers at scale | Elastic](http://www.elasticsearch.org/blog/playing-http-tricks-nginx/)

I'm also working through the same process (see my post at  
[https://groups.google.com/d/msg/elasticsearch/S4LQQrbZAb4/r8bnxIwgkGUJ](https://groups.google.com/d/msg/elasticsearch/S4LQQrbZAb4/r8bnxIwgkGUJ)),  
but the ES blog link you provided doesn't touch on Kibana access to ES  
sitting behind a reverse proxy. This is where I'm having problems. Any  
ideas welcome.

Iain

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/0551b411-6924-4c7d-bff8-f90d6eb97efc%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/0551b411-6924-4c7d-bff8-f90d6eb97efc%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 12:37am UTC](https://discuss.elastic.co/t/configure-kibana-for-https/21712/8 "2017-07-06T00:37:44Z")

</div>


