# Console 5.0.0-rc1 cannot verify certificate with xpack security installed

**URL:** <https://discuss.elastic.co/t/console-5-0-0-rc1-cannot-verify-certificate-with-xpack-security-installed/63204>\
**Category:** Elasticsearch\
**Created:** [October 17, 2016, 4:31pm UTC](https://discuss.elastic.co/t/console-5-0-0-rc1-cannot-verify-certificate-with-xpack-security-installed/63204 "2016-10-17T16:31:17Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![MikeM](https://avatars.discourse-cdn.com/v4/letter/m/41988e/32.png) [@MikeM](https://discuss.elastic.co/u/MikeM)\
**Post date:** [October 17, 2016, 4:31pm UTC](https://discuss.elastic.co/t/console-5-0-0-rc1-cannot-verify-certificate-with-xpack-security-installed/63204/1 "2016-10-17T16:31:17Z")

</div>

Testing the new 5.0.0-rc1 stack and want to use Console (formerly Sense). I have xpack security installed and configured on the ES cluster.

When I try to run a command using Console, I get the following error:

```auto
Error connecting to '<server>':

Client request error: self signed certificate in certificate chain

```

In 2.4 with Shield installed, I had to add the following to kibana.yml:

```auto
sense.proxyConfig:
  - match:
      host: "*"
    ssl:
      ca: /path/to/cacert.pem

  - match:
      protocol: "https"
    ssl:
      verify: true

```

There have been alot of setting changes with the move to xpack in 5.0.0. I have tried to search the docs endlessly for any reference to theses settings or to Console / Sense, and only found a reference to sense.proxyFilter here: [https://www.elastic.co/guide/en/kibana/5.0/securing\_console.html](https://www.elastic.co/guide/en/kibana/5.0/securing_console.html)

Also, some of the documentation seems incorrect: [https://www.elastic.co/guide/en/kibana/5.0/console-kibana.html](https://www.elastic.co/guide/en/kibana/5.0/console-kibana.html) makes reference to the ability to set the server in Console, which does not seem to be possible in 5.0.0-rc1

---

<div class="post-metadata">

**Author:** ![MikeM](https://avatars.discourse-cdn.com/v4/letter/m/41988e/32.png) [@MikeM](https://discuss.elastic.co/u/MikeM)\
**Post date:** [October 17, 2016, 8:28pm UTC](https://discuss.elastic.co/t/console-5-0-0-rc1-cannot-verify-certificate-with-xpack-security-installed/63204/2 "2016-10-17T20:28:10Z")

</div>

Found the solution. `sense.*` needs to be changed to `console.*` and `defaultServerUrl` is a depreciated setting. Also, the documentation is incomplete at this time, but will hopefully be updated by 5.0 GA.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 5, 2017, 10:11pm UTC](https://discuss.elastic.co/t/console-5-0-0-rc1-cannot-verify-certificate-with-xpack-security-installed/63204/3 "2017-07-05T22:11:42Z")

</div>


