# Cookies issue while embedding kibana dashboard with iFrame

**URL:** <https://discuss.elastic.co/t/cookies-issue-while-embedding-kibana-dashboard-with-iframe/256777>\
**Category:** Kibana\
**Created:** [November 26, 2020, 1:58pm UTC](https://discuss.elastic.co/t/cookies-issue-while-embedding-kibana-dashboard-with-iframe/256777 "2020-11-26T13:58:44Z")\
**Posts on this page:** 1\
**Showing post:** 7

<div class="post-metadata">

**Author:** ![DMinovski](https://avatars.discourse-cdn.com/v4/letter/d/5fc32e/32.png) [@DMinovski](https://discuss.elastic.co/u/DMinovski)\
**Post date:** [December 25, 2020, 2:24am UTC](https://discuss.elastic.co/t/cookies-issue-while-embedding-kibana-dashboard-with-iframe/256777/7 "2020-12-25T02:24:21Z")

</div>

Is there an option to set the parameters `xpack.security.secureCookies: true` and `xpack.security.sameSiteCookies: None` in the cloud hosted environment on [https://www.elastic.co](https://www.elastic.co)? It seems that these are still not supported there.  
Can the cloud environment give us access to the server, and we can set the cookie parameters there, depending on the type of server, Nginx, etc?

> [@Login failing for Kibana in iFrame due to missing sameSite cookie-setting](https://discuss.elastic.co/t/login-failing-for-kibana-in-iframe-due-to-missing-samesite-cookie-setting/223999):
>
> Hello I'm using iFrames to integrate Kibana pages into my website. This worked well with Chrome and Firefox. But since Chrome changed the default cookie setting of sameSite to Lax (see [https://www.chromestatus.com/feature/5088147346030592](https://www.chromestatus.com/feature/5088147346030592)), authentication to Kibana dashboard via iFrame doesn't work anymore. The reason is that the cookie set by Kibana after authentication does not have the sameSite=None setting. I'm using Elastic/Kibana as cloud service, hence i cannot influence the cookie set…

---

_[View the full topic](https://discuss.elastic.co/t/cookies-issue-while-embedding-kibana-dashboard-with-iframe/256777)._
