# Creating a second Elastic user

**URL:** https://discuss.elastic.co/t/creating-a-second-elastic-user/150920
**Category:** Elastic Cloud Enterprise (ECE)
**Created:** [October 3, 2018, 4:38pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920 "2018-10-03T16:38:23Z")
**Posts on this page:** 8
**Page:** 1

<div class="post-metadata">

### Author: ![mc1392](https://avatars.discourse-cdn.com/v4/letter/m/57b2e6/32.png) [@mc1392](https://discuss.elastic.co/u/mc1392)
#### Post date: [October 3, 2018, 4:38pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/1 "2018-10-03T16:38:23Z")

</div>

Is it possible to create a second user, other than the initial user , named Elastic?

---

<div class="post-metadata">

### Author: ![zanbel](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/zanbel/32/20678_2.png) [@zanbel](https://discuss.elastic.co/u/zanbel)
#### Post date: [October 3, 2018, 6:05pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/2 "2018-10-03T18:05:47Z")

</div>

Hey @mc1392,

Yes. We offer the option to reset the password of the built-in `elastic` user directly from ECE interface, but this you can still navigate to the Management \>\> Users page in the relevant Kibana instance and create additional users, or do the same via the relevant Elasticsearch [REST api endpoints](https://www.elastic.co/guide/en/elasticsearch/reference/current/security-api-users.html). You can also integrate with external IdPs such as [LDAP/AD](https://www.elastic.co/guide/en/cloud-enterprise/2.0/ece-securing-clusters-LDAP.html), or [SAML](https://www.elastic.co/guide/en/cloud-enterprise/2.0/ece-securing-clusters-SAML.html).

---

<div class="post-metadata">

### Author: ![mc1392](https://avatars.discourse-cdn.com/v4/letter/m/57b2e6/32.png) [@mc1392](https://discuss.elastic.co/u/mc1392)
#### Post date: [October 3, 2018, 6:32pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/3 "2018-10-03T18:32:14Z")

</div>

thank you!

Let me add more detail to my question:  
I have a javascript developer using React, hence the username and password are clear text.

can I make one that only has READ access to a particular index?

---

<div class="post-metadata">

### Author: ![bigdamhero](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bigdamhero/32/34478_2.png) [@bigdamhero](https://discuss.elastic.co/u/bigdamhero)
#### Post date: [October 3, 2018, 7:10pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/4 "2018-10-03T19:10:21Z")

</div>

You should be able to create an Elastic reader user.  
This might be helpful - [https://www.elastic.co/guide/en/elasticsearch/reference/current/users-command.html](https://www.elastic.co/guide/en/elasticsearch/reference/current/users-command.html)

---

<div class="post-metadata">

### Author: ![mc1392](https://avatars.discourse-cdn.com/v4/letter/m/57b2e6/32.png) [@mc1392](https://discuss.elastic.co/u/mc1392)
#### Post date: [October 4, 2018, 1:35pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/5 "2018-10-04T13:35:26Z")

</div>

I don't see how this addresses my issue.  
I'm using the Cloud Service.

Maybe I need a better understanding of what the roles mean.  
Is there a role that is synonymous with Read Only?

---

<div class="post-metadata">

### Author: ![bigdamhero](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bigdamhero/32/34478_2.png) [@bigdamhero](https://discuss.elastic.co/u/bigdamhero)
#### Post date: [October 4, 2018, 1:48pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/6 "2018-10-04T13:48:15Z")

</div>

I actually noticed that you were Cloud after I posted it. Just trying to be helpful. You should be able to look over the default permission groups and choose one. I know one that I had to create was called Logstash\_reader. Perhaps there is an Elasticsearch reader function you could add to an ID you create? Hope this is helpful.

Cheers

---

<div class="post-metadata">

### Author: ![mc1392](https://avatars.discourse-cdn.com/v4/letter/m/57b2e6/32.png) [@mc1392](https://discuss.elastic.co/u/mc1392)
#### Post date: [October 4, 2018, 1:51pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/7 "2018-10-04T13:51:08Z")

</div>

after looking a bit more, I do see a 'read' level permission.  
Not sure how I missed that.

Thanks for the help.

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [October 18, 2018, 1:51pm UTC](https://discuss.elastic.co/t/creating-a-second-elastic-user/150920/8 "2018-10-18T13:51:19Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
