# Disable login in Kibana 5.3

**URL:** <https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998>\
**Category:** Kibana\
**Created:** [April 20, 2017, 7:33am UTC](https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998 "2017-04-20T07:33:48Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![pablosan](https://avatars.discourse-cdn.com/v4/letter/p/e19adc/32.png) [@pablosan](https://discuss.elastic.co/u/pablosan)\
**Post date:** [April 20, 2017, 7:33am UTC](https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998/1 "2017-04-20T07:33:49Z")

</div>

Hi,

I have configured ELK with X-Pack and enabled the anonymous authentication. This allows me to access to Elasticsearch API without any issue, but when accessing through Kibana is asking for credentials, even giving the anonymous user kibana or superuser role.

I have seen [this thread](https://discuss.elastic.co/t/kibana-without-the-login-form/65231) and I think it's related but just wanted to confirm if I need to create a new issue.

Kind regards,  
Pablo

---

<div class="post-metadata">

**Author:** ![Stacey\_Gammon](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stacey_gammon/32/14025_2.png) [@Stacey\_Gammon](https://discuss.elastic.co/u/Stacey_Gammon)\
**Post date:** [April 20, 2017, 5:55pm UTC](https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998/2 "2017-04-20T17:55:11Z")

</div>

You can turn off security entirely, which will disable the login screen, by setting  
`xpack.security.enabled: false` in elasticsearch.yml and kibana.yml, but that may not be what need.

Is your goal to have users be automatically logged in with a certain role (say, read only?)?

The latter can be done with a reverse proxy. There is some good info on this here:

> [@Auto-authenticating to iframe-embedded Kibana dashboard](https://discuss.elastic.co/t/auto-authenticating-to-iframe-embedded-kibana-dashboard/46091/4):
>
> You can pass the Authorization header as Joe suggests using an nginx proxy. Here is the relevant section of my nginx.conf: server { listen 4443 ssl; # the default was port 443 server\_name tim-virtual-machine.local; ssl\_certificate /home/tim/domain.crt; ssl\_certificate\_key /home/tim/domain.key; ssl\_session\_cache shared:SSL:1m; ssl\_session\_timeout 5m; ssl\_ciphers HIGH:!aNULL:!MD5; ssl\_prefer\_server\_ciphers on; location / { …

As for the anonymous authentication, I'm not sure how kibana is supposed to act when that is set up in elasticsearch, but I'll try to find out more information.

---

<div class="post-metadata">

**Author:** ![pablosan](https://avatars.discourse-cdn.com/v4/letter/p/e19adc/32.png) [@pablosan](https://discuss.elastic.co/u/pablosan)\
**Post date:** [April 20, 2017, 7:01pm UTC](https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998/3 "2017-04-20T19:01:02Z")

</div>

Awesome stuff Stacy, I think it's just what I need, I have an nginx behind Kibana, so I'll give it a try tomorrow.  
Thank you very much

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [May 18, 2017, 7:07pm UTC](https://discuss.elastic.co/t/disable-login-in-kibana-5-3/82998/4 "2017-05-18T19:07:17Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
