# Disables elastic and kibana users after a while

**URL:** <https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039>\
**Category:** Kibana\
**Created:** [February 22, 2018, 11:57am UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039 "2018-02-22T11:57:03Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![Amir\_Salar\_Pourhasan](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/amir_salar_pourhasan/32/28097_2.png) [@Amir\_Salar\_Pourhasan](https://discuss.elastic.co/u/Amir_Salar_Pourhasan)\
**Post date:** [February 22, 2018, 11:57am UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/1 "2018-02-22T11:57:03Z")

</div>

After I'm using X--Pack basic authentication setting, it disables **elastic** and **kibana** users after some times working on my project? Then I have to reset these user's password then restart Elasticsearch and Kibana, then it will be work. in last 3 hours, I did it 4 times?!! why this is happening?

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [February 22, 2018, 12:31pm UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/2 "2018-02-22T12:31:16Z")

</div>

X-Back basic does not have security features.

---

<div class="post-metadata">

**Author:** ![Amir\_Salar\_Pourhasan](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/amir_salar_pourhasan/32/28097_2.png) [@Amir\_Salar\_Pourhasan](https://discuss.elastic.co/u/Amir_Salar_Pourhasan)\
**Post date:** [February 22, 2018, 5:42pm UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/3 "2018-02-22T17:42:06Z")

</div>

I meant X-pack free licensed. I have installed x-pack free license and it has set the password for my Elasticseach and Kibana. These are not fecurity features?

---

<div class="post-metadata">

**Author:** ![Amir\_Salar\_Pourhasan](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/amir_salar_pourhasan/32/28097_2.png) [@Amir\_Salar\_Pourhasan](https://discuss.elastic.co/u/Amir_Salar_Pourhasan)\
**Post date:** [February 22, 2018, 6:25pm UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/4 "2018-02-22T18:25:19Z")

</div>

I do not need any features like machine learning. I`m using Xpack free only for setting a password for users. If I miss understood, please correct me.  
I want:

- install my Elastic search and Kibana on my ubuntu server (that only response to localhost. I have now)
- Access Kibana in the browser. I can not open in Kibana from ssh so I should use the browser. I the Kkibana only listen to localhost on my server, how can I access it vi for example [http://200.50.60.30](http://200.50.60.30) ?
- I need to deny all IP and only allow localhost and server real IP
- I need set a password for elastic and Kibana users.

Do I need x-pack for those above fatures?

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [February 22, 2018, 11:05pm UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/5 "2018-02-22T23:05:18Z")

</div>

Security needs xpack gold or platinum.  
You can have by default a trial license of 30 days.  
The basic free license does not include security.

Have a look at [https://www.elastic.co/subscriptions](https://www.elastic.co/subscriptions)

---

<div class="post-metadata">

**Author:** ![Amir\_Salar\_Pourhasan](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/amir_salar_pourhasan/32/28097_2.png) [@Amir\_Salar\_Pourhasan](https://discuss.elastic.co/u/Amir_Salar_Pourhasan)\
**Post date:** [February 23, 2018, 8:15am UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/6 "2018-02-23T08:15:07Z")

</div>

I think I found the problem. In developing mode, I use this command a lot "DELETE \_all". From last night os far, I did not use this command and my application was working fine with lots of restarts. But now I just used that command for reconfiguration indicates, and suddenly it happened again.

My solution in DevMode:  
I made another superuser and whenever it happens, I only use these commands fastly:

```
curl -u es_admin -XPUT 'http://localhost:9200/_xpack/security/user/elastic/_password?pretty' -H 'Content-Type: application/json' -d' { "password" : "oldElasticPassword"}' 
curl -u es_admin -XPUT 'http://localhost:9200/_xpack/security/user/kibana/_password?pretty' -H 'Content-Type: application/json' -d' { "password" : "oldKibanaPassword"}' 

```

" **oldElasticPassword**" and " **oldKibanaPassword**" are the password I was using before these users disabled. It means please get back to some minutes config (last passwords I was using) and I do not need to change any config files again.

Verifying users:

```
 curl -u elastic 'http://localhost:9200/_xpack/security/_authenticate?pretty'
 curl -u kibana 'http://localhost:9200/_xpack/security/_authenticate?pretty'

```

Then Restart:

```
systemctl restart kibana.service
systemctl restart elasticsearch.service
```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 23, 2018, 8:15am UTC](https://discuss.elastic.co/t/disables-elastic-and-kibana-users-after-a-while/121039/7 "2018-03-23T08:15:10Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
