# Elastic Cloud/Kibana Embed Authentication

**URL:** <https://discuss.elastic.co/t/elastic-cloud-kibana-embed-authentication/313289>\
**Category:** Kibana\
**Created:** [August 30, 2022, 8:21pm UTC](https://discuss.elastic.co/t/elastic-cloud-kibana-embed-authentication/313289 "2022-08-30T20:21:11Z")\
**Posts on this page:** 1\
**Showing post:** 2

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [August 30, 2022, 8:38pm UTC](https://discuss.elastic.co/t/elastic-cloud-kibana-embed-authentication/313289/2 "2022-08-30T20:38:02Z")

</div>

Hi @Donnie_Kerr Welcome to the community!

I think I answered most of this here If I understand what you're trying to do.

> [@Anonymous Kibana Users](https://discuss.elastic.co/t/anonymous-kibana-users/270071/9):
>
> @caitlyn.carlisle Ok we have it slight_smile If I understand correctly, What you want to accomplish is enable the ability for a user to anonymous login to view Kibana dashboards etc. That is supported in Elastic Cloud, what is not supported is underlying anonymous access to elasticsearch. That is where the confusion lay. So this is how you do it. Reference [Here](https://www.elastic.co/guide/en/kibana/7.12/kibana-authentication.html#anonymous-authentication).. and there is even a little video on it [here](https://www.elastic.co/blog/whats-new-kibana-7-11-0-alerting-generally-available) . Note the docs link to 7.11 so make sure you use the latest. First create the use…

You will create a role that represents the access that you want and assign that to the user that you use for the anonymous user

> **[Authentication in Kibana | Kibana Guide \[8.4\] | Elastic](https://www.elastic.co/guide/en/kibana/8.4/kibana-authentication.html#_anonymous_access_and_other_types_of_authentication)**
>
> A list of the supported authentication mechanisms in Kibana.

You can also take out the other normal basic and elastic cloud SSO logins

```auto
xpack.security.authc.providers:
  basic.basic1: <!--- TAKE out this if you don't want normal login
    order: 0 <!--- TAKE out this if you don't want normal login
  anonymous.anonymous1:
    order: 1
    credentials:
      username: "dashboard-user"
      password: "dashboard1234!"

```

Kibana Available Settings in Elastic Cloud [here](https://www.elastic.co/guide/en/cloud/current/ec-manage-kibana-settings.html)

to disable the Cloud Kibana SSO  
In your kibana.yml setting on the edit deployment page  
This is kinda a hidden / inferred setting  
`xpack.security.authc.providers.saml.cloud-saml-kibana.showInSelector: false`

> If you don’t want a specific provider to show up at the Login Selector UI (e.g. to only support third-party initiated login) you can hide it with `showInSelector` setting set to `false`. However, in this case, the provider is presented in the provider chain and may be consulted during authentication based on its `order`. To disable the provider, use the `enabled` setting.

---

_[View the full topic](https://discuss.elastic.co/t/elastic-cloud-kibana-embed-authentication/313289)._
