# Elastic Cloud - This might not be the site you want

**URL:** <https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323>\
**Category:** Kibana\
**Created:** [June 3, 2022, 10:36am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323 "2022-06-03T10:36:36Z")\
**Posts on this page:** 13\
**Page:** 1

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 3, 2022, 10:36am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/1 "2022-06-03T10:36:36Z")

</div>

I am using latest Microsoft Edge browser and every time I access Kibana on Elastic Cloud I get warning about suspicious site. I have 2 clusters in Azure West Europe.

Url: [https://xxx.kb.westeurope.azure.elastic-cloud.com:0000](https://xxx.kb.westeurope.azure.elastic-cloud.com:0000)

Is there something you can do about? Like talking to Microsoft?

BTW I do not have any problem with Kibana just the browser warning is annoying.

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 3, 2022, 5:54pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/2 "2022-06-03T17:54:23Z")

</div>

I @milesich Welcome the community and thanks for using Elastic Cloud.

I will pass this on, but first one question can you try the URL without any port? you have `:0000` not sure if that is a typo valid is `:9243` or `:443` or none (preferable)

And can you include a screen shot please 🙂

---

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 3, 2022, 6:23pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/3 "2022-06-03T18:23:18Z")

</div>

I removed the port intentionally from the example because I thought it could be different per setup 🙂

I don't get the warning without the port. I didn't know that was an option since all mentions of Kibana url in cloud console contains `:9243`.

Also since I accessed the URL without the port I no longer get the warning with the port so not sure what is going on 😕. When I see it again I will post screen shot.

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 3, 2022, 6:54pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/4 "2022-06-03T18:54:56Z")

</div>

> [@milesich](#):
>
> I don't get the warning without the port. I didn't know that was an option since all mentions of Kibana url in cloud console contains `:9243` .

Yes that is historical... I wish we would change the docs.. all endpoints support default `:443 `i.e. no port needed.

> [@milesich](#):
>
> Also since I accessed the URL without the port I no longer get the warning with the port so not sure what is going on 😕. When I see it again I will post screen sho

Ahhh the nature of tech 🙂

---

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 4, 2022, 8:17am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/5 "2022-06-04T08:17:42Z")

</div>

Warning is back @stephenb

 ![Screenshot 2022-06-04 at 10.11.19](https://us1.discourse-cdn.com/elastic/original/3X/a/e/ae684f8998465332434992386db9fed8153e9db0.png)

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 4, 2022, 6:48pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/6 "2022-06-04T18:48:23Z")

</div>

@milesich

Couple questions from the Cloud Ops folks

Are you using a proxy?

Can you confirm the details on the cert .should be issued by LetsEncrypt and have serial number `04 19 60 5D 6D DE 82 9B E6 DE 6F CD 23 8D 44 46 ED 36`

(this is viewable from the browser on their end if they view details...usually its when you right click on the lock icon in the address bar)

Also can you click the report as safe button in that message?

---

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 5, 2022, 7:23am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/7 "2022-06-05T07:23:06Z")

</div>

Hi @stephenb

I am not using a proxy. I have direct residential connection to the ISP.

I have reported the site as safe multiple times in the past and the serial number looks the same.

This is new as of today:

 ![Screenshot 2022-06-05 at 08.21.56-clean](https://us1.discourse-cdn.com/elastic/original/3X/d/9/d9877afb8f51db59afd7ac34d95999a117923e3b.png)

![Screenshot 2022-06-05 at 08.22.06-clean](https://us1.discourse-cdn.com/elastic/original/3X/f/e/fe4c2b2f877532e386db374a42056747147142ff.png)

 ![Screenshot 2022-06-05 at 08.27.34](https://us1.discourse-cdn.com/elastic/original/3X/1/e/1e5742b9a7566f874c56140bee48160a8e7aa81d.png)

I did some testing and the login and space selector pages does not even show a warning, they are completely fine.

`https://xxx.kb.westeurope.azure.elastic-cloud.com:9243/login?next=%2F`  
`https://xxx.kb.westeurope.azure.elastic-cloud.com:9243/spaces/space_selector`

For everything after choosing space I get the red unsafe page. In this case the port does not play any role. It is the same for `:9243` and `:443`. FYI this is Kibana v8.2.2.

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 5, 2022, 3:11pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/8 "2022-06-05T15:11:30Z")

</div>

Thanks I'll pass this on..

And can you open a support ticket and include this information?

---

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 5, 2022, 7:31pm UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/9 "2022-06-05T19:31:06Z")

</div>

Ticket created.

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 6, 2022, 2:38am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/10 "2022-06-06T02:38:30Z")

</div>

Hmmm I could not reproduce.

Microsoft Edge  
Version 102.0.1245.33 (Official build) (64-bit)

Same region Azure  
Created a couple Spaces  
Tried with and without the ports  
I even Turned up Edge to Max Security from Balanced  
I am not seeing yet... curious what you find out.

---

<div class="post-metadata">

**Author:** ![milesich](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/milesich/32/106629_2.png) [@milesich](https://discuss.elastic.co/u/milesich)\
**Post date:** [June 6, 2022, 3:33am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/11 "2022-06-06T03:33:52Z")

</div>

Microsoft Edge  
Version 102.0.1245.33 (Official build) (x86\_64)  
macOS Monterey 12.3.1

I think it is going to be hard to reproduce because it is not consistent for me either. Like `/s/default/app/home#/` was ok but `/app/home#/` was dangerous on the same domain. I restarted the browser now and it is not dangerous at all currently.

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [June 6, 2022, 3:50am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/12 "2022-06-06T03:50:05Z")

</div>

You're running Edge on Mac OS?  
Interesting. I didn't even know you could do that.

Keep an eye...

I let our cloud ops folks know they're keeping an eye too.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 4, 2022, 3:50am UTC](https://discuss.elastic.co/t/elastic-cloud-this-might-not-be-the-site-you-want/306323/13 "2022-07-04T03:50:21Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
