# Elastic Detections permissions issues

**URL:** <https://discuss.elastic.co/t/elastic-detections-permissions-issues/257751>\
**Category:** Elastic Security\
**Tags:** elastic-stack-security, elastic-stack-alerting\
**Created:** [December 5, 2020, 8:04pm UTC](https://discuss.elastic.co/t/elastic-detections-permissions-issues/257751 "2020-12-05T20:04:26Z")\
**Posts on this page:** 1\
**Showing post:** 5

<div class="post-metadata">

**Author:** ![Frank\_Hassanabad](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/frank_hassanabad/32/49255_2.png) [@Frank\_Hassanabad](https://discuss.elastic.co/u/Frank_Hassanabad)\
**Post date:** [January 18, 2021, 4:37pm UTC](https://discuss.elastic.co/t/elastic-detections-permissions-issues/257751/5 "2021-01-18T16:37:00Z")

</div>

Hi @yarooski,

I think you posted your other problem here:

> [@Can't start elasticsearch service after enabling TLS for Detections/Alerts - Permission Denied](https://discuss.elastic.co/t/cant-start-elasticsearch-service-after-enabling-tls-for-detections-alerts-permission-denied/261330):
>
> After following these instructions meticulously: [How To Install Elasticsearch, Logstash, and Kibana (Elastic Stack) on Ubuntu 20.04](https://www.digitalocean.com/community/tutorials/how-to-install-elasticsearch-logstash-and-kibana-elastic-stack-on-ubuntu-20-04) And then enabling TLS and setting up user permissions here: [Detections prerequisites and requirements](https://www.elastic.co/guide/en/security/current/detections-permissions-section.html#enable-detections-ui) We repeatedly run into a permissions issue when trying to start the elasticsearch service: ./elasticsearch-env: line 81: /etc/default/elasticsearch: Permission denied After doing an ls -l on the directory, all files are owned by the elasticsearch user created du…

And I think you also posted on reddit too, no? 😉 We try to track a lot of these problems and help people across multiple social platforms.  
[https://www.reddit.com/r/elasticsearch/comments/kyowf2/cant\_start\_elasticsearch\_service\_after\_enabling/](https://www.reddit.com/r/elasticsearch/comments/kyowf2/cant_start_elasticsearch_service_after_enabling/)

Getting TLS setup is the first step for sure and there are hiccups with how operating systems work with security that are inherently tricky. Once you sleuth out and get TLS setup again, if you run into problems with the instructions on how to get detection engine setup there is a more in-depth trouble shooting guide here that might help you out with any gotcha's fwiw:

> [@Detections will not setup](https://discuss.elastic.co/t/detections-will-not-setup/227297/3):
>
> Hello Frank, thank you for your feedback. This is a really helpful to check / debug the permissions. You are right, i have a elastic on prem setup as a cluster. Its for my company. I have check what you tell me, but the permissions looks good.But i notice the encryption key part. I have one in my config, but i check it again. Thank you very much!

---

_[View the full topic](https://discuss.elastic.co/t/elastic-detections-permissions-issues/257751)._
