# Enabling anonymous access

**URL:** <https://discuss.elastic.co/t/enabling-anonymous-access/239430>\
**Category:** Kibana\
**Created:** [July 1, 2020, 7:51am UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430 "2020-07-01T07:51:09Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![jjums](https://avatars.discourse-cdn.com/v4/letter/j/c37758/32.png) [@jjums](https://discuss.elastic.co/u/jjums)\
**Post date:** [July 1, 2020, 7:51am UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430/1 "2020-07-01T07:51:10Z")

</div>

Hello,

I'm a beginner in using elasticsearch and kibana.  
I installed ver. 7.7.

I want to use the function "enabling anonymous access".  
[https://www.elastic.co/guide/en/elasticsearch/reference/7.7/anonymous-access.html](https://www.elastic.co/guide/en/elasticsearch/reference/7.7/anonymous-access.html)  
I read the above link.

When I tried to use the security function in the kibana... I did following instruction.  
[xpack.security.enabled] to [true] in the elasticsearch.yml file and restart  
But, I have no idea about default ID and PW, I can't login to the kibana.  
How can I do?  
I edit kibana.yml file, but it doesn't work for me.

Also, from the document link, my question is...  
if I want to anonymous user can read-only, can I set like the following?

xpack.security.authc:  
anonymous:  
username: anonymous\_user  
roles: read  
authz\_exception: true

Please, help me to solve this situation.  
I just want to know the process of which one first and which one is last.

Thank you!

---

<div class="post-metadata">

**Author:** ![rashmi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rashmi/32/16391_2.png) [@rashmi](https://discuss.elastic.co/u/rashmi)\
**Post date:** [July 1, 2020, 10:00pm UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430/2 "2020-07-01T22:00:22Z")

</div>

I quickly searched the discuss forum and found these :

This issue discusses anonymous access to kibana and links to a potential work around - [https://github.com/elastic/kibana/issues/18331](https://github.com/elastic/kibana/issues/18331)  
More info here too

> [@Enable Anonymous access in kibana](https://discuss.elastic.co/t/enable-anonymous-access-in-kibana/187558/4):
>
> Hello @Saurabh_Sharma_IIT I'm not sure if it will work for your situation but I was referencing this particular comment - [https://github.com/elastic/kibana/issues/18331#issuecomment-386727100](https://github.com/elastic/kibana/issues/18331#issuecomment-386727100)

hope it helps, plz let us know the logs /exceptions happening...

thanks  
Rashmi

---

<div class="post-metadata">

**Author:** ![jjums](https://avatars.discourse-cdn.com/v4/letter/j/c37758/32.png) [@jjums](https://discuss.elastic.co/u/jjums)\
**Post date:** [July 15, 2020, 12:49am UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430/3 "2020-07-15T00:49:08Z")

</div>

Thank you for your answer. so sorry to late reply.  
My first problem is "install xpack"...  
I can't set up security function as I stated.

---

<div class="post-metadata">

**Author:** ![rashmi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rashmi/32/16391_2.png) [@rashmi](https://discuss.elastic.co/u/rashmi)\
**Post date:** [July 15, 2020, 6:03pm UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430/4 "2020-07-15T18:03:55Z")

</div>

The `kibana` built-in user is meant to be used by Kibana server so that it can communicate with Elasticsearch and this is why you configure its value in the `kibana.yml` file.  
For end user, we can using user"elastic"to logon kibana UI and add some new users at the panel with their roles.

The security features provide a role-based access control (RBAC) mechanism, which enables you to authorize users by assigning privileges to roles and assigning roles to users or groups. You can create a superuser to login to see how to access users and roles. You can read about it more here:

[https://www.elastic.co/guide/en/elastic-stack-overview/current/authorization.html](https://www.elastic.co/guide/en/elastic-stack-overview/current/authorization.html)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 12, 2020, 6:03pm UTC](https://discuss.elastic.co/t/enabling-anonymous-access/239430/5 "2020-08-12T18:03:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
