# ES and Kibana Endpoints Not Accessible

**URL:** <https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058>\
**Category:** Elastic Cloud Enterprise (ECE)\
**Created:** [September 3, 2018, 11:20am UTC](https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058 "2018-09-03T11:20:11Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Ong](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ong/32/40766_2.png) [@Ong](https://discuss.elastic.co/u/Ong)\
**Post date:** [September 3, 2018, 11:20am UTC](https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058/1 "2018-09-03T11:20:11Z")

</div>

I have a cluster on ECE which runs on 1 availability zone. The end points for Elasticsearch and Kibana of the cluster are:

> [https://918a2067fdcb4aafaea2a889abf3f87b.10.2.92.184.ip.es.io:9243](https://918a2067fdcb4aafaea2a889abf3f87b.10.2.92.184.ip.es.io:9243)  
> [https://20b41f36ef3949aaa754224477ccdb92.10.2.92.184.ip.es.io:9243](https://20b41f36ef3949aaa754224477ccdb92.10.2.92.184.ip.es.io:9243)

When I tried to access them from a remote client within the network, these end points were not accessible.

The ECE documentation addresses this issue for AWS by switching the address to the server's IP. I'm not sure if this can be applied to the above case?

---

<div class="post-metadata">

**Author:** ![zanbel](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/zanbel/32/20678_2.png) [@zanbel](https://discuss.elastic.co/u/zanbel)\
**Post date:** [September 3, 2018, 2:39pm UTC](https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058/2 "2018-09-03T14:39:23Z")

</div>

Hi @Ong,

The [example provided for AWS](https://www.elastic.co/guide/en/cloud-enterprise/1.1/ece-issues.html#ece-aws-private-ip) is meant to highlight that the default IP used is the internal one, which will not be accessible, and simply intruct users to set the external IP in order to access ECE user console, or Elasticsearch and Kibana.  
If the remote client has access to the internal IP it should not be an issue. Are you able to access ECE user console from the same remote client? If you can it's not the same issue.

Please note that the end point you see in ECE user console is for the proxy, since the connection to Elasticsearch and Kibana is done via ECE proxy layer, so the client actually hits the proxy first and then it will redirect the request to the relevant Elasticsearch nodes, or Kibana instance.  
You can read more about it in the ECE [architecture page](https://www.elastic.co/guide/en/cloud-enterprise/1.1/ece-architecture.html).

Hope this will help to better troubleshoot the issue.

---

<div class="post-metadata">

**Author:** ![Ong](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ong/32/40766_2.png) [@Ong](https://discuss.elastic.co/u/Ong)\
**Post date:** [September 6, 2018, 6:53am UTC](https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058/3 "2018-09-06T06:53:54Z")

</div>

Yes, I am able to access the ECE console page from the client's browser.

I followed the steps given in the ECE documentation to connect to the cluster but the Chrome browser kept on returning connection refused messages.  
The steps are in [Next Steps](https://www.elastic.co/guide/en/cloud-enterprise/1.0/ece-explore-ui.html#ece-connect)

I also checked the firewalld of the Linux servers and they have been disabled.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 20, 2018, 6:55am UTC](https://discuss.elastic.co/t/es-and-kibana-endpoints-not-accessible/147058/4 "2018-09-20T06:55:00Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
