# Failed to set password for user \[apm\_system\] with elastic password

**URL:** <https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-security\
**Created:** [November 19, 2020, 2:46pm UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005 "2020-11-19T14:46:17Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![xziten](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/xziten/32/76885_2.png) [@xziten](https://discuss.elastic.co/u/xziten)\
**Post date:** [November 19, 2020, 2:46pm UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005/1 "2020-11-19T14:46:18Z")

</div>

Hi, I'm trying to setup an elasticsearch cluster.

3 nodes : 1 master, 1 master / data\_hot, 1 data\_warm

Elastic Version : 7.10  
System : RHEL 8.3

Step by step :

1. Installing

2. Configuring nodes and test if everything is okay without TLS : OK  
` { "cluster_name" : "my-cluster", "status" : "green", "timed_out" : false, "number_of_nodes" : 3, "number_of_data_nodes" : 2, "active_primary_shards" : 0, "active_shards" : 0, "relocating_shards" : 0, "initializing_shards" : 0, "unassigned_shards" : 0, "delayed_unassigned_shards" : 0, "number_of_pending_tasks" : 0, "number_of_in_flight_fetch" : 0, "task_max_waiting_in_queue_millis" : 0, "active_shards_percent_as_number" : 100.0 }`

3. Configuring TLS between nodes :  
`bin/elasticsearch-certutil cert --pem`

Elasticsearch restarting well.

1. Running `bin/elasticsearch-setup-passwords auto`

Getting error : Failed to set password for user [apm\_system] with elastic password

-\> Can't do a cluster health because I can't authenticate with elastic user. Tried changeme and the password setted in the setup password scripts

Do you have any idea ?

thank you !

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [November 19, 2020, 2:55pm UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005/2 "2020-11-19T14:55:40Z")

</div>

You need a data node in your cluster to store .security index

---

<div class="post-metadata">

**Author:** ![xziten](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/xziten/32/76885_2.png) [@xziten](https://discuss.elastic.co/u/xziten)\
**Post date:** [November 20, 2020, 1:55am UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005/3 "2020-11-20T01:55:57Z")

</div>

Just tried and that's the solution. Thank you

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [November 20, 2020, 5:12am UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005/4 "2020-11-20T05:12:24Z")

</div>

> [@xziten](#):
>
> 3 nodes : 1 master, 1 master / data\_hot, 1 data\_warm

You are better off having all 3 as master eligible, less risk of not maintaining a quorum.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 18, 2020, 5:12am UTC](https://discuss.elastic.co/t/failed-to-set-password-for-user-apm-system-with-elastic-password/256005/5 "2020-12-18T05:12:33Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
