# File based authentication for Kibana

**URL:** <https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594>\
**Category:** Kibana\
**Created:** [July 22, 2024, 10:24pm UTC](https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594 "2024-07-22T22:24:04Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![elastic\_noob1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/elastic_noob1/32/125492_2.png) [@elastic\_noob1](https://discuss.elastic.co/u/elastic_noob1)\
**Post date:** [July 22, 2024, 10:24pm UTC](https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594/1 "2024-07-22T22:24:04Z")

</div>

I am trying to configure file based authentication for Kibana users but is it supported? The [documentation](https://www.elastic.co/guide/en/elasticsearch/reference/7.3/security-api-put-user.html) suggests managing the users through API but is file realm supported? Based on my testing, it is not working but want to confirm 🙂

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [July 22, 2024, 10:56pm UTC](https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594/2 "2024-07-22T22:56:18Z")

</div>

> [@elastic\_noob1](#):
>
> I am trying to configure file based authentication for Kibana users but is it supported?

It is not, there are no Kibana users, all user authentication is done in Elasticsearch.

When you use the _native_ realm you can use Kibana to add, edit or remove users as specified in the [documentation](https://www.elastic.co/guide/en/elasticsearch/reference/current/native-realm.html).

But if you use the _File based authentication_ this is not possible as mentioned in the [documentation](https://www.elastic.co/guide/en/elasticsearch/reference/current/file-realm.html).

> As the administrator of the cluster, it is your responsibility to ensure the same users are defined on every node in the cluster. The Elastic Stack security features do not deliver any mechanism to guarantee this. **You should also be aware that you cannot add or manage users in the file realm via the user APIs and you cannot add or manage them in Kibana on the Management / Security / Users page**
