# How can Kibana be accessed using IAM in AWS?

**URL:** <https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111>\
**Category:** Kibana\
**Created:** [March 13, 2019, 10:01am UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111 "2019-03-13T10:01:23Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![Habbiot](https://avatars.discourse-cdn.com/v4/letter/h/13edae/32.png) [@Habbiot](https://discuss.elastic.co/u/Habbiot)\
**Post date:** [March 13, 2019, 10:01am UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/1 "2019-03-13T10:01:23Z")

</div>

I am using ELK stack on EC2 INstances. How can Kibana be accessed using IAM in AWS ?

---

<div class="post-metadata">

**Author:** ![cufflinks](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/cufflinks/32/42129_2.png) [@cufflinks](https://discuss.elastic.co/u/cufflinks)\
**Post date:** [March 13, 2019, 11:29pm UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/2 "2019-03-13T23:29:59Z")

</div>

Hi Habbiot,

Unfortunately, we don't support Amazon's offering of the Elastic Stack. Please Contact Amazon for support with this issue.

---

<div class="post-metadata">

**Author:** ![Habbiot](https://avatars.discourse-cdn.com/v4/letter/h/13edae/32.png) [@Habbiot](https://discuss.elastic.co/u/Habbiot)\
**Post date:** [March 13, 2019, 11:48pm UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/3 "2019-03-13T23:48:22Z")

</div>

Hello John, thanks for the feedback, but my mistake, may be I didn’t communicate the doubt rightly.. I did mention ELK stack and not ES service(Elasticstack Service is a Managed Service by AWS). ELK stack is not a managed service and no matter what I do Amazon will not support it.

IAM = Identity Access Management

My Question is does Kibana(I have ELK stack on EC2 instances which means Kibana is also on A EC2)support or integrate with IAM.

---

<div class="post-metadata">

**Author:** ![cufflinks](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/cufflinks/32/42129_2.png) [@cufflinks](https://discuss.elastic.co/u/cufflinks)\
**Post date:** [March 14, 2019, 12:03am UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/4 "2019-03-14T00:03:29Z")

</div>

Hello Habbiot,

I am sorry. I mislead you with my previous answser. We support Amazon services (so IAM would be Amazon's Identity and Access Management mechanism). For that, you would need to contact Amazon to see if there is some kind of integration. We don't provide an integration with Amazon's services at all.

---

<div class="post-metadata">

**Author:** ![Habbiot](https://avatars.discourse-cdn.com/v4/letter/h/13edae/32.png) [@Habbiot](https://discuss.elastic.co/u/Habbiot)\
**Post date:** [March 14, 2019, 12:34am UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/5 "2019-03-14T00:34:17Z")

</div>

John, that’s Fair enough, the reason for me go to go with ELK stack on AWS rather than using their ES is to reduce the CAPEX and OPEX and at the same time AWS ES lake few basic features.

Let me reframe my question.. how can I achieve RBAC and AD from a user perspective ? Let’s debate (if fine with you, as the topic is interesting) on two use cases. 1: how can I integrate AD with Kibana irrespective of where Kibana lies ? Second would it be possible to to ask for any such type of use cases ?

---

<div class="post-metadata">

**Author:** ![lar](https://avatars.discourse-cdn.com/v4/letter/l/47e85d/32.png) [@lar](https://discuss.elastic.co/u/lar)\
**Post date:** [March 14, 2019, 12:46pm UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/6 "2019-03-14T12:46:09Z")

</div>

> [@Habbiot](#):
>
> w can I achieve RBAC

It's simple use X-Pack  
RBAC - [[Configuring Role-based Access Control | X-Pack for the Elastic Stack [6.2] | Elastic](https://www.elastic.co/guide/en/x-pack/current/authorization.html)]  
Active Directory - [[Setting Up User Authentication | X-Pack for the Elastic Stack [6.2] | Elastic](https://www.elastic.co/guide/en/x-pack/current/setting-up-authentication.html)]

---

<div class="post-metadata">

**Author:** ![Habbiot](https://avatars.discourse-cdn.com/v4/letter/h/13edae/32.png) [@Habbiot](https://discuss.elastic.co/u/Habbiot)\
**Post date:** [March 14, 2019, 12:50pm UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/7 "2019-03-14T12:50:31Z")

</div>

Thanks Jack !!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 11, 2019, 12:54pm UTC](https://discuss.elastic.co/t/how-can-kibana-be-accessed-using-iam-in-aws/172111/8 "2019-04-11T12:54:46Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
