# How to use manage\_own\_api\_key privilege in elk

**URL:** https://discuss.elastic.co/t/how-to-use-manage-own-api-key-privilege-in-elk/248573
**Category:** Elasticsearch
**Tags:** elastic-stack-security
**Created:** [September 14, 2020, 6:26pm UTC](https://discuss.elastic.co/t/how-to-use-manage-own-api-key-privilege-in-elk/248573 "2020-09-14T18:26:37Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![Ananya\_Chaurasia](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ananya_chaurasia/32/72990_2.png) [@Ananya\_Chaurasia](https://discuss.elastic.co/u/Ananya_Chaurasia)
#### Post date: [September 14, 2020, 6:26pm UTC](https://discuss.elastic.co/t/how-to-use-manage-own-api-key-privilege-in-elk/248573/1 "2020-09-14T18:26:37Z")

</div>

Is it possible to have a user which has just read only privilege to Kibana dashboard and can also create its api key?

Giving read only privilege to user does not allow user to create api key from kibana console. I read [here](https://www.elastic.co/guide/en/kibana/master/api-keys.html#api-keys-security-privileges) that

> You must have the manage\_security, manage\_api\_key, or the manage\_own\_api\_key cluster privileges to use API keys in Kibana.

It looks like manage\_own\_api\_key will work here but I am not sure how to use it. User should be assigned what minimal roles and privileges so that it can create api key and have read only privilege for rest of the features.

I am new to ELK, any idea how can this be achieved?

Thanks in advance 🙂

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [October 12, 2020, 6:26pm UTC](https://discuss.elastic.co/t/how-to-use-manage-own-api-key-privilege-in-elk/248573/2 "2020-10-12T18:26:39Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
