# HTTP Basic Auth + SSL: communication between nodes?

**URL:** <https://discuss.elastic.co/t/http-basic-auth-ssl-communication-between-nodes/19717>\
**Category:** Elasticsearch\
**Created:** [September 10, 2014, 2:56pm UTC](https://discuss.elastic.co/t/http-basic-auth-ssl-communication-between-nodes/19717 "2014-09-10T14:56:05Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Julien\_Genestoux](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/julien_genestoux/32/1288_2.png) [@Julien\_Genestoux](https://discuss.elastic.co/u/Julien_Genestoux)\
**Post date:** [September 10, 2014, 2:56pm UTC](https://discuss.elastic.co/t/http-basic-auth-ssl-communication-between-nodes/19717/1 "2014-09-10T14:56:05Z")

</div>

Hello,

We're evaluating ElasticSearch and for this we're trying to deploy a  
cluster against our production data.  
For now, the goal is to index and see the performance on some obvious  
queries.

We have deployed 2 nodes and "secured" them using an NGINX proxy which  
"hides" them behind HTTPS with Basic Auth.  
Each node work well individually, but they fail to communicate with each  
other.

I understand that multicast will not work since we use nginx, so we  
configured the nodes using this:  
discovery.zen.minimum\_master\_nodes: 2  
discovery.zen.ping.multicast.enabled: false  
discovery.zen.ping.unicast.hosts: ,

How can we specify which ports to use (8080), the fact that it needs to use  
SSL and credentials for HTTP basic Auth?

Is that even doable? If not how can we get both nodes to communicate  
securely given that we Linode servers (XEN instances in a network that we  
do not control).

Thanks,

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/49e3c1f7-aab1-45ae-9229-f2aa4c37bbc6%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/49e3c1f7-aab1-45ae-9229-f2aa4c37bbc6%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Julien\_Genestoux](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/julien_genestoux/32/1288_2.png) [@Julien\_Genestoux](https://discuss.elastic.co/u/Julien_Genestoux)\
**Post date:** [September 10, 2014, 7:08pm UTC](https://discuss.elastic.co/t/http-basic-auth-ssl-communication-between-nodes/19717/2 "2014-09-10T19:08:13Z")

</div>

Please disregard, I read more of these docs

> **[Elasticsearch Platform — Find real-time answers at scale](https://www.elastic.co)**
>
> Power insights and outcomes with the Elasticsearch Platform and AI. See into your data and find answers that matter with enterprise solutions designed to help you build, observe, and protect. Try Elasticsearch free today.

and found that changing the HTTP interface does not affect at all the  
inter-node communciation!

On Wednesday, September 10, 2014 4:56:05 PM UTC+2, Julien Genestoux wrote:

> Hello,
> 
> We're evaluating Elasticsearch and for this we're trying to deploy a  
> cluster against our production data.  
> For now, the goal is to index and see the performance on some obvious  
> queries.
> 
> We have deployed 2 nodes and "secured" them using an NGINX proxy which  
> "hides" them behind HTTPS with Basic Auth.  
> Each node work well individually, but they fail to communicate with each  
> other.
> 
> I understand that multicast will not work since we use nginx, so we  
> configured the nodes using this:  
> discovery.zen.minimum\_master\_nodes: 2  
> discovery.zen.ping.multicast.enabled: false  
> discovery.zen.ping.unicast.hosts: ,
> 
> How can we specify which ports to use (8080), the fact that it needs to  
> use SSL and credentials for HTTP basic Auth?
> 
> Is that even doable? If not how can we get both nodes to communicate  
> securely given that we Linode servers (XEN instances in a network that we  
> do not control).
> 
> Thanks,

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/8819458b-ad5f-48e3-8733-1090f4051778%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/8819458b-ad5f-48e3-8733-1090f4051778%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 1:03am UTC](https://discuss.elastic.co/t/http-basic-auth-ssl-communication-between-nodes/19717/3 "2017-07-06T01:03:14Z")

</div>


