# Https communication not secured for elasticsearch

**URL:** <https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026>\
**Category:** Elasticsearch\
**Created:** [February 21, 2023, 7:09am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026 "2023-02-21T07:09:13Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![akhilkv43](https://avatars.discourse-cdn.com/v4/letter/a/ee7513/32.png) [@akhilkv43](https://discuss.elastic.co/u/akhilkv43)\
**Post date:** [February 21, 2023, 7:09am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026/1 "2023-02-21T07:09:13Z")

</div>

I am using single node  
version is 8.5.3  
Getting" Your connection to this site is not secured".  
I used cert and key in yml file  
Attaching the yml file  
can anybody advise on installation

# ======================== Elasticsearch Configuration =========================

# 

# NOTE: Elasticsearch comes with reasonable defaults for most settings.

# Before you set out to tweak and tune the configuration, make sure you

# understand what are you trying to accomplish and the consequences.

# 

# The primary way of configuring a node is via this file. This template lists

# the most important settings you may want to configure for a production cluster.

# 

# Please consult the documentation for further information on configuration options:

# [Elasticsearch Guide | Elastic](https://www.elastic.co/guide/en/elasticsearch/reference/index.html)

action.auto\_create\_index: .monitoring\*,.watches,.triggered\_watches,.watcher-history\*,.ml\*, Production,Development,UAT

# ---------------------------------- Cluster -----------------------------------

# 

# Use a descriptive name for your cluster:

# 

cluster.name: Elastic

# 

# ------------------------------------ Node ------------------------------------

# 

# Use a descriptive name for the node:

# 

#node.name: node-1

# 

# Add custom attributes to the node:

# 

#node.attr.rack: r1

# 

# ----------------------------------- Paths ------------------------------------

# 

# Path to directory where to store the data (separate multiple locations by comma):

# 

#path.data: /path/to/data

# 

# Path to log files:

# 

#path.logs: /path/to/logs

# 

# ----------------------------------- Memory -----------------------------------

# 

# Lock the memory on startup:

# 

#bootstrap.memory\_lock: true

# 

# Make sure that the heap size is set to about half the memory available

# on the system and that the owner of the process is allowed to use this

# limit.

# 

# Elasticsearch performs poorly when the system is swapping the memory.

# 

# ---------------------------------- Network -----------------------------------

# 

# By default Elasticsearch is only accessible on localhost. Set a different

# address here to expose this node on the network:

# 

network.host: **.**.\ ***.**

# 

# By default Elasticsearch listens for HTTP traffic on the first free port it

# finds starting at 9200. Set a specific HTTP port here:

# 

#http.port: 9200

# 

# For more information, consult the network module documentation.

# 

# --------------------------------- Discovery ----------------------------------

# 

# Pass an initial list of hosts to perform discovery when this node is started:

# The default list of hosts is ["127.0.0.1", "[::1]"]

# 

#discovery.seed\_hosts: ["host1", "host2"]

# 

# Bootstrap the cluster using an initial set of master-eligible nodes:

# 

#cluster.initial\_master\_nodes: ["node-1"]

# 

# For more information, consult the discovery and cluster formation module documentation.

# 

# --------------------------------- Readiness ----------------------------------

# 

# Enable an unauthenticated TCP readiness endpoint on localhost

# 

#readiness.port: 9399

# 

# ---------------------------------- Various -----------------------------------

# 

# Allow wildcard deletion of indices:

# 

#action.destructive\_requires\_name: false

#----------------------- BEGIN SECURITY AUTO CONFIGURATION -----------------------

# 

# The following settings, TLS certificates, and keys have been automatically

# generated to configure Elasticsearch security features on 17-02-2023 09:14:41

# 

# --------------------------------------------------------------------------------

# Enable security features

xpack.security.enabled: true

xpack.security.enrollment.enabled: true

# Enable encryption for HTTP API client connections, such as Kibana, Logstash, and Agents

xpack.security.http.ssl:  
enabled: true  
key: C:\elasticsearch-8.5.3\config\certs\ca.key  
certificate: C:\elasticsearch-8.5.3\config\certs\ca.crt

# Enable encryption and mutual authentication between cluster nodes

xpack.security.transport.ssl:  
enabled: true  
verification\_mode: certificate  
keystore.path: certs/transport.p12  
truststore.path: certs/transport.p12

# Create a new cluster with the current node only

# Additional nodes can still join the cluster later

cluster.initial\_master\_nodes: ["NOVIWINSABY0100"]

#----------------------- END SECURITY AUTO CONFIGURATION -------------------------

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [February 21, 2023, 7:11am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026/2 "2023-02-21T07:11:21Z")

</div>

Please format your code/logs/config using the `</>` button, or markdown style back ticks. It helps to make things easy to read which helps us help you 🙂

---

<div class="post-metadata">

**Author:** ![TimV](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/timv/32/13162_2.png) [@TimV](https://discuss.elastic.co/u/TimV)\
**Post date:** [February 22, 2023, 1:25am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026/3 "2023-02-22T01:25:37Z")

</div>

> [@akhilkv43](#):
>
> Getting" Your connection to this site is not secured".

Where do you get this message? What exactly does it say?

---

<div class="post-metadata">

**Author:** ![akhilkv43](https://avatars.discourse-cdn.com/v4/letter/a/ee7513/32.png) [@akhilkv43](https://discuss.elastic.co/u/akhilkv43)\
**Post date:** [February 22, 2023, 5:59am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026/4 "2023-02-22T05:59:21Z")

</div>

When loading elasticsearch and kibana in browser

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 22, 2023, 5:59am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026/5 "2023-03-22T05:59:57Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
