# IFramed Kibana Visualization with reverse proxy JWT auth

**URL:** <https://discuss.elastic.co/t/iframed-kibana-visualization-with-reverse-proxy-jwt-auth/233390>\
**Category:** Kibana\
**Created:** [May 19, 2020, 6:36pm UTC](https://discuss.elastic.co/t/iframed-kibana-visualization-with-reverse-proxy-jwt-auth/233390 "2020-05-19T18:36:06Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![gurtgurt](https://avatars.discourse-cdn.com/v4/letter/g/7993a0/32.png) [@gurtgurt](https://discuss.elastic.co/u/gurtgurt)\
**Post date:** [May 19, 2020, 6:36pm UTC](https://discuss.elastic.co/t/iframed-kibana-visualization-with-reverse-proxy-jwt-auth/233390/1 "2020-05-19T18:36:06Z")

</div>

Hi,

I'm trying to setup Kibana inside an iframe with the following flow:

1. The client side (with a Kibana Visualization iframed) makes requests to a reverse proxy
2. All requests from the iframe need to have an `Authorization` header that the reverse proxy validates.
3. The reverse proxy then routes the request to Kibana running somewhere in my VPC.

The part I'm struggling with is getting the JWT token for authorization with the reverse proxy into the iframe and have it being used in every Kibana outgoing request. Any ideas on how to accomplish this?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 16, 2020, 6:41pm UTC](https://discuss.elastic.co/t/iframed-kibana-visualization-with-reverse-proxy-jwt-auth/233390/2 "2020-06-16T18:41:36Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
