# Kibana 6.4.2 plugin:security Privileges are missing and can't be removed, currently

**URL:** <https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650>\
**Category:** Kibana\
**Created:** [December 13, 2018, 2:12am UTC](https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650 "2018-12-13T02:12:55Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![samwato](https://avatars.discourse-cdn.com/v4/letter/s/aeb1de/32.png) [@samwato](https://discuss.elastic.co/u/samwato)\
**Post date:** [December 13, 2018, 2:12am UTC](https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650/1 "2018-12-13T02:12:55Z")

</div>

Was running on Elastic Cloud 6.4.2

Received error when logged into Kibana. No known cause.  
**plugin:security@6.4.3 | Privileges are missing and can't be removed, currently.**

Tried Updating to 6.5.3 to fix error but Kibana instance never starts..  
**"Waiting until instances are running"**

Terminated Kibana a few times and created a new instance. Still no luck.

Removed /.kibana\_1 and /.kibana\_2 for testing, still same errors.

Unfortunately I cannot try the 6.5.0 known issue fix as using Elastic Cloud.

Currently,  
Elasticsearch is sitting on version 6.5.3  
Kibana cannot update from 6.4.2 to latest

Any suggestions.

---

<div class="post-metadata">

**Author:** ![mark.dueck](https://avatars.discourse-cdn.com/v4/letter/m/f04885/32.png) [@mark.dueck](https://discuss.elastic.co/u/mark.dueck)\
**Post date:** [December 13, 2018, 4:27am UTC](https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650/2 "2018-12-13T04:27:22Z")

</div>

FYI, we wound up solving this:

One of our crazy developers pointed an external Kibana 6.5.3 install at our elasticsearch/kibana 6.4.2 cloud deployment. It seems that the new kibana eagerly started to upgrade .security and .kibana indexes before it reported that elastic was running the wrong version, creating the error in kibana 6.4.2.

We found the code responsible for creating the error (so thanks for making this product open source) and realised we had two options, make the existingPrivileges match expectedPrivileges or just remove the existingPrivileges all together.

The easiest solution was to delete these entries from the .security-6 index which causes kibana to re-create them:  
"name":"all"  
name":"read"  
"name":"space\_all"  
"name":"space\_read"

The top two were in 6.4.2 so first we just tried removing those two (the others are new to 6.5) but whatever is querying these things must pull them all up so we had to get rid of them all. Their \_id's all start with "application-privilege\_kibana-.kibana:

After that Kibana 6.4.2 was able to start again (and presumably re-created the new privs) which then allowed us to upgrade it (Note: this is all on elastic cloud, we don't have any terminal access).

Hope this helps someone.

---

<div class="post-metadata">

**Author:** ![Larry\_Gregory](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/larry_gregory/32/34969_2.png) [@Larry\_Gregory](https://discuss.elastic.co/u/Larry_Gregory)\
**Post date:** [December 13, 2018, 12:57pm UTC](https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650/3 "2018-12-13T12:57:33Z")

</div>

@mark.dueck thanks for researching and posting your solution! You're absolutely right, having multiple versions of Kibana running against the same `.kibana` index may cause the older versions to report this error.

For others running into this (specifically, moving from 6.4.x =\> 6.5.x), running the following should help. Restart Kibana after running these commands, and you should be all set. Note if you don't use the default `.kibana` index, you'll need to replace `.kibana` below with the name of your actual kibana index:

```auto
DELETE _xpack/security/privilege/kibana-.kibana/space_all
DELETE _xpack/security/privilege/kibana-.kibana/space_read

```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 10, 2019, 12:57pm UTC](https://discuss.elastic.co/t/kibana-6-4-2-plugin-security-privileges-are-missing-and-cant-be-removed-currently/160650/4 "2019-01-10T12:57:36Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
