# Kibana anonymous authentication error

**URL:** <https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159>\
**Category:** Kibana\
**Tags:** elastic-stack-security\
**Created:** [December 19, 2020, 1:13pm UTC](https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159 "2020-12-19T13:13:03Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Valerioq](https://avatars.discourse-cdn.com/v4/letter/v/ea5d25/32.png) [@Valerioq](https://discuss.elastic.co/u/Valerioq)\
**Post date:** [December 19, 2020, 1:13pm UTC](https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159/1 "2020-12-19T13:13:03Z")

</div>

Hi,  
I tried to set anonymous authentication on kibana ver 7.8 following these instructions:

> **[Authentication in Kibana | Kibana Guide \[7.x\] | Elastic](https://www.elastic.co/guide/en/kibana/7.x/kibana-authentication.html#anonymous-authentication)**

But when I insert in my kibana.yml:

xpack.security. authc.providers:

basic.basic1:

order: 0

anonymous.anonymous1:

order: 1

credentials:

username: "anonymous\_service\_account"

password: "anonymous\_service\_account\_password"

I get this error:

98]: {"type":"log","@timestamp":"2020-12-17T13:15:13Z","tags":["fatal","root"],"pid":27198,"message":"{ Error: [config val

Dec 17 14:15:13 ctaqvwragrw02 kibana[27198]: FATAL Error: [config validation of [[xpack.security](http://xpack.security/)].authc.providers]: types that failed validation:

Dec 17 14:15:13 ctaqvwragrw02 kibana[27198]: - [config validation of [[xpack.security](http://xpack.security/)].authc.providers.0]: expected value of type [array] but got [Object]

Dec 17 14:15:13 ctaqvwragrw02 kibana[27198]: - [config validation of [[xpack.security](http://xpack.security/)].authc.providers.1.anonymous]: definition for this key is missing

If I leave only the basic proveder without the anonymous one it works.  
Could you please help me?

Thank you

Valerio

---

<div class="post-metadata">

**Author:** ![TimV](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/timv/32/13162_2.png) [@TimV](https://discuss.elastic.co/u/TimV)\
**Post date:** [December 21, 2020, 4:00am UTC](https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159/2 "2020-12-21T04:00:11Z")

</div>

At the top of the page you linked to it says:

> You are looking at preliminary documentation for a future release. Not what you want? See the [current release documentation](https://www.elastic.co/guide/en/kibana/current/index.html).

Since you are using Kibana 7.8, you want the documentation for Kibana 7.8 which is:

- [Authentication in Kibana | Kibana Guide [7.8] | Elastic](https://www.elastic.co/guide/en/kibana/7.8/kibana-authentication.html)

That version does not support anonymous authentication - in fact no released version of Kibana does, it is a feature that we expect to support in an upcoming Kibana release.

---

<div class="post-metadata">

**Author:** ![Valerioq](https://avatars.discourse-cdn.com/v4/letter/v/ea5d25/32.png) [@Valerioq](https://discuss.elastic.co/u/Valerioq)\
**Post date:** [December 21, 2020, 10:16am UTC](https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159/3 "2020-12-21T10:16:50Z")

</div>

Thank you Tim, I was so focused on the problem that I didn't note it was an upcoming feature.  
My problem is that I have a web application and I call kibana dashboards via iframe

\<iframe src="https://mydomain/kibana/app/kibana#/dashboard/XXXX".

To avoid re-login I use an apache reverse proxy and it works:  
\<LocationMatch "/kibana"\>

ProxyPass [http://myKibanaIp:5601](http://myKibanaIp:5601)

ProxyPassReverse [http://myKibanaIp:5601](http://myKibanaIp:5601)

Header add Authorization "Basic myBase64Credentials"

RequestHeader set Authorization "Basic myBase64Credentials"

but if a user goes directly to https://mydomain/kibana he is automatically logged in so he can visualise the dashboards. I would like to have logged in users only if they access via iframe as the anonymous authentication feature would do. Is there any solution or I have to wait the upcoming anonymous authentication feature?

Thank you

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 18, 2021, 10:17am UTC](https://discuss.elastic.co/t/kibana-anonymous-authentication-error/259159/4 "2021-01-18T10:17:04Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
