# Kibana authentication based on the indices

**URL:** <https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044>\
**Category:** Kibana\
**Tags:** elastic-stack-security\
**Created:** [December 2, 2018, 1:04pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044 "2018-12-02T13:04:57Z")\
**Posts on this page:** 11\
**Page:** 1

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 2, 2018, 1:04pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/1 "2018-12-02T13:04:58Z")

</div>

hi,  
kindly, is it possible to get user authentication to different users in order to access to kibana console?  
actually, logs from different machines come to elasticsearch and kibana shows these logs based on their indices. for example some logs are under index1 and some logs are under index2. now, is it possible to separate the access to these indices from kibana? it means that, user1 can only access to index1 in kibana and user2 can only access to index2 in kibana console. is it possible?

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [December 3, 2018, 6:14am UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/2 "2018-12-03T06:14:32Z")

</div>

You can do that with [https://www.elastic.co/products/stack/security](https://www.elastic.co/products/stack/security)

---

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 3, 2018, 2:01pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/3 "2018-12-03T14:01:15Z")

</div>

thanks for your replying.  
is this feature available for free products? or just is in enterprise ones?

---

<div class="post-metadata">

**Author:** ![ikakavas](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ikakavas/32/34430_2.png) [@ikakavas](https://discuss.elastic.co/u/ikakavas)\
**Post date:** [December 3, 2018, 2:10pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/4 "2018-12-03T14:10:47Z")

</div>

Hi,

As you can see in the [subscriptions](https://www.elastic.co/subscriptions) page, security is only available with a Gold or Platinum license.

---

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 3, 2018, 2:46pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/5 "2018-12-03T14:46:29Z")

</div>

Many thanks

---

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 4, 2018, 12:34pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/6 "2018-12-04T12:34:57Z")

</div>

can we access to multi-tenancy feature for kibana in open source and free version?

---

<div class="post-metadata">

**Author:** ![MorganaOP](https://avatars.discourse-cdn.com/v4/letter/m/7feea3/32.png) [@MorganaOP](https://discuss.elastic.co/u/MorganaOP)\
**Post date:** [December 6, 2018, 10:05pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/7 "2018-12-06T22:05:24Z")

</div>

In Management Tab, you can define roles to specify what indices is allowed for which user (with privilege options of read/write/manager/delete etc.), and assign that role to the user. To further narrow down the contents in each index, you may user Granted fields and query.

To separate access to kibana console, you will need to upgrade to Kibana 6.5 and use Kibana Spaces.

---

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 11, 2018, 9:17am UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/8 "2018-12-11T09:17:39Z")

</div>

many thanks.  
are these features provided in free version of ELK?

---

<div class="post-metadata">

**Author:** ![sahere37](https://avatars.discourse-cdn.com/v4/letter/s/b2d939/32.png) [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Post date:** [December 11, 2018, 9:23am UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/9 "2018-12-11T09:23:55Z")

</div>

I found that we can define username and password to be asked in kibana login page. this facility is not activated in free kibana product so that there is no login page after running "localhost:5601". after searching i found that we should install X-pack to have it. but, it seems that X-pack is accessible in golden products and not accessible in free ones. is this true?

---

<div class="post-metadata">

**Author:** ![MorganaOP](https://avatars.discourse-cdn.com/v4/letter/m/7feea3/32.png) [@MorganaOP](https://discuss.elastic.co/u/MorganaOP)\
**Post date:** [December 11, 2018, 7:13pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/10 "2018-12-11T19:13:49Z")

</div>

Yes, you need at least Gold license for X-pack to have the Security features (authentication).  
[https://www.elastic.co/subscriptions](https://www.elastic.co/subscriptions)

I think the multi-tenancy feature is with Search Guard, which is a third party plugin that you will need a license as well.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 8, 2019, 7:13pm UTC](https://discuss.elastic.co/t/kibana-authentication-based-on-the-indices/159044/11 "2019-01-08T19:13:49Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
