# Kibana https (ssl)

**URL:** https://discuss.elastic.co/t/kibana-https-ssl/88560
**Category:** Kibana
**Created:** [June 7, 2017, 11:11am UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560 "2017-06-07T11:11:22Z")
**Posts on this page:** 8
**Page:** 1

<div class="post-metadata">

### Author: ![Raj\_Kumar](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/raj_kumar/32/25420_2.png) [@Raj\_Kumar](https://discuss.elastic.co/u/Raj_Kumar)
#### Post date: [June 7, 2017, 11:11am UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/1 "2017-06-07T11:11:22Z")

</div>

Hi All,

Iam having single node Elk SETUP on one [machine.Is](http://machine.Is) it possible to make ssl connection on a single node or only in clusters we can use https?

For example : from [http://privateip:5601](http://privateip:5601) to [https://private:5601](https://private:5601)

Any help would be much appreciated 🙂

Thanks,  
Raj

---

<div class="post-metadata">

### Author: ![Oozza](https://avatars.discourse-cdn.com/v4/letter/o/76d3ee/32.png) [@Oozza](https://discuss.elastic.co/u/Oozza)
#### Post date: [June 7, 2017, 11:36am UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/2 "2017-06-07T11:36:29Z")

</div>

To enable SSL in Kibana setup path to your certificate and key files in Kibana's configuration file.

What it looks like in kibana.yml file:

```
# Paths to the PEM-format SSL certificate and SSL key files, respectively. These
# files enable SSL for outgoing requests from the Kibana server to the browser.
server.ssl.cert: C:/Kibana/certs/cert.pem
server.ssl.key: C:/Kibana/certs/keypl.pem
```

---

<div class="post-metadata">

### Author: ![Raj\_Kumar](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/raj_kumar/32/25420_2.png) [@Raj\_Kumar](https://discuss.elastic.co/u/Raj_Kumar)
#### Post date: [June 7, 2017, 1:12pm UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/3 "2017-06-07T13:12:10Z")

</div>

Hi ,  
Thank you for the reply.  
Am using xpack certgen to create certificates and key.  
should i use same certs and keys in both elasticsearch.yml and kibana.yml,or Only kibana.yml.

Note :both ELasticsearch and Kibana are on the same host

Thanks,  
Raj

---

<div class="post-metadata">

### Author: ![Oozza](https://avatars.discourse-cdn.com/v4/letter/o/76d3ee/32.png) [@Oozza](https://discuss.elastic.co/u/Oozza)
#### Post date: [June 7, 2017, 1:31pm UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/4 "2017-06-07T13:31:55Z")

</div>

For communication that stays on same host you don't need certificate. We don't know what is your use case.

When running ES+Kibana on same host, the purpose of elasticsearch's certificate may be to secure connection from remote data shippers to ES. The purpose of the certificate in Kibana would be to present your Kibana server to public and to encipher data between client's browser and Kibana.

You can use same certificate for both of them, especially while just testing.

---

<div class="post-metadata">

### Author: ![Raj\_Kumar](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/raj_kumar/32/25420_2.png) [@Raj\_Kumar](https://discuss.elastic.co/u/Raj_Kumar)
#### Post date: [June 7, 2017, 1:48pm UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/5 "2017-06-07T13:48:11Z")

</div>

Thank you for the reply,that makes sense and yes you are right ,when we install more nodes and shippers we could put certificates in each instances.

As of now my ELk setup in only single node,since my kibana is communicating with google chrome as a browser to view kibana,is it recommended to have https or http?

if https enabling these two settings will it work

# Paths to the PEM-format SSL certificate and SSL key files, respectively. These

# files enable SSL for outgoing requests from the Kibana server to the browser.

server.ssl.cert: C:/Kibana/certs/cert.pem  
server.ssl.key: C:/Kibana/certs/keypl.pem

Thanks,  
Raj

---

<div class="post-metadata">

### Author: ![Oozza](https://avatars.discourse-cdn.com/v4/letter/o/76d3ee/32.png) [@Oozza](https://discuss.elastic.co/u/Oozza)
#### Post date: [June 7, 2017, 2:10pm UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/6 "2017-06-07T14:10:12Z")

</div>

Yes, setting up path to certificates in correct format should automatically (after restart) make Kibana use Https protocol instead of Http. It's also said in the commented lines you've copied. 🙂

---

<div class="post-metadata">

### Author: ![Raj\_Kumar](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/raj_kumar/32/25420_2.png) [@Raj\_Kumar](https://discuss.elastic.co/u/Raj_Kumar)
#### Post date: [June 9, 2017, 8:42am UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/7 "2017-06-09T08:42:02Z")

</div>

Thank you very much for the info 🙂

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [July 7, 2017, 8:42am UTC](https://discuss.elastic.co/t/kibana-https-ssl/88560/8 "2017-07-07T08:42:47Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
