# Kibana usage monitoring

**URL:** <https://discuss.elastic.co/t/kibana-usage-monitoring/239485>\
**Category:** Kibana\
**Tags:** elastic-stack-monitoring\
**Created:** [July 1, 2020, 12:37pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485 "2020-07-01T12:37:57Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Thomas74](https://avatars.discourse-cdn.com/v4/letter/t/3bc359/32.png) [@Thomas74](https://discuss.elastic.co/u/Thomas74)\
**Post date:** [July 1, 2020, 12:37pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/1 "2020-07-01T12:37:57Z")

</div>

Hi,

Is something exist into Kibana to get users usage ?

I mean :

- Authentication success/failure by users, role and by teams
- Dashboard consulted/created/modified

Best regards,

Thomas R.

---

<div class="post-metadata">

**Author:** ![rashmi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rashmi/32/16391_2.png) [@rashmi](https://discuss.elastic.co/u/rashmi)\
**Post date:** [July 1, 2020, 2:39pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/2 "2020-07-01T14:39:01Z")

</div>

You can enable auditing to keep track of security-related events such as authorization success and failures. Logging these events enables you to monitor Kibana for suspicious activity and provides evidence in the event of an attack. Audit logs are **disabled** by default. To enable this functionality, you must set `xpack.security.audit.enabled` to `true` in `kibana.yml` .  
[https://www.elastic.co/guide/en/kibana/current/xpack-security-audit-logging.html](https://www.elastic.co/guide/en/kibana/current/xpack-security-audit-logging.html)

Use the Kibana audit logs in conjunction with Elasticsearch’s audit logging to get a holistic view of all security related events. Kibana defers to Elasticsearch’s security model for authentication, data index authorization, and features that are driven by cluster-wide privileges.

look at [Log users and query in audit log](https://discuss.elastic.co/t/log-users-and-query-in-audit-log/132446/5) - for more implementation ideas.

Hope this helps  
Rashmi

---

<div class="post-metadata">

**Author:** ![Thomas74](https://avatars.discourse-cdn.com/v4/letter/t/3bc359/32.png) [@Thomas74](https://discuss.elastic.co/u/Thomas74)\
**Post date:** [July 1, 2020, 2:50pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/3 "2020-07-01T14:50:20Z")

</div>

Thanks for your detailed answer.

It is exactly what I was looking for 😃

Is this option a part of the basic xpack license ?

It seems not included :  
[https://www.elastic.co/subscriptions](https://www.elastic.co/subscriptions)

---

<div class="post-metadata">

**Author:** ![rashmi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rashmi/32/16391_2.png) [@rashmi](https://discuss.elastic.co/u/rashmi)\
**Post date:** [July 1, 2020, 2:56pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/4 "2020-07-01T14:56:30Z")

</div>

![Screen Shot 2020-07-01 at 7.52.54 AM](https://us1.discourse-cdn.com/elastic/original/3X/8/f/8f46a2e8e7a2d0c83361b17414fa59669ef30926.png)

Audit logging is Gold, Platinum, Enterprise as described in [https://www.elastic.co/subscriptions](https://www.elastic.co/subscriptions).

Our [Cloud offering](https://www.elastic.co/cloud) comes with an x-pack license which makes this functionality available as well: [https://www.elastic.co/cloud](https://www.elastic.co/cloud)

Hope it helps  
Rashmi

---

<div class="post-metadata">

**Author:** ![Thomas74](https://avatars.discourse-cdn.com/v4/letter/t/3bc359/32.png) [@Thomas74](https://discuss.elastic.co/u/Thomas74)\
**Post date:** [July 1, 2020, 3:03pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/5 "2020-07-01T15:03:51Z")

</div>

Oki good to know. Thanks for your replies. 🙂

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 29, 2020, 3:03pm UTC](https://discuss.elastic.co/t/kibana-usage-monitoring/239485/6 "2020-07-29T15:03:57Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
