# "Machine learning permission error" for demo user

**URL:** <https://discuss.elastic.co/t/machine-learning-permission-error-for-demo-user/238713>\
**Category:** SIEM\
**Created:** [June 25, 2020, 3:46pm UTC](https://discuss.elastic.co/t/machine-learning-permission-error-for-demo-user/238713 "2020-06-25T15:46:02Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![madduck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/madduck/32/63444_2.png) [@madduck](https://discuss.elastic.co/u/madduck)\
**Post date:** [June 25, 2020, 3:46pm UTC](https://discuss.elastic.co/t/machine-learning-permission-error-for-demo-user/238713/1 "2020-06-25T15:46:02Z")

</div>

Hi there,  
I'm trying to create a user with access to the SIEM application as well as the machine learning detections. However I am incapable of coming up with a privilege combination that would allow this.

So far the only users that are able to create machine learning detections are with the role "superuser".

The user in question has the permissions:  
**Cluster privs:**  
`read_ccr, read_ilm, read_slm, manage_ml, monitor_ml`  
**Index privs:**  
`read, write, create_doc, create`  
Image for reference:

 ![Screenshot 2020-06-25 at 17.37.54](https://us1.discourse-cdn.com/elastic/original/3X/e/c/ec01e123eb6e61d60f63892f16115c7008aa7bcf.png)

The error message I receive says:

```bash
Your visualization has error(s)

Machine learning permissions failure
Not Found

```

This happens when the user initially navigates into the SIEM application. The user is furthermore not able to create any machine learning detections. The option is simply greyed out with the text "Unavailable" underneath it.

The [Privilege Documentation](https://www.elastic.co/guide/en/elasticsearch/reference/current/security-privileges.html) also does not seem to have a privilege that could help here?

I feel like I'm missing something rather obvious. Any help is greatly appreciated!

//EDIT:  
Issue resolved.  
There are pre-defined roles for this use-case, namely "machine\_learning\_user" and "machine\_learning\_admin"

---

<div class="post-metadata">

**Author:** ![Frank\_Hassanabad](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/frank_hassanabad/32/49255_2.png) [@Frank\_Hassanabad](https://discuss.elastic.co/u/Frank_Hassanabad)\
**Post date:** [June 25, 2020, 4:11pm UTC](https://discuss.elastic.co/t/machine-learning-permission-error-for-demo-user/238713/2 "2020-06-25T16:11:59Z")

</div>

Ha! I was about to reply. Thanks for updating with a solution! Appreciate it.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 23, 2020, 4:17pm UTC](https://discuss.elastic.co/t/machine-learning-permission-error-for-demo-user/238713/3 "2020-07-23T16:17:17Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
