# Multi-tenancy in ES 8+

**URL:** <https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132>\
**Category:** SIEM\
**Created:** [March 30, 2022, 5:30pm UTC](https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132 "2022-03-30T17:30:42Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![tfriesen](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tfriesen/32/96772_2.png) [@tfriesen](https://discuss.elastic.co/u/tfriesen)\
**Post date:** [March 30, 2022, 5:30pm UTC](https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132/1 "2022-03-30T17:30:42Z")

</div>

Hi there

I'm the process of architecting out a SIEM-as-a-service offering using Elasticsearch+Fleet, but I'm having a hard time finding good, recent documentation on multi-tenancy for modern versions of Elasticsearch and/or Kibana. Everything on Google seems to point to either Opendistro/opensearch, or much older versions of Elasticsearch.

As near as I can tell, multi-tenancy would currently be implemented by employing Fleet Namespaces, Kibana spaces, roles, and document-level/attribute-based-security, but again, there's not good information on how to configure or set that up, or what pitfalls and gotchas to watch out for. Any information on how to best accomplish this would be great appreciated.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 30, 2022, 5:30pm UTC](https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132/2 "2022-03-30T17:30:43Z")

</div>

Opendistro is an AWS run product and differs from the original Elasticsearch and Kibana products that Elastic builds and maintains. You may need to contact them directly for further assistance.

(This is an automated response from your friendly Elastic bot. Please report this post if you have any suggestions or concerns :elasticheart: )

Opensearch is an AWS run product and differs from the original Elasticsearch and Kibana products that Elastic builds and maintains. You may need to contact them directly for further assistance.

(This is an automated response from your friendly Elastic bot. Please report this post if you have any suggestions or concerns :elasticheart: )

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [March 30, 2022, 5:44pm UTC](https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132/3 "2022-03-30T17:44:25Z")

</div>

There is not much besides what you already mentioned.

You would need to use [Kibana Spaces](https://www.elastic.co/guide/en/kibana/current/xpack-spaces.html) and configure the roles for [each user](https://www.elastic.co/guide/en/kibana/current/tutorial-secure-access-to-kibana.html#_spaces).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 27, 2022, 5:45pm UTC](https://discuss.elastic.co/t/multi-tenancy-in-es-8/301132/4 "2022-04-27T17:45:10Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
