# Need to create user with specific server \[7.1.1\]

**URL:** <https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-security\
**Created:** [July 11, 2019, 12:06pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002 "2019-07-11T12:06:27Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![sumitpramanik](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sumitpramanik/32/102380_2.png) [@sumitpramanik](https://discuss.elastic.co/u/sumitpramanik)\
**Post date:** [July 11, 2019, 12:06pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/1 "2019-07-11T12:06:27Z")

</div>

As the title say, is it possible to create users in kibana who has permission to view specific server logs? Like if I have three server x, y, z and I want to create a user "mike" who can only view logs from server y when he log in. He wont be able to access other server logs.

I know in Space you can separate these but then I have to configure likewise in logstash too and thats a hassle to me. So let me know if there is any easy way to do it.

Thanks in advance.

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [July 11, 2019, 12:10pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/2 "2019-07-11T12:10:00Z")

</div>

You can redirect servers logs to differents indices, like

```
logstash-logs-server-1-YYYY-MM-dd
logstash-logs-server-2-YYYY-MM-dd
logstash-logs-server-3-YYYY-MM-dd

```

and then you can create specifique role for each index pattern ...

Hope this can help

---

<div class="post-metadata">

**Author:** ![sumitpramanik](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sumitpramanik/32/102380_2.png) [@sumitpramanik](https://discuss.elastic.co/u/sumitpramanik)\
**Post date:** [July 11, 2019, 12:11pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/3 "2019-07-11T12:11:48Z")

</div>

@ylasri Yes, I can do that. But that will create hundreds of indices which is difficult to manage. 😓

---

<div class="post-metadata">

**Author:** ![Christian\_Dahlqvist](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christian_dahlqvist/32/4617_2.png) [@Christian\_Dahlqvist](https://discuss.elastic.co/u/Christian_Dahlqvist)\
**Post date:** [July 11, 2019, 12:20pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/4 "2019-07-11T12:20:58Z")

</div>

You can do it using document level security, but that is a feature that requires a commercial license.

---

<div class="post-metadata">

**Author:** ![sumitpramanik](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sumitpramanik/32/102380_2.png) [@sumitpramanik](https://discuss.elastic.co/u/sumitpramanik)\
**Post date:** [July 11, 2019, 1:12pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/5 "2019-07-11T13:12:38Z")

</div>

Ok, that will not be possible for me then as I am using basic license.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 8, 2019, 1:25pm UTC](https://discuss.elastic.co/t/need-to-create-user-with-specific-server-7-1-1/190002/6 "2019-08-08T13:25:33Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
