# Not able to login to Kibana

**URL:** <https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350>\
**Category:** Kibana\
**Tags:** elastic-stack-security\
**Created:** [August 3, 2021, 4:03pm UTC](https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350 "2021-08-03T16:03:58Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Harnoor\_Singh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/harnoor_singh/32/92489_2.png) [@Harnoor\_Singh](https://discuss.elastic.co/u/Harnoor_Singh)\
**Post date:** [August 3, 2021, 4:03pm UTC](https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350/1 "2021-08-03T16:03:58Z")

</div>

I restored my elasticsearch and Kibana instance on AWS instance. I had to create all indices and users again. I updated kibana.yml with new user credential to connect to elasticsearch. Yet none of the built in users or new users can login to kibana.  
Kindly help

---

<div class="post-metadata">

**Author:** ![Stef\_Nestor](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stef_nestor/32/85483_2.png) [@Stef\_Nestor](https://discuss.elastic.co/u/Stef_Nestor)\
**Post date:** [August 3, 2021, 6:18pm UTC](https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350/2 "2021-08-03T18:18:22Z")

</div>

On your Elasticsearch side, you should be able to check [bin/elasticsearch-users](https://www.elastic.co/guide/en/elasticsearch/reference/current/users-command.html). You'll want to make sure your attempting [built-in user](https://www.elastic.co/guide/en/elasticsearch/reference/current/built-in-users.html) is there.

Else, if [file-based auth](https://www.elastic.co/guide/en/elasticsearch/reference/current/file-realm.html), verify list of acceptable username/password.

Final method, when logging in via not either above method, Kibana auths against the ".security\_7" index which if you had to recreate (per "had to created all indices ... again") may not have the users you're attempting to authenticate.

Lastly, just sanity checking for exhaustiveness, if you've setup an [iDP authentication realm](https://www.elastic.co/guide/en/elasticsearch/reference/current/realms.html), maybe you didn't restore those config files.

Hope this helps ballpark troubleshooting!

---

<div class="post-metadata">

**Author:** ![TimV](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/timv/32/13162_2.png) [@TimV](https://discuss.elastic.co/u/TimV)\
**Post date:** [August 4, 2021, 2:53am UTC](https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350/3 "2021-08-04T02:53:49Z")

</div>

> [@Harnoor\_Singh](#):
>
> I restored my elasticsearch and Kibana instance on AWS instance

What exactly does this mean?  
It sounds like that "restore" process had an affect on the data stored in your Elasticsearch cluster, but it's hard to give a more useful answer without know what sort of "restore" we're talking about.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 1, 2021, 2:54am UTC](https://discuss.elastic.co/t/not-able-to-login-to-kibana/280350/4 "2021-09-01T02:54:13Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
