# Recreating “kibana\_dashboard\_only\_user” and “kibana\_system” results in errors

**URL:** <https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-security\
**Created:** [October 10, 2018, 6:48am UTC](https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763 "2018-10-10T06:48:46Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Sjaak01](https://avatars.discourse-cdn.com/v4/letter/s/73ab20/32.png) [@Sjaak01](https://discuss.elastic.co/u/Sjaak01)\
**Post date:** [October 10, 2018, 6:48am UTC](https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763/1 "2018-10-10T06:48:47Z")

</div>

Hi,

I want to run a second Kibana instance that uses `"kibana-test"` instead of `".kibana"` so I can separate dashboards.

I first tested using the two built in roles above using the default `.kibana` index and all was working well.

Now I've remade those two roles and called them test\_dashboard\_only and `test_kibana_system`. The permissions are the same as on the built in roles yet when I set up a user assigned to the `test_kibana_system` group in `kibana.yml` I get permission errors for the kibana-test index.

Also when I use the built in role and then try to log in with my dashboard only user it shows all the icons on the nav bar.

What is happening? Permissions are exactly the same so I don't understand what the problem is.

---

<div class="post-metadata">

**Author:** ![Sjaak01](https://avatars.discourse-cdn.com/v4/letter/s/73ab20/32.png) [@Sjaak01](https://discuss.elastic.co/u/Sjaak01)\
**Post date:** [October 10, 2018, 8:31am UTC](https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763/2 "2018-10-10T08:31:25Z")

</div>

Error:

> [08:28:24.646] [error][security] Error registering Kibana Privileges with Elasticsearch for kibana-.test: [security\_exception] action [cluster:admin/xpack/security/privilege/get] is unauthorized for user [test\_access]

kibana.yml

> kibana.index: ".test"  
> elasticsearch.username: "test\_access"  
> elasticsearch.password: "password"  
> xpack.security.enabled: true

Why does the index change from .test to kibana-.test?

Again, permissions are exactly the same as the kibana\_system role except for the .kibana\* index which I changed to .test\*.

A new role with the same dashboard only permissions either results in the oops error when logging in, or showing giving complete access.

Permission are just completely ignored.

---

<div class="post-metadata">

**Author:** ![ikakavas](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ikakavas/32/34430_2.png) [@ikakavas](https://discuss.elastic.co/u/ikakavas)\
**Post date:** [October 30, 2018, 2:43pm UTC](https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763/3 "2018-10-30T14:43:56Z")

</div>

For your `test_dashboard_only` role, you need to add that to the `Dashboard only roles` as [docu  
mented here](https://www.elastic.co/guide/en/kibana/current/advanced-dashboard-mode-configuration.html)

Also, add `kibana-.test` to the list of `indices` in your new role definition.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 27, 2018, 2:43pm UTC](https://discuss.elastic.co/t/recreating-kibana-dashboard-only-user-and-kibana-system-results-in-errors/151763/4 "2018-11-27T14:43:58Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
