# Run\_as coupled with active directory auth

**URL:** <https://discuss.elastic.co/t/run-as-coupled-with-active-directory-auth/87068>\
**Category:** Elasticsearch\
**Created:** [May 25, 2017, 4:34am UTC](https://discuss.elastic.co/t/run-as-coupled-with-active-directory-auth/87068 "2017-05-25T04:34:10Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Buzzaes](https://avatars.discourse-cdn.com/v4/letter/b/5fc32e/32.png) [@Buzzaes](https://discuss.elastic.co/u/Buzzaes)\
**Post date:** [May 25, 2017, 4:34am UTC](https://discuss.elastic.co/t/run-as-coupled-with-active-directory-auth/87068/1 "2017-05-25T04:34:10Z")

</div>

I can't seem to get the impersonated user's ad groups reflected in xpack to acheive document label security, but instead just the user I'm authenticating to AD with. It just seems to ignore my run\_as user.

Can someone please show me a snippet of config?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 22, 2017, 4:34am UTC](https://discuss.elastic.co/t/run-as-coupled-with-active-directory-auth/87068/2 "2017-06-22T04:34:35Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
