# Sign-in to Kibana only with Google Account

**URL:** https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133
**Category:** Kibana
**Tags:** elastic-stack-security
**Created:** [June 24, 2019, 1:02pm UTC](https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133 "2019-06-24T13:02:51Z")
**Posts on this page:** 4
**Page:** 1

<div class="post-metadata">

### Author: ![Louis-Clement](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/louis-clement/32/48634_2.png) [@Louis-Clement](https://discuss.elastic.co/u/Louis-Clement)
#### Post date: [June 24, 2019, 1:02pm UTC](https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133/1 "2019-06-24T13:02:51Z")

</div>

Hi!

I followed these guides to sign-in to Kibana with a Google Account using Nginx and OAuth2\_proxy:

> **[User Impersonation with X-Pack: Integrating Third Party Auth with Kibana](https://www.elastic.co/blog/user-impersonation-with-x-pack-integrating-third-party-auth-with-kibana)**

> [@\[Google Oauth2 Sign-In\] User impersonation alternative using OAuth2 Proxy](https://discuss.elastic.co/t/google-oauth2-sign-in-user-impersonation-alternative-using-oauth2-proxy/86946):
>
> Hello, I wanted to share to the community a different approach to this great guide [https://www.elastic.co/blog/user-impersonation-with-x-pack-integrating-third-party-auth-with-kibana](https://www.elastic.co/blog/user-impersonation-with-x-pack-integrating-third-party-auth-with-kibana). After playing a little bit with Nginx and OAuth2 Proxy I have managed to avoid the user impersonation and give the admin the chance to create accounts for each user in the organization with their associated roles. Notes: Parts of this guide are taken from the user impersonation guide (see link above) This guid…

And it works great!  
But I have a question:  
By theses methods I need a common password for Kibana users that I have to put in my Nginx config.  
Is there a way to not use this password in Nginx config? I mean a way where Kibana users don't have a password and they can only sign-in with their Google account. So I don't need to add this common password in my Nginx config for more security.

Thank you!

---

<div class="post-metadata">

### Author: ![LizaD](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/lizad/32/51074_2.png) [@LizaD](https://discuss.elastic.co/u/LizaD)
#### Post date: [June 24, 2019, 2:40pm UTC](https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133/2 "2019-06-24T14:40:48Z")

</div>

@Brandon_Kobel can you help?

---

<div class="post-metadata">

### Author: ![TimV](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/timv/32/13162_2.png) [@TimV](https://discuss.elastic.co/u/TimV)
#### Post date: [June 25, 2019, 1:00am UTC](https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133/3 "2019-06-25T01:00:55Z")

</div>

> [@Louis-Clement](#):
>
> I mean a way where Kibana users don't have a password and they can only sign-in with their Google account.

If you have a platinum license, our SAML integration works with Google, and we'll have news on OpenID Connection (OAuth2) in the near future.

SAML is also available on our [Cloud Service](https://www.elastic.co/cloud/) if you'd prefer not to purchase your own license up front.

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [July 23, 2019, 1:00am UTC](https://discuss.elastic.co/t/sign-in-to-kibana-only-with-google-account/187133/4 "2019-07-23T01:00:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
