# This Elastic installation has strict security requirements enabled that your current browser does not meet

**URL:** <https://discuss.elastic.co/t/this-elastic-installation-has-strict-security-requirements-enabled-that-your-current-browser-does-not-meet/355298>\
**Category:** Kibana\
**Created:** [March 13, 2024, 9:36am UTC](https://discuss.elastic.co/t/this-elastic-installation-has-strict-security-requirements-enabled-that-your-current-browser-does-not-meet/355298 "2024-03-13T09:36:27Z")\
**Posts on this page:** 1\
**Showing post:** 6

<div class="post-metadata">

**Author:** ![carly.richmond](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/carly.richmond/32/104935_2.png) [@carly.richmond](https://discuss.elastic.co/u/carly.richmond)\
**Post date:** [March 19, 2024, 9:22am UTC](https://discuss.elastic.co/t/this-elastic-installation-has-strict-security-requirements-enabled-that-your-current-browser-does-not-meet/355298/6 "2024-03-19T09:22:32Z")

</div>

As you said in your original message @nkf_123 disabling Kibana's strict CSP mode does open you up to unsafe scripting practices. You can enable these options if you're comfortable with the risk.

Alternatively I would look at your proxy settings to see if they need to be tweaked. There is an example in [this thread](https://discuss.elastic.co/t/nginx-reverse-proxy-setup-for-kibana/167327/5).

I also assume you're not embedding the Kibana dashboard in a web application, which can also give you CSP issues if misconfigured?

Hope that helps!

---

_[View the full topic](https://discuss.elastic.co/t/this-elastic-installation-has-strict-security-requirements-enabled-that-your-current-browser-does-not-meet/355298)._
