# Why elasticsearch creating the user and group elasticsearch

**URL:** <https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533>\
**Category:** Elasticsearch\
**Created:** [August 22, 2018, 10:38am UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533 "2018-08-22T10:38:30Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![rijinmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rijinmp/32/24634_2.png) [@rijinmp](https://discuss.elastic.co/u/rijinmp)\
**Post date:** [August 22, 2018, 10:38am UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/1 "2018-08-22T10:38:30Z")

</div>

When we are installing elasticsearch in Redhat , then one user and user group is automatically creating by ES named elasticsearch .

What is the use of this user elasticsearch .

All ES files owners are this user elasticsearch

---

<div class="post-metadata">

**Author:** ![jasontedor](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jasontedor/32/66992_2.png) [@jasontedor](https://discuss.elastic.co/u/jasontedor)\
**Post date:** [August 24, 2018, 11:59am UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/2 "2018-08-24T11:59:18Z")

</div>

This is the user used to run the service when you start Elasticsearch via Sys V init or `systemd` (whichever is installed on your system). For the packages, we do not support running Elasticsearch via any other means than the services, and it it standard practice for server applications to have a dedicated service user.

---

<div class="post-metadata">

**Author:** ![rijinmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rijinmp/32/24634_2.png) [@rijinmp](https://discuss.elastic.co/u/rijinmp)\
**Post date:** [August 24, 2018, 12:00pm UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/3 "2018-08-24T12:00:20Z")

</div>

How to run with this user ?

---

<div class="post-metadata">

**Author:** ![rijinmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rijinmp/32/24634_2.png) [@rijinmp](https://discuss.elastic.co/u/rijinmp)\
**Post date:** [August 24, 2018, 12:01pm UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/4 "2018-08-24T12:01:13Z")

</div>

By this command ?

systemctl enable elasticsearch  
systemctl start elasticsearch  
systemctl stop elasticsearch

---

<div class="post-metadata">

**Author:** ![rijinmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rijinmp/32/24634_2.png) [@rijinmp](https://discuss.elastic.co/u/rijinmp)\
**Post date:** [August 26, 2018, 7:10pm UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/5 "2018-08-26T19:10:59Z")

</div>

The issue is solved .

First we have to create a user named "elasticsearch ". After that we have to install elasticsearch . Other wise if we are installing elasticsearch by another user , elasticsearch cant run under the user "elastisearch "

If we are installing ES by anyother user , ES will create a no login "elasticsearch " user in linux . That user we cant use.

But in installation document no where mentioned this thing . First create the user elasticsearch and install it.

....................................

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 23, 2018, 7:11pm UTC](https://discuss.elastic.co/t/why-elasticsearch-creating-the-user-and-group-elasticsearch/145533/6 "2018-09-23T19:11:10Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
