# X-pack plugin installation was unsuccessful due to error client request error self signed certificate in certificate chain

**URL:** <https://discuss.elastic.co/t/x-pack-plugin-installation-was-unsuccessful-due-to-error-client-request-error-self-signed-certificate-in-certificate-chain/82040>\
**Category:** Elasticsearch\
**Created:** [April 11, 2017, 6:57pm UTC](https://discuss.elastic.co/t/x-pack-plugin-installation-was-unsuccessful-due-to-error-client-request-error-self-signed-certificate-in-certificate-chain/82040 "2017-04-11T18:57:54Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![SuperheroSmith](https://avatars.discourse-cdn.com/v4/letter/s/97f17d/32.png) [@SuperheroSmith](https://discuss.elastic.co/u/SuperheroSmith)\
**Post date:** [April 11, 2017, 6:57pm UTC](https://discuss.elastic.co/t/x-pack-plugin-installation-was-unsuccessful-due-to-error-client-request-error-self-signed-certificate-in-certificate-chain/82040/1 "2017-04-11T18:57:54Z")

</div>

I have Elasticsearch and Kibana v5.3 installed. I had them both working, with Winlogbeat sending logs successfully through the chain to Kibana.

Where the solution was working, we wanted to add X-Pack to secure it.

The installation of X-Pack on Elasticsearch went without issue. However, upon installing X-Pack on Kibana, we encountered an error:

"Error: Client request error: self signed certificate in certificate chain  
Plugin installation was unsuccessful due to error "Client request error: self signed certificate in certificate chain""

We're currently using Websense and previous to this have added and enabled its cert to allow the Ubuntu box to access the web and perform apt-get commands.

In the kibana.yml we've also directed following options to their proper paths:

elasticsearch.ssl.certificate: /usr/share/ca-certificates/websense/WebsensePCAcert.crt  
server.ssl.certificate: /etc/ssl/certs/WebsensePCAcert.pem  
elasticsearch.ssl.verificationMode: none

We are still receiving that error and cannot proceed. Furthermore, having X-Pack only on Elasticsearch has broken the functionality between Elasticsearch and Kibana, and Kibana can no longer connect. Only when X-Pack is uninstalled from Elasticsearch can the connection be re-established.

---

<div class="post-metadata">

**Author:** ![SuperheroSmith](https://avatars.discourse-cdn.com/v4/letter/s/97f17d/32.png) [@SuperheroSmith](https://discuss.elastic.co/u/SuperheroSmith)\
**Post date:** [April 11, 2017, 9:03pm UTC](https://discuss.elastic.co/t/x-pack-plugin-installation-was-unsuccessful-due-to-error-client-request-error-self-signed-certificate-in-certificate-chain/82040/2 "2017-04-11T21:03:52Z")

</div>

While I couldn't solve the specific connection/cert error, I was able to find a work-around.

I downloaded the package itself using wget from the URL in the error, and then used the following command from the specificed directory for installation:

bin/kibana-plugin install file:///usr/src/x-pack-5.3.-.zip

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [May 9, 2017, 9:05pm UTC](https://discuss.elastic.co/t/x-pack-plugin-installation-was-unsuccessful-due-to-error-client-request-error-self-signed-certificate-in-certificate-chain/82040/3 "2017-05-09T21:05:42Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
