# Kibana LDAP login

**URL:** <https://forum.opensearch.org/t/kibana-ldap-login/764>\
**Category:** Security\
**Created:** [May 28, 2019, 11:35am UTC](https://forum.opensearch.org/t/kibana-ldap-login/764 "2019-05-28T11:35:26Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![sirfraz](https://avatars.discourse-cdn.com/v4/letter/s/e56c9b/32.png) [@sirfraz](https://forum.opensearch.org/u/sirfraz)\
**Post date:** [May 28, 2019, 11:35am UTC](https://forum.opensearch.org/t/kibana-ldap-login/764/1 "2019-05-28T11:35:26Z")

</div>

Hi,

Is it possible to configure Kibana to use LDAP to login? I was able to configure elasticsearch security plugin to use LDAP, but can’t see how to do the same for Kibana and I haven’t been able to find any documentation to say yes or no.

If it’s not possible at the moment, is this something that will be planned for the future?

Cheers

---

<div class="post-metadata">

**Author:** ![ThibaudF](https://sea1.discourse-cdn.com/flex019/user_avatar/forum.opensearch.org/thibaudf/32/31_2.png) [@ThibaudF](https://forum.opensearch.org/u/ThibaudF)\
**Post date:** [May 28, 2019, 11:47am UTC](https://forum.opensearch.org/t/kibana-ldap-login/764/2 "2019-05-28T11:47:26Z")

</div>

Hello sirfraz!  
It’s possible to connect Kibana security plugin to an LDAP. Just follow the documentation.  
I think the documentation can help you : [https://opendistro.github.io/for-elasticsearch-docs/docs/security/ldap/](https://opendistro.github.io/for-elasticsearch-docs/docs/security/ldap/)

Right now, I only tried to do authentication. I have no idea how to manage to do Authorization, give permissions from LDAP. Didn’t find enough information in documentation.

Hope I helped.  
Thi

---

<div class="post-metadata">

**Author:** ![sirfraz](https://avatars.discourse-cdn.com/v4/letter/s/e56c9b/32.png) [@sirfraz](https://forum.opensearch.org/u/sirfraz)\
**Post date:** [May 29, 2019, 4:27am UTC](https://forum.opensearch.org/t/kibana-ldap-login/764/3 "2019-05-29T04:27:53Z")

</div>

Hi ThibaudF,

Thanks you pointed me in the right direction!! I had followed that guide to get elasticsearch ldap configured and working, but missed a couple of steps, one was the the “skip users” config for the local users and I had a cert error. After fixing these, I can successfully login to Kibana using ldap credentials 👌

Thanks!

---

<div class="post-metadata">

**Author:** ![kiowajoe](https://sea1.discourse-cdn.com/flex019/user_avatar/forum.opensearch.org/kiowajoe/32/109_2.png) [@kiowajoe](https://forum.opensearch.org/u/kiowajoe)\
**Post date:** [August 16, 2019, 12:19pm UTC](https://forum.opensearch.org/t/kibana-ldap-login/764/4 "2019-08-16T12:19:59Z")

</div>

For others that land here the new documentation link for skip\_users configuration to ignore local accounts is listed below. Previous link for documentation of LDAP configuration is broken.

[https://opendistro.github.io/for-elasticsearch-docs/docs/security-configuration/ldap/#advanced-exclude-certain-users-from-role-lookup](https://opendistro.github.io/for-elasticsearch-docs/docs/security-configuration/ldap/#advanced-exclude-certain-users-from-role-lookup)
