So I get all the Searchguard running with ELK stack - but now when I authenticate into kibana I need to authenticate twice - what could be the problem?
kibana.index: ".kibana-operations"
elasticsearch.preserveHost: false
elasticsearch.ssl.verify: false
elasticsearch.username: "kibanaserver"
elasticsearch.password: "password"
console.proxyConfig:
- match:
protocol: "https"
ssl:
ca: "/etc/kibana/root-ca.pem"
-------------------------------------------------------------------------------------------------------------------
bootstrap: {memory_lock: true}
cluster: {name: elasticsearch}
discovery:
zen:
minimum_master_nodes: 2
ping:
unicast: {hosts: 'kibanaserver,kibanaserver2'}
http: {host: 10.3.0.221, max_content_length: 100mb, port: 9200}
network: {host: 10.3.0.221}
node: {data: true, master: true, name: kibanaserver}
path: {conf: /etc/elasticsearch, data: /var/lib/elasticsearch, logs: /var/log/elasticsearch,
scripts: /usr/share/elasticsearch/config/scripts}
searchguard:
authcz.admin_dn: ['CN=admin, OU=yolo, O=yolo, L=SA, C=US']
ssl:
http: {enabled: true, keystore_filepath: 'kibanaserver-keystore.jks, keystore_password: password,
truststore_filepath: truststore.jks, truststore_password: password}
transport: {enforce_hostname_verification: false, keystore_filepath: 'kibanaserver-keystore.jks,
keystore_password: password, truststore_filepath: truststore.jks,
truststore_password: password}
transport: {tcp.compress: true, tcp.port: 9300}
----------------------------------------------------------------------------------------------------------------
logs from kibana are attached.