Curl and delete


#1

Hi,
the rw user is just for kibana or for elasticsearch too?

My question it’s because I don`t want a user who can make a curl and delete the indices with the rw permissions.

Thanks.


(Simone Scarduzio) #2

Hi @hepamela!

kibana_access: ro only allows read operations, with very few exceptions that concern the creation of short urls.

These restrictions are all enforced at ES level, so you should be safe.

More info about kibana access rule