Version: 7.x-36.0.0
Community

Using Search Guard with X-Pack Alerting

Search Guard is compatible with the X-Pack Alerting component.

This documentation assumes that you already installed and configured Kibana and the Search Guard Kibana plugin.

Elasticsearch: Enable Alerting

In elasticsearch.yml, disable X-Pack Security and enable X-Pack Alerting:

xpack.security.enabled: false
xpack.watcher.enabled: true
...

Elasticsearch: Add the alerting user

For using X-Pack Alerting, the respective user must have the built-in SGS_XP_ALERTING and SGS_KIBANA_USER role assigned.

Kibana: Enable X-Pack Alerting

In kibana.yml, disable X-Pack Security and enable X-Pack Alerting:

xpack.security.enabled: false
xpack.watcher.enabled: true
...

Not what you were looking for? Try the search.