Diagnose and resolve Elasticsearch security errors: 401/403 failures, TLS problems, expired API keys, role mapping mismatches, and Kibana login issues. Use when the user reports a security error.
---
name: elasticsearch-security-troubleshooting
description: >
Diagnose and resolve Elasticsearch security errors: 401/403 failures, TLS problems,
expired API keys, role mapping mismatches, and Kibana login issues. Use when the
user reports a security error.
metadata:
author: elastic
version: 0.1.0
---
# Elasticsearch Security Troubleshooting
Diagnose and resolve common Elasticsearch security issues. This skill provides a structured triage workflow for
authentication failures, authorization errors, TLS problems, API key issues, role mapping mismatches, Kibana login
failures, and license-expiry lockouts.
For authentication methods and API key management, see the **elasticsearch-authn** skill. For roles, users, and role
mappings, see the **elasticsearch-authz** skill. For license management, see the **elasticsearch-license** skill.
For diagnostic API endpoints, see [references/api-reference.md](references/api-reference.md).
> **Deployment note:** Diagnostic API availability differs between self-managed, ECH, and Serverless. See
> [Deployment Compatibility](#deployment-compatibility) for details.
… install to load the full skillIn any Claude conversation, say:
Install the Elasticsearch Security Troubleshooting skill
It activates automatically in your next session.
Not connected yet? Connect your AI first →
MCP endpoint
https://skillme.dev/api/mcp