[DOCS] Add disclaimer that X-Pack Security users inherit anonymous roles #31589
Labels
>docs
General docs changes
:Security/Authorization
Roles, Privileges, DLS/FLS, RBAC/ABAC
Team:Security
Meta label for security team
Uh oh!
There was an error while loading. Please reload this page.
When Anonymous Access is enabled, all other users will inherit whichever roles you assign your anonymous user. We should document this behavior as it can cause some confusing results (e.g an explicit user is given access to indices X/Y/Z, but also has access to index A thanks to
xpack.security.authc.anonymous.roles
).Ideally,
_es_anonymous_user
should be the least privileged user, but it's not always the case.The text was updated successfully, but these errors were encountered: