Hi Everyone,

I am trying to get an ELK stack behind access manager.

The kibana interface is proxied via https://sub.domain.com/kibana and
points to the webserver running kibana.
The browser then needs information from https://elasticsearch.domain.com
which points to the elasticsearch instance.

Upon loading the page, the browser returns the following error:


"XMLHttpRequest cannot load https://elasticsearch.domain.com/_nodes. No 'Access-Control-Allow-Origin' header is present on the requested resource. Origin 'https://sub.domain.com' is therefore not allowed access."


So for this to function the browser needs to receive the
"Access-Control-Allow-Origin: '*'" response header that the
elasticsearch server *is* sending out, but the access gateway seems to
block this header.

My question, is there a way to tell the access gateway to *not* block
specific reponse headers?

Kind regards,
Justin Zandbergen

