Security

Can an element of a role in authorize.conf scoped to an app?

davebo1896
Communicator

Can an element of a role in authorize.conf be scoped for a particular app?
I have a local app where I would like to give "admin_all_objects" to all power users, but restrict that capability to only the one app.

0 Karma
1 Solution

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

View solution in original post

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

davebo1896
Communicator

So it seems I would need to create a different role that included the additional 'admin_all_objects' capability and enable that on only the relevant app.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...