Security

Can an element of a role in authorize.conf scoped to an app?

davebo1896
Communicator

Can an element of a role in authorize.conf be scoped for a particular app?
I have a local app where I would like to give "admin_all_objects" to all power users, but restrict that capability to only the one app.

0 Karma
1 Solution

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

View solution in original post

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

davebo1896
Communicator

So it seems I would need to create a different role that included the additional 'admin_all_objects' capability and enable that on only the relevant app.

0 Karma
Get Updates on the Splunk Community!

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...