Security

How do I allow users to edit a view?

matt
Splunk Employee
Splunk Employee

If our users navigate to Manager --> Views they can see all the views, but they do not have permissions to edit or add new. What capability is required for this?

Tags (3)
1 Solution

matt
Splunk Employee
Splunk Employee

Its not so much a capability but a permission on the app. If you go to Manager » Apps » » Permissions you can give additional roles write capability which will allow them to be able to share objects with other users. If global write perms on the app are to broad your comfort you can make the write perms more granular by creating a $SPLUNK_HOME/etc/apps//metadata/local.meta file and defining the granular write capability. You can use the default.meta file in that same directory as an example of the format. You would only need to define the modified capabilities.

View solution in original post

0 Karma

matt
Splunk Employee
Splunk Employee

Its not so much a capability but a permission on the app. If you go to Manager » Apps » » Permissions you can give additional roles write capability which will allow them to be able to share objects with other users. If global write perms on the app are to broad your comfort you can make the write perms more granular by creating a $SPLUNK_HOME/etc/apps//metadata/local.meta file and defining the granular write capability. You can use the default.meta file in that same directory as an example of the format. You would only need to define the modified capabilities.

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...