Security

How to change the user roles in .conf files

vhharanpositka
Path Finder

Hello

Accidentally I changed the admin role for my admin user in the Splunk UI.
By default
Admin user - admin role and user role.

Now
Admin user - only user role.

So I cant access the Settings --> Access Control.

How can I change the admin roles in the conf files.

Thanks

Tags (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Edit $SPLUNK_HOME/etc/system/local/authorize.conf and remove importRoles attribute from the role_admin stanza to restore the default roles.

---
If this reply helps you, Karma would be appreciated.
0 Karma

vhharanpositka
Path Finder

Thanks rich

0 Karma
Get Updates on the Splunk Community!

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...