<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Import / Export User Data in Security</title>
    <link>https://community.splunk.com/t5/Security/Import-Export-User-Data/m-p/40305#M1350</link>
    <description>&lt;P&gt;Did you restart splunk2 after the import?  The status notice shows that the user data was imported, but you do need to restart for the users to show.&lt;/P&gt;</description>
    <pubDate>Tue, 08 Feb 2011 11:06:29 GMT</pubDate>
    <dc:creator>Ron_Naken</dc:creator>
    <dc:date>2011-02-08T11:06:29Z</dc:date>
    <item>
      <title>Import / Export User Data</title>
      <link>https://community.splunk.com/t5/Security/Import-Export-User-Data/m-p/40304#M1349</link>
      <description>&lt;P&gt;I'm trying to export and import users (and preferably roles) from one Splunk instance to another with no luck.&lt;/P&gt;

&lt;P&gt;This is the process I'm following.  When I'm complete, the user accounts do not exist on the second instance.&lt;/P&gt;

&lt;P&gt;TIA....&lt;/P&gt;

&lt;P&gt;Export&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Create a directory to export the data to (exported.data)
[root@splunk /]# mkdir exported.data
[root@splunk /]# /splunk/bin/splunk export userdata /exported.data/
Backing up to dir: /exported.data.
Exporting /splunk/etc/apps/search/local/savedsearches.conf.
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Copy data to another instance&lt;/P&gt;

&lt;P&gt;Import&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[root@splunk2 root]# /splunk/bin/splunk import userdata -dir exported.data
Restoring user data from dir: exported.data.
Importing /splunk/etc/apps/search/local/savedsearches.conf.
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;no accounts, why??&lt;/P&gt;</description>
      <pubDate>Tue, 08 Feb 2011 01:50:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Import-Export-User-Data/m-p/40304#M1349</guid>
      <dc:creator>DTERM</dc:creator>
      <dc:date>2011-02-08T01:50:57Z</dc:date>
    </item>
    <item>
      <title>Re: Import / Export User Data</title>
      <link>https://community.splunk.com/t5/Security/Import-Export-User-Data/m-p/40305#M1350</link>
      <description>&lt;P&gt;Did you restart splunk2 after the import?  The status notice shows that the user data was imported, but you do need to restart for the users to show.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Feb 2011 11:06:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Import-Export-User-Data/m-p/40305#M1350</guid>
      <dc:creator>Ron_Naken</dc:creator>
      <dc:date>2011-02-08T11:06:29Z</dc:date>
    </item>
  </channel>
</rss>

