<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic role permission in Security</title>
    <link>https://community.splunk.com/t5/Security/role-permission/m-p/103472#M3331</link>
    <description>&lt;P&gt;I create a role &lt;BR /&gt;
[role_mmuser]&lt;/P&gt;

&lt;P&gt;admin_all_objects      = enabled&lt;BR /&gt;
change_authentication  = enabled&lt;BR /&gt;
edit_deployment_client = enabled&lt;BR /&gt;
list_deployment_client = enabled&lt;BR /&gt;
edit_deployment_server = enabled&lt;BR /&gt;
edit_dist_peer         = enabled&lt;BR /&gt;
edit_forwarders        = enabled&lt;BR /&gt;
edit_httpauths         = enabled&lt;BR /&gt;
edit_input_defaults    = enabled&lt;BR /&gt;
edit_monitor           = enabled&lt;BR /&gt;
edit_roles             = enabled&lt;BR /&gt;
edit_scripted          = enabled&lt;BR /&gt;
edit_search_server     = enabled&lt;BR /&gt;
edit_server            = enabled&lt;BR /&gt;
edit_splunktcp         = enabled&lt;BR /&gt;
edit_splunktcp_ssl     = enabled&lt;BR /&gt;
edit_tcp               = enabled&lt;BR /&gt;
edit_udp               = enabled&lt;BR /&gt;
edit_user              = enabled&lt;BR /&gt;
edit_web_settings      = enabled&lt;BR /&gt;
indexes_edit           = enabled&lt;BR /&gt;
license_edit           = enabled&lt;BR /&gt;
license_tab            = enabled&lt;BR /&gt;
list_forwarders        = enabled&lt;BR /&gt;
list_httpauths         = enabled&lt;BR /&gt;
rest_apps_management   = enabled&lt;BR /&gt;
restart_splunkd        = enabled&lt;/P&gt;

&lt;H1&gt;This enables the windows specific capabilities for admin&lt;/H1&gt;

&lt;P&gt;edit_win_eventlogs = enabled&lt;BR /&gt;
edit_win_wmiconf = enabled&lt;BR /&gt;
edit_win_regmon = enabled&lt;BR /&gt;
edit_win_admon = enabled&lt;BR /&gt;
edit_win_perfmon = enabled&lt;BR /&gt;
list_win_localavailablelogs = enabled&lt;BR /&gt;
list_pdfserver = enabled&lt;BR /&gt;
write_pdfserver = enabled&lt;/P&gt;

&lt;P&gt;importRoles = power;user&lt;BR /&gt;
srchIndexesAllowed = &lt;EM&gt;;_&lt;/EM&gt;&lt;BR /&gt;
srchIndexesDefault = main;os&lt;BR /&gt;
srchFilter    = *&lt;BR /&gt;
srchTimeWin   = 0&lt;BR /&gt;
srchDiskQuota   = 10000&lt;BR /&gt;
srchJobsQuota   = 50&lt;BR /&gt;
rtSrchJobsQuota = 100&lt;/P&gt;

&lt;P&gt;I have made it the same as admin, but still can't input data?Why and how? Thanks! &lt;/P&gt;</description>
    <pubDate>Mon, 28 Sep 2020 12:07:05 GMT</pubDate>
    <dc:creator>benjiminhugh</dc:creator>
    <dc:date>2020-09-28T12:07:05Z</dc:date>
    <item>
      <title>role permission</title>
      <link>https://community.splunk.com/t5/Security/role-permission/m-p/103472#M3331</link>
      <description>&lt;P&gt;I create a role &lt;BR /&gt;
[role_mmuser]&lt;/P&gt;

&lt;P&gt;admin_all_objects      = enabled&lt;BR /&gt;
change_authentication  = enabled&lt;BR /&gt;
edit_deployment_client = enabled&lt;BR /&gt;
list_deployment_client = enabled&lt;BR /&gt;
edit_deployment_server = enabled&lt;BR /&gt;
edit_dist_peer         = enabled&lt;BR /&gt;
edit_forwarders        = enabled&lt;BR /&gt;
edit_httpauths         = enabled&lt;BR /&gt;
edit_input_defaults    = enabled&lt;BR /&gt;
edit_monitor           = enabled&lt;BR /&gt;
edit_roles             = enabled&lt;BR /&gt;
edit_scripted          = enabled&lt;BR /&gt;
edit_search_server     = enabled&lt;BR /&gt;
edit_server            = enabled&lt;BR /&gt;
edit_splunktcp         = enabled&lt;BR /&gt;
edit_splunktcp_ssl     = enabled&lt;BR /&gt;
edit_tcp               = enabled&lt;BR /&gt;
edit_udp               = enabled&lt;BR /&gt;
edit_user              = enabled&lt;BR /&gt;
edit_web_settings      = enabled&lt;BR /&gt;
indexes_edit           = enabled&lt;BR /&gt;
license_edit           = enabled&lt;BR /&gt;
license_tab            = enabled&lt;BR /&gt;
list_forwarders        = enabled&lt;BR /&gt;
list_httpauths         = enabled&lt;BR /&gt;
rest_apps_management   = enabled&lt;BR /&gt;
restart_splunkd        = enabled&lt;/P&gt;

&lt;H1&gt;This enables the windows specific capabilities for admin&lt;/H1&gt;

&lt;P&gt;edit_win_eventlogs = enabled&lt;BR /&gt;
edit_win_wmiconf = enabled&lt;BR /&gt;
edit_win_regmon = enabled&lt;BR /&gt;
edit_win_admon = enabled&lt;BR /&gt;
edit_win_perfmon = enabled&lt;BR /&gt;
list_win_localavailablelogs = enabled&lt;BR /&gt;
list_pdfserver = enabled&lt;BR /&gt;
write_pdfserver = enabled&lt;/P&gt;

&lt;P&gt;importRoles = power;user&lt;BR /&gt;
srchIndexesAllowed = &lt;EM&gt;;_&lt;/EM&gt;&lt;BR /&gt;
srchIndexesDefault = main;os&lt;BR /&gt;
srchFilter    = *&lt;BR /&gt;
srchTimeWin   = 0&lt;BR /&gt;
srchDiskQuota   = 10000&lt;BR /&gt;
srchJobsQuota   = 50&lt;BR /&gt;
rtSrchJobsQuota = 100&lt;/P&gt;

&lt;P&gt;I have made it the same as admin, but still can't input data?Why and how? Thanks! &lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 12:07:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/role-permission/m-p/103472#M3331</guid>
      <dc:creator>benjiminhugh</dc:creator>
      <dc:date>2020-09-28T12:07:05Z</dc:date>
    </item>
    <item>
      <title>Re: role permission</title>
      <link>https://community.splunk.com/t5/Security/role-permission/m-p/103473#M3332</link>
      <description>&lt;P&gt;If you have a specific role that is identical to admin but yet you cannot do things admin can do, there are two major possibilities.&lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;We have an error where we are keying to the admin role name incorrectly in the python or compiled code&lt;/LI&gt;
&lt;LI&gt;The access information for the views simply refer to the admin role, eg $SPLUNK_HOME/etc/apps/search/metadata/local.meta / default.met&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;The second scenario is more likely.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jul 2012 15:00:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/role-permission/m-p/103473#M3332</guid>
      <dc:creator>jrodman</dc:creator>
      <dc:date>2012-07-20T15:00:36Z</dc:date>
    </item>
  </channel>
</rss>

