<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How do I set default conf files for new users? in Security</title>
    <link>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182508#M5428</link>
    <description>&lt;P&gt;When ever I create a new user I'd like to have some default rules in there search/local/ui-prefs.conf file. Is there a template which is copied for new users?&lt;/P&gt;</description>
    <pubDate>Wed, 18 Dec 2013 00:39:46 GMT</pubDate>
    <dc:creator>stevennoble</dc:creator>
    <dc:date>2013-12-18T00:39:46Z</dc:date>
    <item>
      <title>How do I set default conf files for new users?</title>
      <link>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182508#M5428</link>
      <description>&lt;P&gt;When ever I create a new user I'd like to have some default rules in there search/local/ui-prefs.conf file. Is there a template which is copied for new users?&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2013 00:39:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182508#M5428</guid>
      <dc:creator>stevennoble</dc:creator>
      <dc:date>2013-12-18T00:39:46Z</dc:date>
    </item>
    <item>
      <title>Re: How do I set default conf files for new users?</title>
      <link>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182509#M5429</link>
      <description>&lt;P&gt;You can create this file in &lt;CODE&gt;$SPLUNK_HOME/etc/system/local&lt;/CODE&gt; if you want to force defaults for all users. Individuals accounts can, of course, have different options, as well.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2013 13:06:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182509#M5429</guid>
      <dc:creator>jtrucks</dc:creator>
      <dc:date>2013-12-18T13:06:17Z</dc:date>
    </item>
    <item>
      <title>Re: How do I set default conf files for new users?</title>
      <link>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182510#M5430</link>
      <description>&lt;P&gt;I would setup Active Directory or LDAP authentication:  &lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.0/Security/SetupuserauthenticationwithLDAP"&gt;http://docs.splunk.com/Documentation/Splunk/6.0/Security/SetupuserauthenticationwithLDAP&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Then I would create all the groups in AD and create roles in Splunk.  Then you can easily manage the default user behavior in the Splunk roles.&lt;/P&gt;

&lt;P&gt;I would then create an app and put that as their default app as well.  Finally, you don't just have to put the ui-prefs.conf in &lt;CODE&gt;system/local&lt;/CODE&gt;, you can put it in each &lt;CODE&gt;[appname]/default&lt;/CODE&gt; or &lt;CODE&gt;[appname]/local&lt;/CODE&gt;.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2013 13:15:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/How-do-I-set-default-conf-files-for-new-users/m-p/182510#M5430</guid>
      <dc:creator>dmaislin_splunk</dc:creator>
      <dc:date>2013-12-18T13:15:13Z</dc:date>
    </item>
  </channel>
</rss>

