<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to allow users other than the admin to search the default &amp;quot;os&amp;quot; index for Splunk App for Unix and Linux? in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/How-to-allow-users-other-than-the-admin-to-search-the-default/m-p/193908#M19954</link>
    <description>&lt;P&gt;Hello.&lt;/P&gt;

&lt;P&gt;I created a dashboard using some of the data from the Splunk App for Unix.  Its in the default index called "os."&lt;/P&gt;

&lt;P&gt;I notice that only the admin user of splunk can query info out of that index.  Is  there something I need to do to allow other users to do that? The issue I have is when I shared the dashboards, nobody can see the data within the panels except the admin user.&lt;/P&gt;</description>
    <pubDate>Tue, 04 Nov 2014 21:24:22 GMT</pubDate>
    <dc:creator>soleblazer</dc:creator>
    <dc:date>2014-11-04T21:24:22Z</dc:date>
    <item>
      <title>How to allow users other than the admin to search the default "os" index for Splunk App for Unix and Linux?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/How-to-allow-users-other-than-the-admin-to-search-the-default/m-p/193908#M19954</link>
      <description>&lt;P&gt;Hello.&lt;/P&gt;

&lt;P&gt;I created a dashboard using some of the data from the Splunk App for Unix.  Its in the default index called "os."&lt;/P&gt;

&lt;P&gt;I notice that only the admin user of splunk can query info out of that index.  Is  there something I need to do to allow other users to do that? The issue I have is when I shared the dashboards, nobody can see the data within the panels except the admin user.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2014 21:24:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/How-to-allow-users-other-than-the-admin-to-search-the-default/m-p/193908#M19954</guid>
      <dc:creator>soleblazer</dc:creator>
      <dc:date>2014-11-04T21:24:22Z</dc:date>
    </item>
    <item>
      <title>Re: How to allow users other than the admin to search the default "os" index for Splunk App for Unix and Linux?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/How-to-allow-users-other-than-the-admin-to-search-the-default/m-p/193909#M19955</link>
      <description>&lt;P&gt;You can give users read permission to an index by editing their role (Settings -&amp;gt; Authentication -&amp;gt; Roles). There's two settings, indexes searched by default (what happens when you don't specify &lt;CODE&gt;index=foo&lt;/CODE&gt;) and indexes searchable.&lt;/P&gt;

&lt;P&gt;Out of the box all users can search all non-internal indexes, so they should already be able to search with &lt;CODE&gt;index=os&lt;/CODE&gt; - if not, add that index to their indexes searchable setting.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2014 22:22:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/How-to-allow-users-other-than-the-admin-to-search-the-default/m-p/193909#M19955</guid>
      <dc:creator>martin_mueller</dc:creator>
      <dc:date>2014-11-04T22:22:33Z</dc:date>
    </item>
  </channel>
</rss>

