<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: splunk edit user admin clears admin password instead of changing it in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361409#M13329</link>
    <description>&lt;P&gt;Splunk is not actually clearing the password - the " ./splunk edit user admin -password foo -role admin -auth admin:changeme" is only for use when the password is the default post-install "admin/changeme". When the command is run, the " -auth admin:changeme" parameters authenticate the user, and the authentication is cached for a period of time. At the same time, the command changes the password and updates the $SPLUNK_HOME/etc/passwd file.&lt;/P&gt;</description>
    <pubDate>Thu, 04 May 2017 18:53:39 GMT</pubDate>
    <dc:creator>wsanderstii</dc:creator>
    <dc:date>2017-05-04T18:53:39Z</dc:date>
    <item>
      <title>splunk edit user admin clears admin password instead of changing it</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361408#M13328</link>
      <description>&lt;P&gt;I found this answer about changing the admin password in splunk (I am using splunkforwarder 4.5.2 actually):&lt;/P&gt;

&lt;P&gt;&lt;A href="https://answers.splunk.com/answers/9465/admin-password-on-command-line.html"&gt;https://answers.splunk.com/answers/9465/admin-password-on-command-line.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;After I issue the command " ./splunk edit user admin -password foo -role admin -auth admin:changeme"  this seems to actually clear the password instead of resetting it. In other words, even after I log out of the host and log back in, I am no longer prompted for a username and password.&lt;/P&gt;

&lt;P&gt;Is this supposed to happen?&lt;/P&gt;

&lt;P&gt;It doesn't bother me too much because only root has permission to run the splunk command line tool anyway. And the password change &lt;EM&gt;does&lt;/EM&gt; take effect on the Atom server on port 8089.&lt;/P&gt;

&lt;P&gt;w&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2017 16:47:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361408#M13328</guid>
      <dc:creator>wsanderstii</dc:creator>
      <dc:date>2017-05-03T16:47:20Z</dc:date>
    </item>
    <item>
      <title>Re: splunk edit user admin clears admin password instead of changing it</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361409#M13329</link>
      <description>&lt;P&gt;Splunk is not actually clearing the password - the " ./splunk edit user admin -password foo -role admin -auth admin:changeme" is only for use when the password is the default post-install "admin/changeme". When the command is run, the " -auth admin:changeme" parameters authenticate the user, and the authentication is cached for a period of time. At the same time, the command changes the password and updates the $SPLUNK_HOME/etc/passwd file.&lt;/P&gt;</description>
      <pubDate>Thu, 04 May 2017 18:53:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361409#M13329</guid>
      <dc:creator>wsanderstii</dc:creator>
      <dc:date>2017-05-04T18:53:39Z</dc:date>
    </item>
    <item>
      <title>Re: splunk edit user admin clears admin password instead of changing it</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361410#M13330</link>
      <description>&lt;P&gt;Interesting.  so, the authentication is persistent for a period, thus not requiring the new password be entered?&lt;/P&gt;</description>
      <pubDate>Thu, 04 May 2017 18:58:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-edit-user-admin-clears-admin-password-instead-of-changing/m-p/361410#M13330</guid>
      <dc:creator>DalJeanis</dc:creator>
      <dc:date>2017-05-04T18:58:00Z</dc:date>
    </item>
  </channel>
</rss>

