<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Index rights in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232056#M23817</link>
    <description>&lt;P&gt;A new index has been created by a splunk's user with admin rights - Only this user is able to use it; the other user with the same rights are unable to use it in a search - where these access rights should be granted in splunk.&lt;/P&gt;</description>
    <pubDate>Mon, 21 Sep 2015 07:40:49 GMT</pubDate>
    <dc:creator>arkonner</dc:creator>
    <dc:date>2015-09-21T07:40:49Z</dc:date>
    <item>
      <title>Index rights</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232056#M23817</link>
      <description>&lt;P&gt;A new index has been created by a splunk's user with admin rights - Only this user is able to use it; the other user with the same rights are unable to use it in a search - where these access rights should be granted in splunk.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2015 07:40:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232056#M23817</guid>
      <dc:creator>arkonner</dc:creator>
      <dc:date>2015-09-21T07:40:49Z</dc:date>
    </item>
    <item>
      <title>Re: Index rights</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232057#M23818</link>
      <description>&lt;P&gt;You can specify which indexes are searchable by default to users via user roles and rights, based on user or group. See the docs :&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Admin/Aboutusersandroles"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Admin/Aboutusersandroles&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2015 10:10:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232057#M23818</guid>
      <dc:creator>esix_splunk</dc:creator>
      <dc:date>2015-09-21T10:10:56Z</dc:date>
    </item>
    <item>
      <title>Re: Index rights</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232058#M23819</link>
      <description>&lt;P&gt;Is the other user able to use the index by issuing the search command &lt;CODE&gt;index=yourindexname&lt;/CODE&gt;?&lt;/P&gt;

&lt;P&gt;You have to set the indices which are used by default via "Settings =&amp;gt; Access controls =&amp;gt; Roles =&amp;gt; RoleName =&amp;gt; Indexes searched by default"&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2015 12:54:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232058#M23819</guid>
      <dc:creator>DennisMohn</dc:creator>
      <dc:date>2015-09-21T12:54:05Z</dc:date>
    </item>
    <item>
      <title>Re: Index rights</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232059#M23820</link>
      <description>&lt;P&gt;This to confirm that the user is able to run a search using this index but not through a dashboard.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Sep 2015 08:50:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Index-rights/m-p/232059#M23820</guid>
      <dc:creator>arkonner</dc:creator>
      <dc:date>2015-09-22T08:50:10Z</dc:date>
    </item>
  </channel>
</rss>

