<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is windows admin access required to run locally installed instance of splunk in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41445#M7694</link>
    <description>&lt;P&gt;Well, what it actually does is gets the configured address of the Splunk server and launches the browser but it doesn't start Splunk if its not running. Admin user or not, the only way would be to run splunk start or via the services menu. Is it just to read Windows event logs? Running on a non admin machine it will eventually need to be switched to a free licence, at this point it will provide unsecured access to the logs it has consumed. Also each time you start it there is likely to be a drain on system resource as it indexes all new events&lt;/P&gt;</description>
    <pubDate>Wed, 21 Nov 2012 14:17:22 GMT</pubDate>
    <dc:creator>Drainy</dc:creator>
    <dc:date>2012-11-21T14:17:22Z</dc:date>
    <item>
      <title>Is windows admin access required to run locally installed instance of splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41442#M7691</link>
      <description>&lt;P&gt;This question deals with making a locally installed instance of Splunk available to end users who do not have admin privileges on their win7 PC.&lt;/P&gt;

&lt;P&gt;I log onto to an end user’s PC as admin and install Splunk. When I log off and ask the user to try to access Splunk via the shortcut at Start &amp;gt; All Programs &amp;gt; Splunk, they are challenged with the UAC (user Access Control) pop up box. &lt;/P&gt;

&lt;P&gt;Must users of Splunk have admin privileges on their own PC?&lt;/P&gt;</description>
      <pubDate>Wed, 21 Nov 2012 12:22:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41442#M7691</guid>
      <dc:creator>mikefoti</dc:creator>
      <dc:date>2012-11-21T12:22:23Z</dc:date>
    </item>
    <item>
      <title>Re: Is windows admin access required to run locally installed instance of splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41443#M7692</link>
      <description>&lt;P&gt;Firstly Splunk is web based, the link is just a bookmark to a webpage so the UAC pop up is related to opening a URL or their browser?&lt;/P&gt;

&lt;P&gt;Secondly, when installing Splunk should really be installed as a local service as per the install instructions, unless you want to do remote WMI polling.&lt;/P&gt;

&lt;P&gt;So after all is said, Splunk should actually be running in the background at start up anyway and so admin access will not be required to access it, I feel this is UAC blocking your browser opening a URL or something like that. They should be able to access it via &lt;A href="http://127.0.0.1:8000"&gt;http://127.0.0.1:8000&lt;/A&gt; in their browser of choice.&lt;/P&gt;

&lt;P&gt;Finally, do you really want to install a server program like Splunk on a non admin machine? Would it not be better to install a forwarder and have a central indexer where people could access or search for details?&lt;/P&gt;</description>
      <pubDate>Wed, 21 Nov 2012 12:35:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41443#M7692</guid>
      <dc:creator>Drainy</dc:creator>
      <dc:date>2012-11-21T12:35:18Z</dc:date>
    </item>
    <item>
      <title>Re: Is windows admin access required to run locally installed instance of splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41444#M7693</link>
      <description>&lt;P&gt;I do want it running on a non admin machin becuase the users will only use it for ocassional troubleshooting... and I also intended to not have it auto-start. I thought the shortcut first calls Splunk.exe and then calls the browser. I assummed "Spunk.exe" checks to see if the 2 services are started, and if not, starts them. So I will run some tests to determine if this is so.&lt;/P&gt;

&lt;P&gt;In the mean time, I welcome more feedback.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Nov 2012 13:47:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41444#M7693</guid>
      <dc:creator>mikefoti</dc:creator>
      <dc:date>2012-11-21T13:47:39Z</dc:date>
    </item>
    <item>
      <title>Re: Is windows admin access required to run locally installed instance of splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41445#M7694</link>
      <description>&lt;P&gt;Well, what it actually does is gets the configured address of the Splunk server and launches the browser but it doesn't start Splunk if its not running. Admin user or not, the only way would be to run splunk start or via the services menu. Is it just to read Windows event logs? Running on a non admin machine it will eventually need to be switched to a free licence, at this point it will provide unsecured access to the logs it has consumed. Also each time you start it there is likely to be a drain on system resource as it indexes all new events&lt;/P&gt;</description>
      <pubDate>Wed, 21 Nov 2012 14:17:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41445#M7694</guid>
      <dc:creator>Drainy</dc:creator>
      <dc:date>2012-11-21T14:17:22Z</dc:date>
    </item>
    <item>
      <title>Re: Is windows admin access required to run locally installed instance of splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41446#M7695</link>
      <description>&lt;P&gt;Good info.. thanks!&lt;BR /&gt;
I do realize/intend to switch to the free license. Not too concerned about accidentally providing non-admin access to sesitive logs becuase it is quite simple to wipe the index periodcally (or even after each use).&lt;/P&gt;</description>
      <pubDate>Wed, 21 Nov 2012 15:24:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-windows-admin-access-required-to-run-locally-installed/m-p/41446#M7695</guid>
      <dc:creator>mikefoti</dc:creator>
      <dc:date>2012-11-21T15:24:21Z</dc:date>
    </item>
  </channel>
</rss>

