<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk doesn't recognize searchbnf.conf in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107106#M183318</link>
    <description>&lt;P&gt;Spoke with Splunk and got the answer.&lt;/P&gt;

&lt;P&gt;To add permission for a specific entry within searchbnf, add&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[searchbnf/&amp;lt;command stanza header in searchbnf.conf&amp;gt;]
export=system
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;to metadata\local.meta&lt;/P&gt;

&lt;P&gt;To add permission for all searchbnf commands, add&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[searchbnf]
export=system
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;to metadata\local.meta&lt;/P&gt;</description>
    <pubDate>Tue, 03 Dec 2013 14:29:07 GMT</pubDate>
    <dc:creator>pongc</dc:creator>
    <dc:date>2013-12-03T14:29:07Z</dc:date>
    <item>
      <title>Splunk doesn't recognize searchbnf.conf</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107104#M183316</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;

&lt;P&gt;I trying to implement online help for my custom search commands. There is a searchbnf.conf located in the $SPLUNK_HOME/etc/system/default directory.&lt;BR /&gt;
If I put my configuration into that file everything is working fine, but if I create a new searchbnf.conf in my app-local directory it will not be recognized by splunk.&lt;/P&gt;

&lt;P&gt;Is there any possibility to create the searchbnf.conf in the app context (without changing the system-wide one)?&lt;/P&gt;

&lt;P&gt;Regards,&lt;BR /&gt;
Peter&lt;/P&gt;</description>
      <pubDate>Sun, 20 Oct 2013 16:23:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107104#M183316</guid>
      <dc:creator>petersob</dc:creator>
      <dc:date>2013-10-20T16:23:21Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk doesn't recognize searchbnf.conf</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107105#M183317</link>
      <description>&lt;P&gt;Have this same issue as well. Using &lt;BR /&gt;
splunk btool searchbnf list --debug&lt;BR /&gt;
I do see that the app specific searchbnf stanzas are processed, though in search it does not show. It does work if I copy searchbnf.conf to etc\app\search\local so believe it is an configuration permission that needs to be applied via app specific local.meta, but cannot find information on how to define the config. In the GUI I do not see this defined as a config object within the context of the app.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Nov 2013 18:18:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107105#M183317</guid>
      <dc:creator>pongc</dc:creator>
      <dc:date>2013-11-18T18:18:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk doesn't recognize searchbnf.conf</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107106#M183318</link>
      <description>&lt;P&gt;Spoke with Splunk and got the answer.&lt;/P&gt;

&lt;P&gt;To add permission for a specific entry within searchbnf, add&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[searchbnf/&amp;lt;command stanza header in searchbnf.conf&amp;gt;]
export=system
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;to metadata\local.meta&lt;/P&gt;

&lt;P&gt;To add permission for all searchbnf commands, add&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[searchbnf]
export=system
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;to metadata\local.meta&lt;/P&gt;</description>
      <pubDate>Tue, 03 Dec 2013 14:29:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Splunk-doesn-t-recognize-searchbnf-conf/m-p/107106#M183318</guid>
      <dc:creator>pongc</dc:creator>
      <dc:date>2013-12-03T14:29:07Z</dc:date>
    </item>
  </channel>
</rss>

