All Apps and Add-ons

Problem with Global Permissions on Field

brandonf
Path Finder

Hi

Just a note that your field extraction below has global permission and overwrites other "user" field name extraction. You should make it app permission level only.

default : EVAL-user user md5(clientip."_".http_user_agent)

0 Karma

jbjerke_splunk
Splunk Employee
Splunk Employee

Hi Brandonf

Thanks for reporting this in. There were a also few users who noted this.

There is a new version of the app (1.4) which fixes this issue and adds on some new functionality.
https://splunkbase.splunk.com/app/2699/

j

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...