All Apps and Add-ons

db query access

a212830
Champion

Hi,

How do I give access to the dbquery command to users via DB Connect? It works for admin, but nobody else. When a power user attempts the same query, it says "unknown search command"

0 Karma

barakreeves
Splunk Employee
Splunk Employee

Great question. You will need to do some additional configuration. Essentially, you will need to edit the $SPLUNK_HOME/etc/apps/dbx/metadata/local.meta file to provide additional permissions to non-admins.

Here are some links that will point you in the right direction.

http://splunk-base.splunk.com/answers/76006/dbquery-command-permissions
http://docs.splunk.com/Documentation/DBX/1.0.9/DeployDBX/Securityandaccesscontrols

0 Karma

barakreeves
Splunk Employee
Splunk Employee

I'm glad it worked. Yes. Of course, this type of "security" is no substitute for db server security. The doco link I gave you touches on that...just a friendly reminder 🙂

0 Karma

a212830
Champion

Worked. Thanks. So, looking at this, can I lock down access to the databases using this method as well?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – September 2026

    Welcome to the September 2026 edition of Data Management Digest! September brought a fresh wave of ...

Federated Search for CloudWatch Unified Data Store Is Generally Available

As organizations modernize their cloud environments, AWS workloads generate more security, operational, and ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...