Dashboards & Visualizations

Why is report acceleration on a dashboard working for one role, but not another?

hqw
Path Finder

Hi all,

I have dashboards which used post process search as global search, and acceleration report on that global search. in this case, the dashboard is working very fast when I open It. However, I have multiple accounts belonging to different roles to access these dashboards. When I tried with role1, the dashboard acceleration is working, but when I tried another account, which is under role2, the acceleration report is not working, and the dashboard became very slow.

These two roles have different capabilities. May I know if it is due to that issue? and how can I fix this?
Thanks in advance.

Best Regards

0 Karma
1 Solution

mreynov_splunk
Splunk Employee
Splunk Employee

permissions would be the first place I would look. Under Settings->Users and Authentication->Access Controls->Roles-> there is a section "Capabilities". Check whether "accelerate_datamodel" is checked.alt text

View solution in original post

mreynov_splunk
Splunk Employee
Splunk Employee

permissions would be the first place I would look. Under Settings->Users and Authentication->Access Controls->Roles-> there is a section "Capabilities". Check whether "accelerate_datamodel" is checked.alt text

hqw
Path Finder

Hi Mreynov,

Thanks for your help on this issue. however, both these two roles had accelerate_** capabilities already. The only different is that role1 has admin_all_objective capability, role2 doesn't have this. when i assign this capability to role 2, then the acceleration dashboard will be working also to role2.

Finally, i noticed that the issue was due to the accelerated saved search permission. after i gave the permission to the global, then the dashboard works for any role.

Thanks again for your time and help.

Best Regards

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...