Hoping someone can point out what I may be missing.
I have two new users I'm adding to our Splunk instance. I want to limit these users to a single App and only be able to search from a new Index I've created specifically for them.
The index is good to go. I created a new App and new custom role for these users, both named programmer.
The App permissions have been updated providing read rights for the programmer custom role.
I've also added the users to the new role.
Here's the problem, when the users log in, the only views available are Dashboards, Reports and Alerts, no Search view.
I've verified the default xml in the App is correct, here's a sample:
nav search_view="search" color="#FFDA3"
view name="search" default='true'