I need to update ownership of searches after converting to a search head cluster environmen,t and from my understanding, we cannot edit the files anymore for replication to work, so I am doing it via the CLI commands using curl, but that does get syslogged which contains the Splunk creds. Is there a way to get it to prompt for a userid/password ?
Let's take a step back:
Let me know if you want to talk in real time offline. It sounds like there's a few implementation plan details worth talking our way through.