I am reading thru users, roles, and permissions documentation but not sure how to set this up.
Ideally I want an account (user/pwd) that can authenticate to Splunk api and only change .confs within a certain app...
Wondering if that is possible.
Thank you
So I create an account with all the rest_* capabilities but it looks like you still need admin_all_objects...
So I create an account with all the rest_* capabilities but it looks like you still need admin_all_objects...