Getting Data In

Questions about user-seed.conf

philip_wong
Communicator

I have few questions regarding to user-seed.conf
http://docs.splunk.com/Documentation/Splunk/latest/Admin/User-seedconf

  1. Is it only applied in first run? Or it will be taken after restart everytime?
  2. Only applied to "admin"
  3. The spec mentioned "Currently, only one user can be configured with user-seed.conf." Related to both 1 & 2, can I use it to create/change password for another user after restart?
Tags (1)
0 Karma

lguinn2
Legend

It is only applied on the first run - or if $SPLUNK_HOME/etc/passwd is missing.

You can put any user you want in it, at any time.

If the first-run password for admin is not set here, the first-run password for admin will be changeme.

Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...