Installation

How to Assign Access Role to multiple groups

SplunkDash
Motivator

Hello,

I have a situation where there are 25 different groups  of people and each group of people uses different sets of data (i.e. there are 25 different sets of data, one for each group). We need to create a single dashboard and also need to assign access role in a way that each group can only have access to their data set using the same dashboard.   How I would assign the access role for those 25 different groups. 

Should I create 25 different indexes - one for  each group  and assign access role to those indexes?

Is it possible to create 25 different sourcetypes and assign access role to those sourcetypes  - one for each group and keep all sourcetypes under one index?

Or are there any other ways?

Thank you so  much, any help will be highly appreciated.

  

 

Tags (1)
0 Karma
1 Solution

PickleRick
SplunkTrust
SplunkTrust

The permissions are granted on a per-index basis so if you want to limit the access to the data, you separate it into different indexes (it's one of the cases where splitting data into indexes is advisable).

If you want to use the same dashboard for different user groups (and thus indexes), you have to make it so that the source index used in searches is dynamically settable - not hardcoded.

View solution in original post

PickleRick
SplunkTrust
SplunkTrust

The permissions are granted on a per-index basis so if you want to limit the access to the data, you separate it into different indexes (it's one of the cases where splitting data into indexes is advisable).

If you want to use the same dashboard for different user groups (and thus indexes), you have to make it so that the source index used in searches is dynamically settable - not hardcoded.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...