Reporting

report owner change from SPLUNK user to LDAP user

rameshlpatel
Communicator

Hi,

At starting of splunk we had created user in splunk and in that we had created mutiple reports and dashboard, at now same user we have planning to migrate to authenticate from LDAP with same username, So is this possible that all dashboards and reports of splunk user will assign to LDAP user by identifying username which is same ?

Tags (2)
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi rameshlpatel,

this should works as long as the username is exactly the same; the username in $SPLUNK_HOME/etc/passwd must match the LDAP username.

Nevertheless, if you face some trouble you can change the owner for the dashboards and reports in local.meta and/or savedsearch.conf

here are some docs related to this:
http://docs.splunk.com/Documentation/Splunk/6.1.3/Security/Addmanagementaccesstocustomroles
http://docs.splunk.com/Documentation/Splunk/6.1.3/Admin/Savedsearchesconf
http://docs.splunk.com/Documentation/Splunk/6.1.3/AdvancedDev/SetPermissions#Set_permissions_in_the_...

hope this helps ...

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi rameshlpatel,

this should works as long as the username is exactly the same; the username in $SPLUNK_HOME/etc/passwd must match the LDAP username.

Nevertheless, if you face some trouble you can change the owner for the dashboards and reports in local.meta and/or savedsearch.conf

here are some docs related to this:
http://docs.splunk.com/Documentation/Splunk/6.1.3/Security/Addmanagementaccesstocustomroles
http://docs.splunk.com/Documentation/Splunk/6.1.3/Admin/Savedsearchesconf
http://docs.splunk.com/Documentation/Splunk/6.1.3/AdvancedDev/SetPermissions#Set_permissions_in_the_...

hope this helps ...

cheers, MuS

felipetesta
Path Finder

We started with LDAP authentication right away, except for "admin". In my setup, per-user information is stored in /opt/splunk/etc/users path. The "admin" user, which authenticates locally, is also listed there.

I have not tested what happens if the same userID is used on multiple authentication providers (local, LDAP, ...). In worst case you can copy user preferences at disk level from local user path to LDAP user path.

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...