So we just installed 4.2 on our searchhead, and loving it so far!
We ran into a bit of a snag though. Our searchhead normally sits behind a server that does SSO and passes the logged on user back with the REMOTE_USER variable like specified in the docs.
In 4.1, there was still a "Logout" link in the top right corner of the Splunk page. This appears to have been removed in 4.2 when using SSO. Even when not going through the SSO reverse proxy, the "Logout" link is still not there (although I can then login, which is a plus).
I know it sounds strange to need to login with a different account than you are SSO'd in with, but we actually do it quite a bit for various reasons.
Is there a parameter in web or server.conf that could re-enable the logout link, even though SSO is enabled?
Yeah, agreed, this is a problem. When we need to login as the "admin" account, this is no longer possible. Previously we could login with any account (via SecurID Webauth) and then "Logout" and log in via the admin credentials on the Splunk Login page.
No longer possible with 4.2. Please at least add an option to enable that link.
This feature is really needed. I think the best way to re-implement it would be to add a permission "can logout". In this way, you could enable certain users to be able to log on with alternate credentials as needed, but not confuse other users by giving them an unneeded logout option.
As far as I know, the logout button is not available in 4.2.x+. Requests for enhancements should go to Splunk Support as P4 bug - with your use case - so they can be tracked and potentially implemented in the product.