Security

As a Splunk admin user, why am I unable to access the roles menu ("Access controls")?

Ant1D
Motivator

Hi,

In Splunk Web when logged in as admin, I go to Settings > Access controls, and get the following message:

Fail: [HTTP 403] Client is not authorized to perform requested action; https://127.0.0.1:8089/servicesNS/admin/system/data/modular-inputs?count=-1
Details: None

What does this mean and how can I fix it?
The message appears when I click many of the options under the Settings menu

0 Karma
1 Solution

Ant1D
Motivator

Figured it out...

Visited the URL (https://MyServer:8089/servicesNS/admin/system/data/modular-inputs) and got the following message:
`

In handler 'modular-inputs': You (user=admin) do not have permission to perform this operation (requires capability: list_inputs).

`

Made necessary tweak to authorize.conf in $SPLUNK_HOME/etc/system/local/authorize.conf
Then refreshed the necessary endpoint: http(s)://yourserver:8000/en-US/debug/refresh?entity=admin/auth-services

View solution in original post

Ant1D
Motivator

Figured it out...

Visited the URL (https://MyServer:8089/servicesNS/admin/system/data/modular-inputs) and got the following message:
`

In handler 'modular-inputs': You (user=admin) do not have permission to perform this operation (requires capability: list_inputs).

`

Made necessary tweak to authorize.conf in $SPLUNK_HOME/etc/system/local/authorize.conf
Then refreshed the necessary endpoint: http(s)://yourserver:8000/en-US/debug/refresh?entity=admin/auth-services

Ant1D
Motivator

Can Splunk please include something in a future version that prevents certain Splunk capabilities from being removed if the removal can result in breaking the admin account?

0 Karma
Get Updates on the Splunk Community!

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to Officially Supported Splunk ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...