Security

Can an element of a role in authorize.conf scoped to an app?

davebo1896
Communicator

Can an element of a role in authorize.conf be scoped for a particular app?
I have a local app where I would like to give "admin_all_objects" to all power users, but restrict that capability to only the one app.

0 Karma
1 Solution

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

View solution in original post

gyslainlatsa
Motivator

hi davebo 1896,

yes, you can do so by going to the application of Splunk page and click edit permission, a window like the one below will appear and then select your roles you want for this application and only users who have these rights could access this application.

alt text

or you follow this link: http://docs.splunk.com/Documentation/Splunk/6.3.2/Knowledge/Manageknowledgeobjectpermissions

davebo1896
Communicator

So it seems I would need to create a different role that included the additional 'admin_all_objects' capability and enable that on only the relevant app.

0 Karma
Get Updates on the Splunk Community!

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...