Security

Minimal user capabilities for generating PDF email report?

gljiva
Path Finder

Hi, I've noticed that I have to add admin_all_object to be able to receive PDF report. If i remove that capability I get

"An error occurred while generating a PDF of this report: Failed to contact appserver at https://server:8000/en-US/report/: HTTP Error 500: Internal Server Error"

Problem is that I would like to give users as little privileges as possible, and when I enable all capabilities that I managed to isolate for proper PDF reporting, users can change apps and some other stuff. Is there a way to check what are minimal capabilities necessary for some action to work (like PDF reporting)? Is there some other workaround for enabling users to add PDF reports but minimize their capabilities?

thx

Tags (3)
1 Solution

Genti
Splunk Employee
Splunk Employee

currently PDF sent through emails can only be done by the admin user. This should change in the next few releases.

View solution in original post

rtclark
Explorer

This was fixed in 4.1.6:

"PDF printing is limited to only the admin user. (SPL-33953)"

http://www.splunk.com/base/Documentation/latest/ReleaseNotes/4.1.6

I just got back to troubleshooting this issue in my environment, and to my surprise the 500 error was no longer reproducible. I found this question and went searching to make sure that this was indeed the magic that had fixed the issue.

-rtc

Genti
Splunk Employee
Splunk Employee

currently PDF sent through emails can only be done by the admin user. This should change in the next few releases.

Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...