Looking to provide our splunk users with the ability to upload data files via a search head.
Haven't been able to locate a permission attribute that allows for this, apart from 'admin_all_objects' ie. Full Admin Role.
How can this be achieved?
Thanks in advance.
The specific capability is called:
which can be assigned to a custom or existing role: