I've had a few users leave the company now that have had saved searches. Removing the $splunkhome/etc/users/<username> directory doesn't resolve the errors.
If I search for files that contain the login name, I find the following example entry for "tuser"q:
owner = tuser
version = 4.2.3
export = system
Is it safe to remove these entries? Is there a better way to remove terminated users?