Security

Users cannot schedule saved searches

Genti
Splunk Employee
Splunk Employee

I have a user that wants to schedule a search and cannot. I set up a test user and tried and can't do it either.

Tags (2)
1 Solution

Genti
Splunk Employee
Splunk Employee

The ability to schedule searches is controlled through the capabilities assigned to your role. By default the user role does not posses the schedule_search capability. If you want this specific user to be able to schedule searches you will need to add him to a role that has the capability enabled. More information on roles and capabilities can be found here: http://www.splunk.com/base/Documentation/latest/Admin/Addusersandassignroles
[(c):MG]

If the user already belongs to a role that has the capability enabled and is unable to schedule searches you probably want to contact Splunk Support with a diag and a screenshot of what your user sees

View solution in original post

Genti
Splunk Employee
Splunk Employee

The ability to schedule searches is controlled through the capabilities assigned to your role. By default the user role does not posses the schedule_search capability. If you want this specific user to be able to schedule searches you will need to add him to a role that has the capability enabled. More information on roles and capabilities can be found here: http://www.splunk.com/base/Documentation/latest/Admin/Addusersandassignroles
[(c):MG]

If the user already belongs to a role that has the capability enabled and is unable to schedule searches you probably want to contact Splunk Support with a diag and a screenshot of what your user sees

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...