You can move $SPLUNK_HOME/etc/passwd
elsewhere, that will enable the default password for your admin account. Might mess with other local users though, so you'll want to move the relevant entries back into the new file afterwards.
Use a user that has write permissions for the file - when in doubt, sudo... or talk to your system admins.
note: $SPLUNK_HOME is the directory you installed Splunk into.
it gives me Permission denied 😞
It's at the location I posted above.
thank you.. but how can I find the passwd file??