Splunk Enterprise Security

Splunk Enterpise Security download Issue

ehsansplunk
New Member

I am a Splunk Partner with license admin access.
I’ve already downloaded the NFR license for Splunk Enterprise, but I still can’t download the Enterprise Security (ES) app — it remains restricted.

Am I missing a step?

 

 

Labels (1)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

AFAIR only the person who requested the Splunk Enterprise NFR license on behalf of the Partner is entitled to download ES app.

If you are a License Manager, License Admin or whatever that's called for your company but it wasn't you who requested the Splunk Enterprise NFR then you can download the Splunk Enterprise NFR license (as you are a License Manager) but cannot download ES app.

0 Karma

isoutamo
SplunkTrust
SplunkTrust
Normally download right is a person who have generate and download NFR license in partner portal. If it was you and it didn’t work, you should contact partnerverse email or your contact at splunk.
0 Karma

ehsansplunk
New Member

Yes, this is expected behavior.
I’ve downloaded the NFR license for Splunk Enterprise, but I still can’t download the app.

I’m wondering if this could be related to my admin privileges on the portal. Right now, I only have License Admin rights. Do I also need MDF Admin access?

Tags (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust
I doubt it. As far as I know, downloading is restricted to person who has generated the NFR license in portal.
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @ehsansplunk 

As far as I know there is no direct link between the partner license admin role and the entitlement in Splunkbase to download a restricted app. Each Splunkbase app can have a restricted list of users who can download it. You dont automatically have the access despite being in a license admin role in the partner portal.

As @isoutamo mentioned, you should probably reach out to your partner contact/rep in Splunk who should be able to get you added to the ES entitlement.

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...