Splunk Enterprise

Asset and Identity Management dashboard NOTFOUND in Splunk ES

DaisyNguyen
Loves-to-Learn Lots

Hi all,

I'm struggling with problem that I can't find any error logs in Asset and Identity Management dashboard in Splunk Enterprise Security. It shows NOT FOUND and I see the error message behind is "You need edit_modinput_manager capability to edit information." . But I'm an admin that already have this permission. 

Hope anyone can tell me how can I fix this error. 

Thank you. 

DaisyNguyen_0-1709779448484.png

 

Labels (3)
0 Karma

kiran_panchavat
Contributor

@DaisyNguyen  Hey, Ensure that you have the necessary permissions. You need the "edit_modinput_identity_manager" capability to use the Asset and Identity Management interface. Verify your role assignments and permissions in Splunk. 

Manage assets and identities in Splunk Enterprise Security - Splunk Documentation

Configure users and roles - Splunk Documentation

0 Karma

DaisyNguyen
Loves-to-Learn Lots

Yeah, but`edit_modinput_identity_manager` capability is already checked in my role cause I'm administrator, but I still see this error.

DaisyNguyen_0-1709793858704.png

 

0 Karma
Get Updates on the Splunk Community!

Enter the Dashboard Challenge and Watch the .conf24 Global Broadcast!

The Splunk Community Dashboard Challenge is still happening, and it's not too late to enter for the week of ...

Join Us at the Builder Bar at .conf24 – Empowering Innovation and Collaboration

What is the Builder Bar? The Builder Bar is more than just a place; it's a hub of creativity, collaboration, ...

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...