Splunk Enterprise

How to check which local system account splunk is using to run?

summitsplunk
Communicator

How do I verify which account splunk is running as? I want to make sure it's running as splunk and not root.

Tags (1)
0 Karma
1 Solution

FrankVl
Ultra Champion

Log in to the command line and run a command like ps aux | grep Splunk which shows the user the Splunk process runs as at the start of the line.

View solution in original post

FrankVl
Ultra Champion

Log in to the command line and run a command like ps aux | grep Splunk which shows the user the Splunk process runs as at the start of the line.

Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...