Splunk Enterprise

How to create a user that cannot log in to splunk?

arun97
Engager

Hi, 

I am in need of creating a user account that has no access at all to the dashboards. The only purpose of the account is to run scheduled searches through a rest API. Does anyone know if its possible to create such an account?

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Create an authentication token for the API user and give them only that.  Without a password (which must be defined, but doesn't have to be disclosed), the user cannot log in to the UI.

---
If this reply helps you, Karma would be appreciated.

isoutamo
SplunkTrust
SplunkTrust

It’s best to use local splunk user for this even all other users are SAML or SSO users. User needs to have role (unless you can use only predefined reports which are run as owner) and if/when user has role in splunk he/she can always log in.

So @richgalloway ‘s solution solve this issue.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...

Network to App: Observability Unlocked [May & June Series]

In today’s digital landscape, your environment is no longer confined to the data center. It spans complex ...

SPL2 Deep Dives, AppDynamics Integrations, SAML Made Simple and Much More on Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...