Splunk IT Service Intelligence

Splunk IT Service Intelligence: When I created a "view only" user in Splunk, why am I unable to access the app?

venkatesh296
Explorer

Hi guys,
I created a user in Splunk to "view only". on the left hand side it showing all the apps I have, unfortunately I'm not able to access the Splunk IT Service Intelligence (ITSI) app in Splunk. Plz help with this. when i click on ITSI app, it showing the following error

404 Not Found
Return to Splunk home page
Page not found!
View more information about your request (request ID = 286c7sfelkferldf10) in Search
This page was linked to from https://localhost:8000.

Thank you.

0 Karma
1 Solution

sshelly_splunk
Splunk Employee
Splunk Employee

To access ITSI, there are specific user roles defined in ITSI. You need to make sure the user you have created has the appropriate roles assigned. (https://docs.splunk.com/Documentation/ITSI/2.4.1/Configure/Configureusersandroles)
itoa_user
itoa_analyst
itoa_admin

View solution in original post

sshelly_splunk
Splunk Employee
Splunk Employee

To access ITSI, there are specific user roles defined in ITSI. You need to make sure the user you have created has the appropriate roles assigned. (https://docs.splunk.com/Documentation/ITSI/2.4.1/Configure/Configureusersandroles)
itoa_user
itoa_analyst
itoa_admin

sshelly_splunk
Splunk Employee
Splunk Employee

You can create your own roles, and edit existing roles. Do you have something more specific you're looking to do? If you mean userA can see only one glass table, than you can create a role that has required functionality and limit that specific role using the permissions for the glass table(s) in question. Take a look at:
https://docs.splunk.com/Documentation/ITSI/2.4.1/Configure/Configureusersandroles

0 Karma

venkatesh296
Explorer

Thank you

0 Karma

venkatesh296
Explorer

Once again thank you, now I'm able to get into ITSI app. Here there are like 5 glass tables . Is there any way to display specific glasstable for users who only have view option.

Thanks in advance.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...