Splunk Search

Unknown search command 'dbxlookup'.

RobertRi
Communicator

Hello Community!

I have created a Dashboard with a dbxlookup command in the search.
As an admin, i don't have problems with the Dashboard but users who wants to view it, get the above error message

I have tried to set the security for the database and the identity but without success.
Do you have a clue why this happens?

Thanks
Rob

0 Karma

woodcock
Esteemed Legend

The dbconnect app adds 2 roles which you need to assign appropriately: dbconnect_admin and dbconnect_user:
https://docs.splunk.com/Documentation/DBX/latest/DeployDBX/Configuresecurityandaccesscontrols

0 Karma
Get Updates on the Splunk Community!

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...