Splunk Search

When a user with read access opens a dashboard, who do the searches in that dashboard run as?

muebel
SplunkTrust
SplunkTrust

I have searches powering multiple charts and tables within a dashboard. When a user with read access opens that dashboard, who do the searches in the dashboard run as? The user who accesses the dashboard, the owner of the dashboard, some other user? How could I tell?

0 Karma

skoelpin
SplunkTrust
SplunkTrust

The search will run as the user who is viewing the dashboard. If you want to see this in action then open an incognito window and login as a user with read access and go to a dashboard. Then in your non-inconginito window, click Jobs and you will see the user who is running the search

0 Karma

skoelpin
SplunkTrust
SplunkTrust

Did this answer your question?

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...