Security

Splunk Dashboard to show fields based on the user role

Priya312
Explorer

Hi,

Currently I'm developing a html dashboard which every users can view it.
But in the drilldown of the dashboard, a set of fields will be displayed as table.
I want to show the value of particular field only to certain users and for other users the field should be hidden/shown without any values.

How can i achieve this in HTML dashboard?

Tags (2)
0 Karma

vasanthmss
Motivator

You can put your custom field filter into "search time restrictions" on the Roles. Go to Settings-> Access controls » Roles -> YOur Role for each user -> Search Restrictions -> Restrict search terms"

Or create some lookup with following details user roles and required fields. Use the lookup in youe search.

you can retrieve the logged in user details by using this query,

| rest /services/authentication/current-context splunk_server=local  | table username,realname,roles

Check this post http://answers.splunk.com/answers/28633/current-user-in-search.html

V
0 Karma
Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...