I would like to use splunk in a multi-customer environment. I have managed to restrict events and searches to those of the logged in customer with access controls. However, I cannot seem to enforce a specific dashboard to a user. The drop down remains with all the dashboards available.
Forums: SplunkGeneral: Is there a way to enforce a specific dashboard to a user?
Previous Topic: Extract date from file name | Next Topic: How does storage i/o relate to performance in Splunk?
I would be interested in this too. I am not too sure what this "drop down with all the dashboards" is, though.
What would be interesting for me would be for each user to only see a list of logs from their area and that's it.
Granular access control doesn't quite provide the functionality that I would be looking for: In my case, an "owner" parameter for each log source/file where you restrict access to the source would be far more interesting.
I submitted an enhancement request for to limit users to one dashboard last night, so it is on the radar. Additionally, users only being able to see data that they have access to was also recently submitted as a feature request.
As far as an "owner" parameter, in 3.2 you can tag any field, so you could create an "owner" tag and restrict in granular access controls based on the tag.
Post to this topic
You must be logged in to post a reply.