User roles
Role-Based Access Control
The Splunk App for VMware provides role‐based access control. Two roles are defined to provide operators and administrators of the Splunk App for VMware with the specific access each needs.
The default role settings are specified in $SPLUNKHOME/etc/apps/splunk_TA_vmware/default/authorize.conf
The following two roles are defined:
Role | Description |
---|---|
splunk_vmware_user | Select the user role to assign a permission level for operators of the app who manage virtual environments. As a user you are interested in looking at the data in the dashboards. |
splunk_vmware_admin | Select the admin role to assign a permission level for administrators of the app who are responsible for installing the app and configuring it to collect data from your virtual environment. |
The following table lists the dashboards that each role can access in the Splunk App for VMware:
Dashboard | User role | Admin role |
---|---|---|
Home | x | x |
Search | x | x |
Knowledge objects (reports and dashboards) | x | x |
Proactive Monitoring and Entity views | x | x |
Performance and capacity planning views | x | x |
Troubleshooting and security | x | x |
Threshold Configuration | x | |
Collection configuration | x |
Both the admin role and the user role have permissions to search the following indexes by, default, when no index is specified in the search:
- vmware-esxilog
- vmware-inv
- vmware-perf
- vmware-taskevent
- vmware-vclog
Log in and get started | Dashboards overview |
This documentation applies to the following versions of Splunk® App for VMware (Legacy): 3.3.2
Feedback submitted, thanks!