We are moving to a least privileged model for service accounts and I have to ask the question of what permissions Splunk needs for the following:
What permissions will be needed for WMI collections?
What permissions will be needed for the Universal forwarder?
What permissions will be needed for folder monitor and database connections?
↧