Compare Imply Lumi roles to Splunk roles
info
The information in this topic is based on the configurations for Splunk® software in April 2025.
Splunk Enterprise and Splunk Cloud use roles to restrict access to features and functionality. Both Splunk platforms and Imply Lumi come with predefined user roles. Although Imply Lumi roles don't map directly to Splunk roles, they do provide similar types of access. Some roles align more closely than others, and not every Splunk role can be mapped to Imply Lumi.
This topic explains how specific predefined roles in Splunk relate to their counterparts in Imply Lumi.
Predefined roles in Splunk
The following predefined Splunk roles have the most similarities with roles in Imply Lumi:
admin
- Splunk platform: Splunk Enterprise, Splunk Cloud
- Comparable role in Imply Lumi: Admin
- Overlap: Both roles have full privileges across their corresponding platforms, including user management and infrastructure settings.
power
- Splunk platform: Splunk Enterprise, Splunk Cloud
- Comparable role in Imply Lumi: Manager
- Overlap: Both roles offer similar data access and operational capabilities. Similar to Splunk's power role, the Manager role allows users to add and search events and manage their own objects (such as IAM keys). A key difference is that the Manager role also provides the ability to manage users and roles.
user
- Splunk platform: Splunk Enterprise
- Comparable role in Imply Lumi: Data manager
- Overlap: Both roles can add and search events.
read_only
- Splunk platform: Splunk Cloud
- Comparable role in Imply Lumi: Viewer
- Overlap: Both roles can access pages and search events but can't create, edit, or delete events.
Learn more
See the following topics for more information:
- Permissions for information on permissions in Imply Lumi.
- Manage roles for information on predefined roles in Imply Lumi.