# Allow non-admin user to see all input logs

**URL:** <https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808>\
**Category:** Graylog Central (peer support)\
**Created:** [April 4, 2019, 3:38pm UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808 "2019-04-04T15:38:14Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![raza](https://avatars.discourse-cdn.com/v4/letter/r/82dd89/32.png) [@raza](https://community.graylog.org/u/raza)\
**Post date:** [April 4, 2019, 3:38pm UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/1 "2019-04-04T15:38:15Z")

</div>

I see this question is already asked but I don’t understand exactly where to add permission.

> [@Allow non-admin user to see all input logs(messages)](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs-messages/2730):
>
> Hi, What roles must be assigned to allow non-admin user to see all show received messages of inputs as similar to admin user? I created non-admin user with “sources:read” permissions. But on selecting “sources” tab throws below errors. Could not load histogram data and Could not load sources data Any help appreciated. Thanks

The response is suggested to add the following permission but I don’t know exactly where to add these permissions.

“dashboards:create”,  
“dashboards:read”,  
**“sources:read”,**  
“streams:create”,  
“streams:read”,  
**“messages:analyze”,**  
“searches:absolute”,  
**“searches:keyword”,**  
“searches:relative”,

Is this where I need to add these filed ?

![image](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/b/bfc37a6bf1bbe9f002092b4db80198d807824a1c.png)

---

<div class="post-metadata">

**Author:** ![jan](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/jan/32/11_2.png) [@jan](https://community.graylog.org/u/jan)\
**Post date:** [April 5, 2019, 8:16am UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/2 "2019-04-05T08:16:24Z")

</div>

you need to interact with the REST API of Graylog to create a ROLE that has the mentioned access:

[http://docs.graylog.org/en/3.0/pages/configuration/rest\_api.html](http://docs.graylog.org/en/3.0/pages/configuration/rest_api.html)

Please see the entry from the FAQ as example:  
[http://docs.graylog.org/en/3.0/pages/faq.html#how-can-i-create-a-restricted-user-to-check-internal-graylog-metrics-in-my-monitoring-system](http://docs.graylog.org/en/3.0/pages/faq.html#how-can-i-create-a-restricted-user-to-check-internal-graylog-metrics-in-my-monitoring-system)

---

<div class="post-metadata">

**Author:** ![raza](https://avatars.discourse-cdn.com/v4/letter/r/82dd89/32.png) [@raza](https://community.graylog.org/u/raza)\
**Post date:** [April 5, 2019, 9:59pm UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/3 "2019-04-05T21:59:26Z")

</div>

so, just to confirm. if I want to allow all the logs that coming to an input port 1514 that can not be allow read access to a non-admin user without configuring it via REST API ?

---

<div class="post-metadata">

**Author:** ![jan](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/jan/32/11_2.png) [@jan](https://community.graylog.org/u/jan)\
**Post date:** [April 6, 2019, 1:36pm UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/4 "2019-04-06T13:36:19Z")

</div>

no - it wasn’t your question, of if you did not wrote that clearly …

Route the messages from that single source into a stream, than create a role that has read access to this stream in the Graylog UI and add the user to that role …

---

<div class="post-metadata">

**Author:** ![raza](https://avatars.discourse-cdn.com/v4/letter/r/82dd89/32.png) [@raza](https://community.graylog.org/u/raza)\
**Post date:** [April 8, 2019, 3:24am UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/5 "2019-04-08T03:24:34Z")

</div>

What field I need to include that includes all the logs from all the source (inputs)…

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/3X/c/7/c7c09c6b5099570133d6502b83f50ba4430de5b6.png) [@system](https://community.graylog.org/u/system)\
**Post date:** [April 22, 2019, 3:24am UTC](https://community.graylog.org/t/allow-non-admin-user-to-see-all-input-logs/9808/6 "2019-04-22T03:24:37Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
