Provide cited, read-only Splunk Enterprise administration guidance for routine local users, roles, capabilities, configuration precedence, service ownership, maintenance readiness, and safe non-mutating validation. Use when an administrator needs to understand documented Enterprise behavior, compare supplied source-file, btool, or runtime observations, identify accountable role owners, or decide what evidence is missing before a safe change. Route identity-provider authentication, knowledge-object governance, index/storage, app lifecycle, cluster operations, upgrade/security, health/diag, platform incidents, license/capacity, and deployment-server or forwarder-fleet work …