<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP configuration issue in Security</title>
    <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390517#M15034</link>
    <description>&lt;P&gt;Yes, I am copying directly from the AD ldap tool - "Right click"-&amp;gt; "Copy DN". But no luck&lt;/P&gt;

&lt;P&gt;Do you have working conf file for ldap settings? Maybe I will try to co-relate and see what mistakes I am doing?&lt;/P&gt;</description>
    <pubDate>Mon, 29 Jul 2019 06:55:36 GMT</pubDate>
    <dc:creator>nareshinsvu</dc:creator>
    <dc:date>2019-07-29T06:55:36Z</dc:date>
    <item>
      <title>LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390510#M15027</link>
      <description>&lt;P&gt;I am trying to set-up LDAP authentication. But not able to proceed with below error when adding new LDAP strategy.&lt;BR /&gt;
Infra teams confirm on the correctness of the userBaseDN. Need help &lt;/P&gt;

&lt;P&gt;&lt;EM&gt;Encountered the following error while trying to save: Could not find userBaseDN on the LDAP server: OU=Service accounts,OU=Secured Accounts,OU=Accounts,DC=NTSH,DC=LOCAL&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jul 2019 06:38:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390510#M15027</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-17T06:38:57Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390511#M15028</link>
      <description>&lt;P&gt;Hello Champions - Anyone faced and resolved this issue?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 04:19:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390511#M15028</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-26T04:19:32Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390512#M15029</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;User which you are using to authentication with LDAP has access to &lt;CODE&gt;OU=Service accounts,OU=Secured Accounts,OU=Accounts,DC=NTSH,DC=LOCAL&lt;/CODE&gt; ?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 08:49:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390512#M15029</guid>
      <dc:creator>harsmarvania57</dc:creator>
      <dc:date>2019-07-26T08:49:38Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390513#M15030</link>
      <description>&lt;P&gt;Hi nareshinsvu,&lt;BR /&gt;
which Splunk and TA version are you using? two years ago there was a bug on LDAP TA.&lt;BR /&gt;
Bye.&lt;BR /&gt;
Giuseppe&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 08:53:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390513#M15030</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2019-07-26T08:53:09Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390514#M15031</link>
      <description>&lt;P&gt;When you're adding your user base and group base DNs are you copying them directly from ADSI edit to ensure you have the full string? The smallest mistake in the DN would cause this error. Verify the DN is correct also that the account your running the LDAP strategy with has Rights to view that AD object. Generally all your AD objects are read only and available.&lt;/P&gt;

&lt;P&gt;LDAP strategy can be a pain but understanding that both the users security group and User location can and should be specified when setting things up. I have a feeling splunk isn't lying here..&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 09:42:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390514#M15031</guid>
      <dc:creator>Jarohnimo</dc:creator>
      <dc:date>2019-07-26T09:42:33Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390515#M15032</link>
      <description>&lt;P&gt;I am on almost latest version - 7.2.5 &lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 06:52:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390515#M15032</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-29T06:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390516#M15033</link>
      <description>&lt;P&gt;Yes, Able to veiw the ldap configurations - Read access.&lt;/P&gt;

&lt;P&gt;Do you have working conf file for ldap settings? Maybe I will try to co-relate and see what mistakes I am doing?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 06:53:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390516#M15033</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-29T06:53:17Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390517#M15034</link>
      <description>&lt;P&gt;Yes, I am copying directly from the AD ldap tool - "Right click"-&amp;gt; "Copy DN". But no luck&lt;/P&gt;

&lt;P&gt;Do you have working conf file for ldap settings? Maybe I will try to co-relate and see what mistakes I am doing?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 06:55:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390517#M15034</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-29T06:55:36Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390518#M15035</link>
      <description>&lt;P&gt;Unfortunately mines isn't on a public subnet.&lt;/P&gt;

&lt;P&gt;Are you using your domain name as the ldap server name? &lt;/P&gt;

&lt;P&gt;Some people put their local domain controller host name or IP. I use the domain name root that way if they change out a domain controller or switch the IP I'm always good. For example: Mydomain.com (whatever your company's logical domain name is) vs servername.&lt;/P&gt;

&lt;P&gt;You can test your ldap strategy accounts rights by going to start...run... Type in dsa.msc and run as the ldap strategy binding name. If that account can't view AD objects them that could be your problem. You could try with your own personal admin account (not recommend in the long) but good way to rule out it being the account&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 22:55:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390518#M15035</guid>
      <dc:creator>Jarohnimo</dc:creator>
      <dc:date>2019-07-29T22:55:34Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP configuration issue</title>
      <link>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390519#M15036</link>
      <description>&lt;P&gt;It worked only after specifying &lt;BR /&gt;
groupBaseDN  - a complete DN (including CN) of my LDAP group &lt;BR /&gt;
userBaseDN - a complete DN (including CN) of all the users(semicolon seperated) of the group under userBaseDN &lt;/P&gt;

&lt;P&gt;Really strange if the documentation is not user friendly OR too many config parameters to setup LDAP. Splunk should have simply asked us to provide LDAP server name and the groupBaseDN. Hope this will be done in future releases.&lt;/P&gt;

&lt;P&gt;Thanks all for your inputs.&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2019 04:27:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/LDAP-configuration-issue/m-p/390519#M15036</guid>
      <dc:creator>nareshinsvu</dc:creator>
      <dc:date>2019-07-30T04:27:11Z</dc:date>
    </item>
  </channel>
</rss>

