<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: REST Authentication to IDX Cluster Peer in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685578#M19245</link>
    <description>&lt;P&gt;Thank you, found the authentication.conf with LDAP Configuration on our indexers&lt;/P&gt;</description>
    <pubDate>Fri, 26 Apr 2024 06:40:15 GMT</pubDate>
    <dc:creator>TheEggi98</dc:creator>
    <dc:date>2024-04-26T06:40:15Z</dc:date>
    <item>
      <title>REST Authentication to IDX Cluster Peer</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685483#M19238</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;i have a question on Authenticating to IDX Cluster Peer via REST.&lt;BR /&gt;&lt;BR /&gt;We have the following Environment:&lt;BR /&gt;3 IDX in Cluster&lt;BR /&gt;3 SH in Cluster&lt;BR /&gt;1 CM (License Manager, IDX Cluster Manager, Deployer &amp;amp; Deploymentserver)&lt;/P&gt;&lt;P&gt;Our normal Authentication for Web is currently with LDAP.&lt;BR /&gt;&lt;BR /&gt;With my LDAP-User i can directly perform a GET request to an Indexer, but with a local User created over WebUI (tried local user in SHC and on CM) i cant perform any request to an indexer.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;The WebUI is disabled on the Indexers and they dont have the LDAP Configuration as the Searchheads does.&lt;BR /&gt;&lt;BR /&gt;How does it come, that the Indexer know my LDAP User but not the locally created?&lt;BR /&gt;&lt;BR /&gt;And how can i let the indexers to get to know a locally on SH or CM created user?&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 14:09:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685483#M19238</guid>
      <dc:creator>TheEggi98</dc:creator>
      <dc:date>2024-04-25T14:09:48Z</dc:date>
    </item>
    <item>
      <title>Re: REST Authentication to IDX Cluster Peer</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685517#M19243</link>
      <description>&lt;P&gt;Each component has its own authentication settings (in case of search head cluster they are either pushed from deployer to all members or configured in run-time and distributed among members). So it's only natural that you can't authenticate to indexer using SH user.&lt;/P&gt;&lt;P&gt;If you can authenticate on your indexer it means someone needlessly pushed LDAP configuration to indexer layer (users don't interact with indexers directly!).&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 19:14:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685517#M19243</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-04-25T19:14:38Z</dc:date>
    </item>
    <item>
      <title>Re: REST Authentication to IDX Cluster Peer</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685578#M19245</link>
      <description>&lt;P&gt;Thank you, found the authentication.conf with LDAP Configuration on our indexers&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 06:40:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/REST-Authentication-to-IDX-Cluster-Peer/m-p/685578#M19245</guid>
      <dc:creator>TheEggi98</dc:creator>
      <dc:date>2024-04-26T06:40:15Z</dc:date>
    </item>
  </channel>
</rss>

