Alerting
Highlighted

Monitoring Active Directory groups, is it possible to send an email alert to the individual who was added or removed from the group?

Engager

We'd like to use Splunk to monitor active directory groups but rather than email a fixed address when there are changes, we'd like to send an email alert to the individual who was added or removed from the group.

How would we go about doing this?

Highlighted

Re: Monitoring Active Directory groups, is it possible to send an email alert to the individual who was added or removed from the group?

Builder

It seems to be an app for that;

https://apps.splunk.com/app/1794/

🙂

0 Karma
Highlighted

Re: Monitoring Active Directory groups, is it possible to send an email alert to the individual who was added or removed from the group?

New Member

Is there a sample search that could be shared for Active Directory Group changes (meaning additions or deletions)?

0 Karma
Highlighted

Re: Monitoring Active Directory groups, is it possible to send an email alert to the individual who was added or removed from the group?

SplunkTrust
SplunkTrust

There are similar searches in the app for windows infrastructure just need to be a bit inventive and send them to the sendemail command as a token, etc.

0 Karma