All Apps and Add-ons

Non admin user role cannot use Active Directory dashboard of computers with ldapfilter commands

gfreitas
Builder

Hi,

I'm having trouble to make Splunk App for Windows Infrastructure Computer's dashboards that uses ldapsearch and ldapfilter commands to work. All non admin users cannot use the command, it returns an error: External seach command 'ldapfilter' returned error code 1. Script output= " ERROR "000004DC: LdapErr: DSID-0C09072B, commanet: In order to perform this operation a successful bind must be completed on the connection, data 0, v2580" "

Does anyone knows how to make it work without changing all the users to "admin" role?

Thanks and regards,

Gabriel Freitas

0 Karma

pradeepkumarg
Influencer

Works only with admin capabilities. More information in the below post.
http://answers.splunk.com/answers/189732/splunk-support-for-active-directory-why-are-non-ad.html

somesoni2
Revered Legend

The ldapfilter command is part of "SA-LDAPSearch" app (Splunk Supporting Add-on for Active Directory). Do the users have read access to this app??

0 Karma

gfreitas
Builder

Yes, all roles have read access to this app.

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security(ES) 7.3 is approaching the end of support. Get ready for ...

Hi friends!    At Splunk, your product success is our top priority. With Enterprise Security (ES), we're here ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...