All Apps and Add-ons

Splunk App for PCI compliance - Splunk Enterprise: Is there an option to automatically update the assets and identities lookups without running an LDAP search?

amulay26
Path Finder

I have the assets and identities list configured using LDAP search. Is there an option to automatically update the assets and identities lookups without running that LDAP search?

Any insights will be appreciated.

Thanks

0 Karma

rvany
Communicator

These lists are lookup tables. You could update them just like any other lookup table - but, somehow you have to get the data. LDAP is one option for identities, CMDB is one option for assets.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...