All Apps and Add-ons

Splunk Support for Active Directory: Why am I getting test connection error client.py u'ldap

buschd
Engager

splunk 6.4 and SA-LDAPSearch 2.1.3

I'm constantly getting an error while configuring ldap connect with the following message:

KeyError at "/opt/splunk/var/run/searchpeers/##searchhead-name##/apps/SA-ldapsearch/bin/packages/splunklib/client.py", line 1653 : u'ldap'

@this line in client.py:

    # The superclass implementation is designed for collections that contain
    # entities. This collection (Configurations) contains collections
    # (ConfigurationFile).
    # 
    # The configurations endpoint returns multiple entities when we ask for a single file.
    # This screws up the default implementation of __getitem__ from Collection, which thinks
    # that multiple entities means a name collision, so we have to override it here.
    try:
        response = self.get(key)
        return ConfigurationFile(self.service, PATH_CONF % key, state={'title': key})
    except HTTPError as he:
        if he.status == 404: # No entity matching key
            raise KeyError(key)
        else:
            raise

What is that exactly?

thanks
Dom

1 Solution

buschd
Engager

ANSWER:
The later versions of this app now has a distributed search mode, enabled by default. There are two options to resolve these errors:
1. Install and configure the SA-ldapsearch component on your indexer instances.
2. Modify the commands.conf within SA-ldapsearch to run in the local space only.

See this link for steps for each approach:
http://docs.splunk.com/Documentation/SA-LdapSearch/2.1.2/User/Workaroundfordefaultconfigstanzaerrors...

View solution in original post

buschd
Engager

ANSWER:
The later versions of this app now has a distributed search mode, enabled by default. There are two options to resolve these errors:
1. Install and configure the SA-ldapsearch component on your indexer instances.
2. Modify the commands.conf within SA-ldapsearch to run in the local space only.

See this link for steps for each approach:
http://docs.splunk.com/Documentation/SA-LdapSearch/2.1.2/User/Workaroundfordefaultconfigstanzaerrors...

damode
Motivator

Hi @buschd,

I am using SA-ldapsearch 2.1.4, still I am still getting the same error from my Indexer where I have installed the add-on.

I thought about going for 2nd solution (modifying commands.conf) but it says, it might degrade search performance.

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...