All Apps and Add-ons

Splunk Support for Active Directory: Why do I get an exception from the Python script for every ldapfilter command I try?

Othi
Engager

For every ldapfilter (fresh 2.0.0 install on 6.1.4) command I try, the result is an exception from the Python script, for example:

query | stats count by User | ldapfilter domain=default search="(sAMAccountName=$User$)" attrs="cn"

gives

External search command 'ldapfilter' returned error code 1. Script output = " ERROR "AttributeError at ""/opt/splunk/etc/apps/SA-ldapsearch/bin/ldapfilter.py"", line 98 : 'LdapFilterCommand' object has no attribute 'search_scope'" "

Is this a known problem? Can anyone even use ldapfilter right now?

1 Solution

ahall_splunk
Splunk Employee
Splunk Employee

We are going to be releasing a v2.0.1 shortly. Until then, downgrade to v1.1.13 for a while.

View solution in original post

0 Karma

ahall_splunk
Splunk Employee
Splunk Employee

We are going to be releasing a v2.0.1 shortly. Until then, downgrade to v1.1.13 for a while.

0 Karma

jcoates_splunk
Splunk Employee
Splunk Employee

Hi from the future... December 14, 2014 is when we released it. https://splunkbase.splunk.com/app/1151/

0 Karma

musskopf
Builder

Getting lots of errors from version 2.0.0 here as well. Couldn't find a fix! I still using the older 1.1.13 which seems to work fine apart from limited features.

MuS
Legend

Hi Othi,

this is not the Add-on for LDAP app you're using. Your using the SA-ldapsearch which is the Splunk LDAP Support App for Active Directory https://apps.splunk.com/app/1151/ .. I will re-tag this question.

cheers, MuS

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...