All Apps and Add-ons

Windows Infrastructure app - Active Directory Error

PanIrosha
Path Finder

Hi Experts

I have installed and configured Splunk app for windows infrastructure in our search head as per the instruction on the Splunk Docs.

I can see all events in indexes (wineventlog, windows, msad, perfmon) etc. but i can't see any Active directory related information in the app. when i run "Customise Feature" option i can see below results;

Active Directory: Domains not found.
Detecting Domain Controllers ...
Active Directory: Domains not found.
Detecting Domain Controllers ...
Active Directory: Domain Controllers not found.
Detecting DNS ...
Active Directory: Domains not found.

any idea what might be the reason ?

Many Thanks.

Ibbers
Explorer

How did you go setting up the Windows infrastructure app? Did you eventually succeed running the guided setup?

0 Karma

molinarf
Communicator

I don't know if your question has been answered, but I think it would help if we know what versions of Splunk App for Windows Infrastructure are you running and which Splunk Add-On for windows?

0 Karma
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...