Getting Data In

Active Directory - Admon limits approx 1000 assets

o_calmels
Communicator

Hi splunkers !

I ve just configured active directory monitoring based on Splunk 7.3 Active Directory inputs. The AD connexion is running well, but the first sync is limited.
I opened a case, as a solution, Splunk support said admon is limited to approximatively 1000 assets on the first sync.

My AD count 32000 users, 60000 computers and much more object !

Had you used this monitoring on large active directory architecture ?
What type of input do you use to get AD assets ?

Thanks.

Olivier.

0 Karma
Get Updates on the Splunk Community!

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...

Splunk Up Your Game: Why It's Time to Embrace Python 3.9+ and OpenSSL 3.0

Did you know that for Splunk Enterprise 9.4, Python 3.9 is the default interpreter? This shift is not just a ...