Getting Data In

How can index ldif data?

abuschel
New Member

I have the export of an open ldap directory, in ldif format. I need to have this data indexed and somehow pivoted.

IS that possible?

Tags (2)
0 Karma

MuS
SplunkTrust
SplunkTrust

Hi abuschel,

basically Splunk is able to index any kind of human readable input, this includes a ldif file. Now for the tricky part, you must tell Splunk how to handle this file and what fields should be extracted and what their format is.

Start by reading the docs about adding data, add your file in the UI Manager and check the results, add any needed field extraction and proceed as needed with the created events.

hope this helps ...

cheers, MuS

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...