Getting Data In

I can´t bind the LDAP authentication on Splunk

JoseMaría
Explorer

Hi, I have a problem with splunk that is getting too long as I can't find the problem.

I have a laboratory in which I want to access Splunk through the users I have in LDAP, as it is a laboratory, I have only created the "Admin" by default and another called "Josemaría" if necessary, but I always see myself with this trouble.

JoseMara_0-1624616893260.png

My configuration is as follows.

JoseMara_1-1624617051491.png

JoseMara_2-1624617092160.png

 

JoseMara_3-1624617133844.png

 

And if it helps, my tree in LDAP which is very small for that reason, because it is for testing.

JoseMara_4-1624617307837.png

I need help and would greatly appreciate those who try to help me. Thank you very much in advance, greetings!

Labels (1)
0 Karma

codebuilder
Influencer

"Bind DN" is generally a username or email address of an account authorized to bind to the LDAP server.
First try replacing what you have currently with simply "Administrator", assuming that is a valid bind user account.

----
An upvote would be appreciated and Accept Solution if it helps!
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...