Infra team has created a AD-groups to a folder path, we need to get events in the Splunk, so my questions are :
1) how to add in Splunk enterprise to get event for those AD_groups ?
2) How to create a alert when some other users got access for the same AD-Groups ?
Kindly help on this
See if below links can help you. There are many related answers in the 1st link
https://docs.splunk.com/Documentation/Splunk/7.3.1/Data/MonitorActiveDirectory
https://answers.splunk.com/answers/216884/monitoring-active-directory-groups-is-it-possible.html