Reporting

How to get email id from LDAP

ma_anand1984
Contributor

in the following page, i can see list of users in splunk.
/manager/search/authentication/users

I see a field called Email address and we use LDAP authentication. I would like to configure splunk so that i can see user's email id auto populated from AD

my setting in authentication.conf
[authentication]
authSettings = AD,AD1
authType = LDAP

Anand

dfronck
Communicator

We just upgraded to v6.2.1 and the Email Addresses are now being populated by LDAP.

jluste
Path Finder

A stop gap solution would be to pull from your AD or LDAP a .csv file containing username and email address. This can be uploaded as a lookup table and used in searches for internal and audit indexes. It doesn't put the emails where you want them but you'll have a way of accessing them for reporting or alerting.

gavin1_davenpor
Path Finder

This is a bit of a showstopper - how are we supposed to populate email addresses ??

dfronck
Communicator

This question has been around since at least May 2010 v4.1. http://splunk-base.splunk.com/answers/2138/ldap-authenticated-users-do-not-pick-up-mail-attribute-fr...

I'm on 5.0.3 and it looks like email addresses still can't be automatically pulled from AD and they can't even be added manually!

It should be pretty simple to add this feature.

ma_anand1984
Contributor

i have put in a feature request with splunk. They told me that they will add it. No SLA though

Get Updates on the Splunk Community!

Monitoring Postgres with OpenTelemetry

Behind every business-critical application, you’ll find databases. These behind-the-scenes stores power ...

Mastering Synthetic Browser Testing: Pro Tips to Keep Your Web App Running Smoothly

To start, if you're new to synthetic monitoring, I recommend exploring this synthetic monitoring overview. In ...

Splunk Edge Processor | Popular Use Cases to Get Started with Edge Processor

Splunk Edge Processor offers more efficient, flexible data transformation – helping you reduce noise, control ...