Security

How can I append basedn to member uid mappings when using LDAP authentication?

Simon
Contributor

Hi all,

unfortunately the userid given in the group member attribute of my ldap group is only the single userid without the full dn. Is there a way to tell splunk it should append a dn when searching for memberships?

At the moment splunk can't find my group member ship, when starting up he tells me:

08-10-2010 13:47:14.598 ERROR ScopedLDAPConnection - Read for DN 'sibalz' gave error: Invalid DN syntax
08-10-2010 13:47:14.598 ERROR ScopedLDAPConnection - Could not read invalid entry at DN sibalz

And later when loggin in:

08-10-2010 13:48:02.446 ERROR AuthenticationManagerLDAP - Couldn't find matching groups for user 'sibalz'. Search filter used: (memberuid=uid=sibalz,ou=People,dc=t-systems,dc=ch)

Thanks Simon

Tags (2)
1 Solution

Simon
Contributor

Ok folks, I just gave the solution myself 🙂

In this case you have to set

groupMappingAttribute = uid

With this attribute, you tell splunk which attribute of the user object he should use when looking up group memberships.

View solution in original post

Simon
Contributor

Ok folks, I just gave the solution myself 🙂

In this case you have to set

groupMappingAttribute = uid

With this attribute, you tell splunk which attribute of the user object he should use when looking up group memberships.

Get Updates on the Splunk Community!

Community Content Calendar, November Edition

Welcome to the November edition of our Community Spotlight! Each month, we dive into the Splunk Community to ...

Stay Connected: Your Guide to November Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...

Index This | When is October more than just the tenth month?

October 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...