Security

How to configure LDAP role mapping remotely?

jeanmatthieu
Explorer

Hi!

I have recently turned on LDAP authentication on my test server. It's sooooooo awesome 🙂 I can secure an index for a group of users in no time!

When I move this to production, I will no longer benefit from vi etc/system/local/authentication.conf privileges and thus I am looking for a solution to modify and further configure role mapping on a live system I cannot ssh/vi into.

I would be very grateful if you could point me to any REST API calls or web settings that I miss.

Thank you!

1 Solution

chanfoli
Builder

Role-mapping and related settings are manageable from splunk web with proper permissions under Settings->access controls then Roles or Authentication Method, depending on what you need to do. On the Authentication Method page there is a link to "Configure Splunk to use LDAP and map groups" which lets you change group mappings, view current LDAP users, etc.

View solution in original post

chanfoli
Builder

Role-mapping and related settings are manageable from splunk web with proper permissions under Settings->access controls then Roles or Authentication Method, depending on what you need to do. On the Authentication Method page there is a link to "Configure Splunk to use LDAP and map groups" which lets you change group mappings, view current LDAP users, etc.

jeanmatthieu
Explorer

Thanks! Looks like I am set

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...