Security

How to set up another LDAP authentication strategy using LDAP users instead of groups?

splunkreal
Motivator

Hello,

we have LDAP auth by Active Directory groups.

However only one or two users would like higher permissions (role)

How to do? Setting up another authentication strategy using LDAP users instead of groups?

Thanks.

* If this helps, please upvote or accept solution if it solved *
0 Karma

DMohn
Motivator

Hi @realsplunk,

The right solution would be (as mentioned before) to assign these users to a specific LDAP group, and map this group to the needed role in Splunk.

However, if this is not a solution for you, it is still possible to create dedicated users locally on the Splunk Search Heads for these users. If it is only for one or two users, this might be the least complicated way. You have to be aware, that you have to manually manage these user accounts then, if anything changes in between.

0 Karma

acharlieh
Influencer

Why not just create a new AD group and add the 1-2 users to it? Then map the the new group to the elevated role and you're done.

splunkreal
Motivator

Not a solution for us 🙂

* If this helps, please upvote or accept solution if it solved *
0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...