Splunk Search

LDAP user role setting

anoopambli
Communicator

I have configured LDAP for user authorization and role management. I want all the users in our organization have limited access to our splunk instance, basically they should be able to get in and get limited access to data. I talked to the LDAP admin here and he asked to take out the group based filtering option so that it does not filter users based on any group membership. I tried that but whats happening it it is pulling up all the AD groups but have no roles mapped to it. There are close to 1000 groups getting pulled up that way and i cant sit and assign splunk role to it.

Is there anyway i can assign role to all these groups at one go?

Tags (1)
0 Karma

rijhwani
Explorer

No, but you could get all the users assigned to a Splunk group in the LDAP, and craft your group search accordingly. It is, after all, how LDAP was supposed to be used.

0 Karma

anoopambli
Communicator

ok, i will check with LDAP guys to see if they already hav global group present.

0 Karma

grijhwani
Motivator

True enough.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

Depending on how your LDAP is built, there may already be a global users group containing everyone.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...