Splunk Search

Ldap Command line works -- Web-UI does not work

ranmanh
New Member

Hi

This is for splunk version 4.3.4, build 136012

I have setup ldap authentication in file : /opt/splunk/etc/system/local/authentication.conf
And looking at the splunkd.log everything seems fine. I can see the LDAP credentials and users being cached. I have tested to reload splunk using the LDAP credentials from the command line and everything works perfectly fine.

Now, THis does NOT work in the web-ui. I cannot log in there using the ldap credentials.
I have tried: Manager » Access controls » Authentication method --> LDAP (as that was inactive)
then : Configure Splunk to use LDAP and map groups (my strategy was there)
and ENABLE it as it looked disabled.
In the end I have "Reload authentication configuration" , even I have restarted the server but I cannot log into the web-ui using the LDAP credentials.

Any idea what I might be missing?

Thanks

Tags (1)
0 Karma

ranmanh
New Member

In the end it was working all right!! Silly issue with a typo!

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...