Hello
We have recently setup the Spunk App for Windows Infrastructure to monitor our Active Directory.
We are receiving the AD audit information from the daily changes etc, however the reports such as Expired accounts or Disabled accounts do not work, no results are found.
I have checked the configuration within Splunk Support for Active Directory and the test comes back as successful.
Struggling to work out where the issue lies?
Would appreciate some help / advice.
Thanks
Karl Forster
... View more