Since we had the same proplem in our company, this was the official splunk support response: The team informed that this known issue is fixed in the upcoming Splunk 9.4.3 release. Since we do not currently have an ETA for the release, they have suggested a workaround meanwhile, In the web-features.conf file in the etc/system/local directory, under the stanza [feature:page_migration] add 2 flags - enable_admin_LDAP-groups_vnext = false enable_authentication_providers_LDAP_vnext = false This should fix the issue
... View more