Alerting

ldapfilters command doesn't work in fast mode

pokix
New Member

Hello dear splunkers.

I'm facing an issue with the ldapfilters. It doesn't return anything when launched in fast mode. Smart and verbose mode work fine however.

The real problem here is that I want to use it within scheduled alerts or reports. And those searches are natively in fast mode. I couldn't find a way to change it.

Did someone face the same issue ? How can I deal with it ?

Thanks in advance.

Kind regards

Tags (2)
0 Karma

pokix
New Member

Well the command ldapsearch seems to work fine in fast mode and returns the things I want.

0 Karma
Get Updates on the Splunk Community!

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...