All Apps and Add-ons

Why am I unable to get any data from dashboards in the Splunk Supporting Add-on for Active Directory?

New Member


I recently installed and configured Splunk Enterprise 7.0.2 on a Windows Server 2012 R2 server.

In addition to this, I installed and configured the:

Splunk Add-on for Microsoft Active Directory (1.0.0)
Splunk Supporting Add-on for Active Directory (2.1.6)
Splunk App for Windows Infrastructure (1.4.3)

Within Search & Reporting, I can see lots of incoming data from the Hosts (DC and Splunk server/indexer), Source (ActiveDirectory) and Sourcetype (ActiveDirectory).

However, when I launch the dashboards from any of the apps/add-ons (e.g. Active Directory Overview > Topology Report), there are no results found.

Within this dashboard, when I try to amend the Forest, Site, Domain or Server, nothing seems to work.

Can someone help with this, please?

Many thanks.

0 Karma

New Member

Can anybody offer an opinion please?

0 Karma
Get Updates on the Splunk Community!

The Splunk Success Framework: Your Guide to Successful Splunk Implementations

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...