Security

Which member to remove user folder from when removing a LDAP user from SH cluster

a_kearney
Path Finder

Following the best practices for removing an LDAP user I am at the stage where I want to remove  the $HOME/splunk/etc/users/$userid folder. I have tried deleting from the cluster captain but this does not seem to be distributed across the cluster. Do I need to delete from each member individually?

 

Thanks.

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...