Splunk® Add-on for Microsoft Active Directory (Legacy)

Install and use the Splunk Add-on for Microsoft Active Directory

Acrobat logo Download manual as PDF


As of July 7, 2019, The Splunk Add-on for Active directory has reached its end of life. Splunk is no longer developing or maintaining this product.
Acrobat logo Download topic as PDF

Configure the Splunk Add-on for Microsoft Active Directory

The Splunk Add-on for Microsoft Active Directory does not require configuration as packaged by Splunk. To gain the knowledge that the add-on provides, install it into universal forwarders on your Active Directory domain controllers. If a Windows host performs both Active Directory Domain Services and DNS Server roles, install both it and the Splunk Add-on for Windows DNS into the same universal forwarder.

Additionally, to get the search time extractions that the add-on provides, install both this add-on and the Splunk Add-on for Windows DNS into the indexers that receive the Active Directory and DNS data, and any search heads that connect to and search those indexers.

Last modified on 09 November, 2016
PREVIOUS
Install the Splunk Add-on for Microsoft Active Directory
  NEXT
Troubleshoot the Splunk Add-ons for Microsoft Active Directory

This documentation applies to the following versions of Splunk® Add-on for Microsoft Active Directory (Legacy): 1.0.0, 1.0.1


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters