SPLK-3003 Exam QuestionsBrowse all questions from this exam

SPLK-3003 Exam - Question 43


A customer wants to migrate from using Splunk local accounts to use Active Directory with LDAP for their Splunk user accounts instead. Which configuration files must be modified to connect to an Active Directory LDAP provider?

Show Answer
Correct Answer: BC

To connect Splunk to an Active Directory LDAP provider, you need to modify both the authentication.conf and ldap.conf files. The authentication.conf file is necessary for configuring authentication methods and settings, while the ldap.conf file is needed specifically for setting LDAP-related configurations. The authorize.conf file is not needed in this scenario as it is used for role-based access control but not for initial LDAP connection setup.

Discussion

6 comments
Sign in to comment
SasnycoNOption: C
Mar 7, 2022

Answer is "C"

RedtonyeahOption: C
May 30, 2022

C is OK

wiz386Option: D
Aug 15, 2022

should be D

Danny52Option: B
Jul 15, 2021

It is B

chuchoneitor
Sep 8, 2021

Wrong, in the worts case should be D because you need to map the roles. But as I understood they are talking about authentication only so I would rather C in this case.

LearningDani
Mar 1, 2022

Role mapping is also done in authentication.conf. So no need to touch the authorize.conf -> C

pbandj12
Sep 15, 2021

D is the answer, B is super wrong

pbandj12
Sep 15, 2021

Sorry I meant, C!!!!!

HamiltonianOption: C
Sep 30, 2023

They are only specifying the connection to the LDAP server and nothing about role mappings. Thus: C

hpbdcbOption: C
Feb 1, 2024

crystal clear