ExamGecko
Question list
Search
Search

Question 103 - SPLK-1003 discussion

Report
Export

What happens when the same username exists in Splunk as well as through LDAP?

A.
Splunk user is automatically deleted from authentication.conf.
Answers
A.
Splunk user is automatically deleted from authentication.conf.
B.
LDAP settings take precedence.
Answers
B.
LDAP settings take precedence.
C.
Splunk settings take precedence.
Answers
C.
Splunk settings take precedence.
D.
LDAP user is automatically deleted from authentication.conf
Answers
D.
LDAP user is automatically deleted from authentication.conf
Suggested answer: C

Explanation:

Reference:

https://docs.splunk.com/Documentation/SplunkCloud/8.2.2105/Security/SetupuserauthenticationwithLDAP

Splunk platform attempts native authentication first. If authentication fails outside of a local account that doesn't exist, there is no attempt to use LDAP to log in. This is adapted from precedence of Splunk authentication schema.

asked 23/09/2024
Guillermo Carrasco
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first