Deployment Architecture

search head cluster - ERROR UserManagerPro - Failed to get LDAP user="undefined" from any configured servers

jgoddard
Path Finder

Not sure if this is proper or not, but i did not find any info on answers for this issue, and since I just got done with my facepalm, I want to answer my own question.

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

Tags (1)
0 Karma
1 Solution

jgoddard
Path Finder

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

View solution in original post

jgoddard
Path Finder

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

burwell
SplunkTrust
SplunkTrust

Thanks! I ran into this very problem yesterday!

0 Karma

ppablo
Retired

Hi @jgoddard

Can you actually just copy and paste the answer portion as a formal answer below and accept the answer? That way, this post will actually show as answered and resolved rather than floating around on the forum. It'll make it easier to find for other folks running into the same issue. Thanks!

Patrick

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...