Deployment Architecture

search head cluster - ERROR UserManagerPro - Failed to get LDAP user="undefined" from any configured servers

jgoddard
Path Finder

Not sure if this is proper or not, but i did not find any info on answers for this issue, and since I just got done with my facepalm, I want to answer my own question.

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

Tags (1)
0 Karma
1 Solution

jgoddard
Path Finder

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

View solution in original post

jgoddard
Path Finder

The issue was caused by a lack of any persistence profile for my load balanced virtual IP.

If you run into the error above in splunkd.log, log, this error:
ERROR AuthenticationManagerLDAP - Could not find user="undefined" with strategy="..."

Or, if you log into your load balanced Splunk instance and see no username, or ability to log out or change your app, you too may have misconfigured your load balancing.

Hope this helps someone else scratching their head.

burwell
SplunkTrust
SplunkTrust

Thanks! I ran into this very problem yesterday!

0 Karma

ppablo
Retired

Hi @jgoddard

Can you actually just copy and paste the answer portion as a formal answer below and accept the answer? That way, this post will actually show as answered and resolved rather than floating around on the forum. It'll make it easier to find for other folks running into the same issue. Thanks!

Patrick

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...