Try in Splunk SOAR


Accepts user, to be unlocked using Microsoft AD LDAP connector. This playbook produces a normalized observable output for each user.

  • Type: Response
  • Product: Splunk SOAR
  • Apps: AD LDAP
  • Last Updated: 2023-06-21
  • Author: Lou Stella, Splunk
  • ID: e6f96caf-61ac-4ced-aabc-ba9b19bd9e1f
  • Use-cases:

Associated Detections

How To Implement

This input playbook requires the Microsoft AD LDAP connector to be configured. It is designed to work in conjunction with the Active Directory Enable Account Dispatch playbook or other playbooks in the same style.

Explore Playbook


Required field


source | version: 1