I setup the new Windows Active Directory Source and am pulling the Active Directory data into Sumo. We have built some nice queries to pull users, groups, etc. from the AD schema. However we are not seeing the groups users are members of.
The documentation says the following is pulled by default:
- Security groups to which the employee is assigned, which allows Cloud SIEM Enterprise to determine the privileges the user has on the company network
How do we see this data? Thanks.
Please sign in to leave a comment.