1. In SOAR for searching common department of users in multiple incidents , can we put a filter on LDAP query results which are populated under Users and systems?<o:p></o:p>
2. Also, when we extract the resilient dump, is it possible to extract LDAP query results associated with the incidents?<o:p></o:p>
------------------------------
Vengadeshpraveen Anandarajan
------------------------------