{"statusCode":403,"error":"Forbidden","message":"Forbidden"}to open kibana with AD authentication

"cn=Users,dc=sgpltech,dc=com" is most probably an Organizational Unit in your AD and not a group . Our role mapping works with groups only so you need to figure out what AD Security group your users will be under and set the DN for that group here.