<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco DUO problem with AD in Managing Users</title>
    <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4891058#M1258</link>
    <description>&lt;P&gt;We started using duo sso and if we change a AD setting for a user, lets say the "Log In to.." setting to restrict what computer that user should RDP to once they establish a vpn connection, they are greeted with invalid credentials when trying to authenticate with sso.&lt;/P&gt;</description>
    <pubDate>Mon, 24 Jul 2023 12:48:10 GMT</pubDate>
    <dc:creator>dwalker1</dc:creator>
    <dc:date>2023-07-24T12:48:10Z</dc:date>
    <item>
      <title>Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4889637#M1255</link>
      <description>&lt;P&gt;Dear All&lt;/P&gt;&lt;P&gt;&amp;nbsp; I would like your support, I used Cisco DUO , integrate with Local Microsoft active directory, we have schedule to sync information every 8 Hrs.&amp;nbsp; but we found issue , when our user change password from their computer , but after 8 hrs pass, they go to home and try to used VPN, Cisco duo away inform can not login, we try to manual sync.it still not working&amp;nbsp; , for work around we need to reset user's password on Active directory console then sync manual to cisco duo&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; where I can get log to check what is root cause of these problem, and how to fix it&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 11:07:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4889637#M1255</guid>
      <dc:creator>Chatchawan</dc:creator>
      <dc:date>2023-07-21T11:07:27Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4889713#M1256</link>
      <description>&lt;P&gt;I don't quite understand your problem. Duo's directory sync does not sync in any of your users' passwords. Today Duo does not store any of your users' passwords.&lt;/P&gt;
&lt;P&gt;How is your VPN performing primary authentication?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 13:42:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4889713#M1256</guid>
      <dc:creator>DuoKristina</dc:creator>
      <dc:date>2023-07-21T13:42:53Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4890121#M1257</link>
      <description>&lt;P&gt;We used VPN that have&amp;nbsp; MFA, first Authenticator is&amp;nbsp; our local Microsoft Active directory ,&amp;nbsp; 2nd Authenticator is Cisco Duo&lt;/P&gt;&lt;P&gt;my problem is , when user change password from these notebook in office, when they go back home and try to connect vpn with new password , it's can not login. on Duo console is show password is wrong. ( schedule sync is work, no error ) , for work around I reset their password from local AD console, and manual sync to cisco duo, user can login VPN, and duo is working&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Jul 2023 14:14:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4890121#M1257</guid>
      <dc:creator>Chatchawan</dc:creator>
      <dc:date>2023-07-22T14:14:02Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4891058#M1258</link>
      <description>&lt;P&gt;We started using duo sso and if we change a AD setting for a user, lets say the "Log In to.." setting to restrict what computer that user should RDP to once they establish a vpn connection, they are greeted with invalid credentials when trying to authenticate with sso.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jul 2023 12:48:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4891058#M1258</guid>
      <dc:creator>dwalker1</dc:creator>
      <dc:date>2023-07-24T12:48:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4892168#M1259</link>
      <description>&lt;P&gt;Sorry, you're not providing enough information to assist you. What is your VPN? Did you add Duo to your VPN using LDAP, RADIUS, or SAML? What client do your users launch on their laptops to connect?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2023 14:01:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4892168#M1259</guid>
      <dc:creator>DuoKristina</dc:creator>
      <dc:date>2023-07-25T14:01:48Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4892170#M1260</link>
      <description>&lt;P&gt;Correct, if the LDAP bind for a user via your configured Duo SSO AD authentication server(s) fails (including due to workstation restriction) it will be reported as invalid creds.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2023 14:04:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4892170#M1260</guid>
      <dc:creator>DuoKristina</dc:creator>
      <dc:date>2023-07-25T14:04:12Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4893578#M1261</link>
      <description>&lt;P&gt;Dear DuoKristina&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;Our firewall is Paloalto, our VPN used RADIUS authenticate,&amp;nbsp; Radius Server setting&amp;nbsp; is point to local server that install cisco duo proxy server&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 10:12:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4893578#M1261</guid>
      <dc:creator>Chatchawan</dc:creator>
      <dc:date>2023-07-27T10:12:21Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco DUO problem with AD</title>
      <link>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4894046#M1262</link>
      <description>&lt;P&gt;Thanks for this extra detail.&lt;/P&gt;
&lt;P&gt;In the configuration you describe (users synced into Duo from AD; Palo Alto pointing to Duo Authentication Proxy as a RADIUS server) there is absolutely nothing Duo is doing to store or cache the AD passwords for your users. Duo also maintains no record of when a user last set their AD password; that information is never sent to Duo during authentication or directory sync.&lt;BR /&gt;&lt;BR /&gt;I suggest you contact Duo Support for more help diagnosing the situation.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 19:06:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/managing-users/cisco-duo-problem-with-ad/m-p/4894046#M1262</guid>
      <dc:creator>DuoKristina</dc:creator>
      <dc:date>2023-07-27T19:06:56Z</dc:date>
    </item>
  </channel>
</rss>

