<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS integration with RSA and AD in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295778#M101887</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As long as the RSA store has the same username as the AD user this will work as you expect, with a little trickery. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You would need to create an Identity Store Sequence, and for the password authentication only look in the RSA store, but for the attribute lookup only look in the AD store and point the access service to use your Identity Store Sequence. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Users would be prompted to authenticate using their RSA tokens, then get passed back a result based on whatever rules you have set for specific AD OUs. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 18 Oct 2013 16:50:12 GMT</pubDate>
    <dc:creator>Sam Hertica</dc:creator>
    <dc:date>2013-10-18T16:50:12Z</dc:date>
    <item>
      <title>ACS integration with RSA and AD</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295777#M101838</link>
      <description>&lt;P&gt;I have a question about integrating RSA and AD with ACS.&amp;nbsp; What I am wondering is if I can create an authorization profile to have ACS check AD attributes (i.e. if a user is in a certain AD group) while using RSA for the authentication piece in the access policy?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example, the access policy would use RSA for the external group authentication, but use AD for the authorization profile.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think this will work, but I want to be sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TIA,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 00:31:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295777#M101838</guid>
      <dc:creator>deyster94</dc:creator>
      <dc:date>2019-03-26T00:31:09Z</dc:date>
    </item>
    <item>
      <title>ACS integration with RSA and AD</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295778#M101887</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As long as the RSA store has the same username as the AD user this will work as you expect, with a little trickery. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You would need to create an Identity Store Sequence, and for the password authentication only look in the RSA store, but for the attribute lookup only look in the AD store and point the access service to use your Identity Store Sequence. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Users would be prompted to authenticate using their RSA tokens, then get passed back a result based on whatever rules you have set for specific AD OUs. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Oct 2013 16:50:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295778#M101887</guid>
      <dc:creator>Sam Hertica</dc:creator>
      <dc:date>2013-10-18T16:50:12Z</dc:date>
    </item>
    <item>
      <title>ACS integration with RSA and AD</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295779#M101931</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the information.&amp;nbsp; &lt;SPAN style="font-size: 10pt;"&gt;RSA will have the same username since it's going to be integrated with AD as well.&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Oct 2013 17:04:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-integration-with-rsa-and-ad/m-p/2295779#M101931</guid>
      <dc:creator>deyster94</dc:creator>
      <dc:date>2013-10-18T17:04:54Z</dc:date>
    </item>
  </channel>
</rss>

