<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CiscoSecure ACS v4.2 - block users with number of unsuccessful auth retries in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ciscosecure-acs-v4-2-block-users-with-number-of-unsuccessful/m-p/2153313#M133849</link>
    <description>&lt;P&gt;Hi experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I recently took over support of our old Cisco ACS 4.2. I don't really know too much about it. What I know is that the ACS is used as a Radius server doing wireless 802.1x authentication. It is using Windows AD as the backend user database. Now there is situation that AD bans user account because of incorrect password. It could be because that user's AD password changed but the old password is cached on their iphone which triggered the lock of their accounts. Now they ask me if I can lock it on Radius/ACS instead of on AD. That way their account will still function on the wired PCs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to find the setting. Is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 03:05:18 GMT</pubDate>
    <dc:creator>Difan Zhao</dc:creator>
    <dc:date>2019-03-11T03:05:18Z</dc:date>
    <item>
      <title>CiscoSecure ACS v4.2 - block users with number of unsuccessful auth retries</title>
      <link>https://community.cisco.com/t5/network-access-control/ciscosecure-acs-v4-2-block-users-with-number-of-unsuccessful/m-p/2153313#M133849</link>
      <description>&lt;P&gt;Hi experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I recently took over support of our old Cisco ACS 4.2. I don't really know too much about it. What I know is that the ACS is used as a Radius server doing wireless 802.1x authentication. It is using Windows AD as the backend user database. Now there is situation that AD bans user account because of incorrect password. It could be because that user's AD password changed but the old password is cached on their iphone which triggered the lock of their accounts. Now they ask me if I can lock it on Radius/ACS instead of on AD. That way their account will still function on the wired PCs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to find the setting. Is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 03:05:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ciscosecure-acs-v4-2-block-users-with-number-of-unsuccessful/m-p/2153313#M133849</guid>
      <dc:creator>Difan Zhao</dc:creator>
      <dc:date>2019-03-11T03:05:18Z</dc:date>
    </item>
    <item>
      <title>CiscoSecure ACS v4.2 - block users with number of unsuccessful a</title>
      <link>https://community.cisco.com/t5/network-access-control/ciscosecure-acs-v4-2-block-users-with-number-of-unsuccessful/m-p/2153314#M133870</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am still looking for an answer... Is it possible? I am ok if it is not but I need confirmation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Feb 2013 04:23:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ciscosecure-acs-v4-2-block-users-with-number-of-unsuccessful/m-p/2153314#M133870</guid>
      <dc:creator>Difan Zhao</dc:creator>
      <dc:date>2013-02-18T04:23:51Z</dc:date>
    </item>
  </channel>
</rss>

