<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Another LDAP Authentication Failure in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208836#M160493</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;could you please attach the output of show run aaa-server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, it would be worth to see at server &amp;gt; event viewer logs about the reject reason.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt; &lt;BR /&gt;- Do rate helpful posts -&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 02 May 2013 15:19:59 GMT</pubDate>
    <dc:creator>Jatin Katyal</dc:creator>
    <dc:date>2013-05-02T15:19:59Z</dc:date>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208835#M160488</link>
      <description>&lt;P&gt;I am attempting to setup LDAP authentication for my ASA, along with the AD Agent.&amp;nbsp; Currently my authentication is failing with the following output from debug...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[-2147483610] Session Start&lt;/P&gt;&lt;P&gt;[-2147483610] New request Session, context 0xcc854d8c, reqType = Authentication&lt;/P&gt;&lt;P&gt;[-2147483610] Fiber started&lt;/P&gt;&lt;P&gt;[-2147483610] Creating LDAP context with uri=ldap://10.11.1.15:389&lt;/P&gt;&lt;P&gt;[-2147483610] Connect to LDAP server: &lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cisco.com/" target="_blank"&gt;ldap://10.11.1.15:389&lt;/A&gt;&lt;/P&gt;&lt;P&gt;, status = Successful&lt;/P&gt;&lt;P&gt;[-2147483610] supportedLDAPVersion: value = 3&lt;/P&gt;&lt;P&gt;[-2147483610] supportedLDAPVersion: value = 2&lt;/P&gt;&lt;P&gt;[-2147483610] Binding as Sargent\&lt;/P&gt;&lt;P&gt;[-2147483610] Performing Simple authentication for Sargent\ to 10.11.1.15&lt;/P&gt;&lt;P&gt;[-2147483610] LDAP Search:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Base DN = [DC=city,DC=charlottesville,DC=org]&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Filter&amp;nbsp; = [sAMAccount=sargentm]&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Scope&amp;nbsp;&amp;nbsp; = [SUBTREE]&lt;/P&gt;&lt;P&gt;[-2147483610] Search result parsing returned failure status&lt;/P&gt;&lt;P&gt;[-2147483610] Fiber exit Tx=308 bytes Rx=677 bytes, status=-1&lt;/P&gt;&lt;P&gt;[-2147483610] Session End&lt;/P&gt;&lt;P&gt;ERROR: Authentication Rejected: Unspecified&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can however perform successful queries to AD etc. using the following commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show user-identity ad-users city.charlottesville.org filter sargentm&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ideas?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 03:23:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208835#M160488</guid>
      <dc:creator>noc-cville</dc:creator>
      <dc:date>2019-03-11T03:23:11Z</dc:date>
    </item>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208836#M160493</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;could you please attach the output of show run aaa-server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, it would be worth to see at server &amp;gt; event viewer logs about the reject reason.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt; &lt;BR /&gt;- Do rate helpful posts -&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 May 2013 15:19:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208836#M160493</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-05-02T15:19:59Z</dc:date>
    </item>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208837#M160497</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;aaa-server CityDC protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server CityDC (outside) host citydc01.city.charlottesville.org&lt;/P&gt;&lt;P&gt; server-port 389&lt;/P&gt;&lt;P&gt; ldap-base-dn DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; ldap-group-base-dn DC=city,DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; ldap-scope subtree&lt;/P&gt;&lt;P&gt; ldap-naming-attribute sAMAccount&lt;/P&gt;&lt;P&gt; ldap-login-password *****&lt;/P&gt;&lt;P&gt; ldap-login-dn CN=Administrator,CN=Users,DC=city,DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; server-type microsoft&lt;/P&gt;&lt;P&gt;aaa-server CityDC (outside) host citydc1.city.charlottesville.org&lt;/P&gt;&lt;P&gt; server-port 389&lt;/P&gt;&lt;P&gt; ldap-base-dn DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; ldap-group-base-dn DC=city,DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; ldap-scope subtree&lt;/P&gt;&lt;P&gt; ldap-naming-attribute sAMAccount&lt;/P&gt;&lt;P&gt; ldap-login-password *****&lt;/P&gt;&lt;P&gt; ldap-login-dn CN=Administrator,CN=Users,DC=city,DC=charlottesville,DC=org&lt;/P&gt;&lt;P&gt; server-type microsoft&lt;/P&gt;&lt;P&gt;aaa-server CityAgent protocol radius&lt;/P&gt;&lt;P&gt; ad-agent-mode&lt;/P&gt;&lt;P&gt;aaa-server CityAgent (outside) host 10.11.1.203&lt;/P&gt;&lt;P&gt; key *****&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 May 2013 15:54:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208837#M160497</guid>
      <dc:creator>noc-cville</dc:creator>
      <dc:date>2013-05-02T15:54:20Z</dc:date>
    </item>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208838#M160501</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Replace the below listed command inside the server parameters:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ldap-naming-attribute sAMAccount&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ldap-naming-attribute sAMAccountName&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note: the sAMAccountName is incorrectly configured.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt;- Do rate helpful posts -&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 May 2013 16:00:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208838#M160501</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-05-02T16:00:32Z</dc:date>
    </item>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208839#M160507</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; THanks...I figured it was something simple I was overlooking.&amp;nbsp; That was the problem.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 May 2013 17:07:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208839#M160507</guid>
      <dc:creator>noc-cville</dc:creator>
      <dc:date>2013-05-02T17:07:42Z</dc:date>
    </item>
    <item>
      <title>Another LDAP Authentication Failure</title>
      <link>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208840#M160510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It's LDAP so it's expected &lt;SPAN __jive_emoticon_name="wink" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/wink.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt; &lt;BR /&gt;- Do rate helpful posts -&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 May 2013 17:51:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/another-ldap-authentication-failure/m-p/2208840#M160510</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-05-02T17:51:05Z</dc:date>
    </item>
  </channel>
</rss>

