<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ACS v3.3 and CS user unknown in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433832#M428315</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think some required configuration must be missed out.For further configuration information look at the following url;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_configuration_guide09186a008046dc81.html#wp998632" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_configuration_guide09186a008046dc81.html#wp998632&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 26 Oct 2005 13:54:46 GMT</pubDate>
    <dc:creator>smalkeric</dc:creator>
    <dc:date>2005-10-26T13:54:46Z</dc:date>
    <item>
      <title>ACS v3.3 and CS user unknown</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433831#M428309</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got a server running ACS v3.3 talking to a SecurID ACE server. When I set a user up to use SecurID, ACS always reports "CS user unknown" - when the user is plainly in the database. If I change user back to use Internal auth - it works a treat. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If tried using the "Unknown user policy" to force all requests to SecurID - this works OK - but doesn't collect any attributes from the users account in ACS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;v3.1 seems to work fine - is there a bug with v3.3 ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Tim.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:20:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433831#M428309</guid>
      <dc:creator>tjenkin2</dc:creator>
      <dc:date>2019-03-10T21:20:56Z</dc:date>
    </item>
    <item>
      <title>Re: ACS v3.3 and CS user unknown</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433832#M428315</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think some required configuration must be missed out.For further configuration information look at the following url;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_configuration_guide09186a008046dc81.html#wp998632" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_configuration_guide09186a008046dc81.html#wp998632&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Oct 2005 13:54:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433832#M428315</guid>
      <dc:creator>smalkeric</dc:creator>
      <dc:date>2005-10-26T13:54:46Z</dc:date>
    </item>
    <item>
      <title>Re: ACS v3.3 and CS user unknown</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433833#M428319</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Interesting, did the external db config for RSA come from 3.1, ie you just installed 3.3 over 3.1? If so you could try deleting the securid config and re-creating. But I admit thats a long shot&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If things work when you enable the unknown user policy.... does it create totally new users in parallel to the ones already there?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To get "CS user unknown" it means ACS looked in its DB and didnt find a user with the same name. I would set logging to max (under system config) run the test again and then look in the CSAuth log file (under CSAuth/logs.auth.log) Look for "starting authentication for" type messages. That will give a good idea as to what is going on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Darran&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Nov 2005 11:06:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-v3-3-and-cs-user-unknown/m-p/433833#M428319</guid>
      <dc:creator>darpotter</dc:creator>
      <dc:date>2005-11-01T11:06:45Z</dc:date>
    </item>
  </channel>
</rss>

