<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Great answer, thanks! One in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635409#M74307</link>
    <description>&lt;P&gt;Great answer, thanks! One quick question from a rookie; where on the ACS do I create the subnet and edit the site as described in step 3?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Step 3:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;After you have allowed enough time for replication, Disjoin &amp;amp; Rejoin ACS to the Domain. This step will rejoin ACS to the appropriate Domain Controller&lt;/P&gt;&lt;P&gt;Create a subnet: 192.168.1.0/24&lt;/P&gt;&lt;P&gt;Edit the CLT0 Site &amp;amp; Add the Subnet: 192.168.1.0/24&lt;/P&gt;</description>
    <pubDate>Thu, 26 Feb 2015 13:51:15 GMT</pubDate>
    <dc:creator>bvj197222</dc:creator>
    <dc:date>2015-02-26T13:51:15Z</dc:date>
    <item>
      <title>ACS HOW TO USE ADINFO</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635406#M74299</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I need to see which domain Controllers that the ACS is communicating With. I tried;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;XXXACS02/admin# acs troubleshoot adinfo --server&lt;BR /&gt;This command is only for advanced troubleshooting and may incur a lot of network traffic&lt;/P&gt;&lt;P&gt;Do you want to continue?&amp;nbsp; (yes/no) yes&lt;BR /&gt;server1.domain.no&lt;/P&gt;&lt;P&gt;The server1.domain.no is a server located at another location, so I don't think this is the primary server the ACS is talking to. Any other commands that would give the output?&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 05:29:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635406#M74299</guid>
      <dc:creator>bvj197222</dc:creator>
      <dc:date>2019-03-11T05:29:43Z</dc:date>
    </item>
    <item>
      <title>The server location would not</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635407#M74300</link>
      <description>&lt;P&gt;The server location would not matter if default AD and ACS AD&amp;nbsp;configurations are used. Unless something has changed,&amp;nbsp;ACS uses DNS to resolve all of the available domain controllers. You can use the following command to list all of the DCs that ACS is querying:&lt;/P&gt;

&lt;PRE&gt;
acs troubleshoot adinfo --test  
&lt;/PRE&gt;

&lt;P&gt;Then you can use this command to see which one ACS is currently connected to:&lt;/P&gt;

&lt;PRE&gt;
admin# acs troubleshoot adinfo -a&lt;/PRE&gt;

&lt;P&gt;This command will also give you the output of the "Preferred Site." You can use this field in your AD environment to control which DCs ACS is using. For more info check this link:&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blog.priveonlabs.com/sec_blog.php?title=acs-v5-should-be-able-to-query-only-desired-domain-controllers-active-directory-dns-workaround&amp;amp;more=1&amp;amp;c=1&amp;amp;tb=1&amp;amp;pb=1"&gt;http://blog.priveonlabs.com/sec_blog.php?title=acs-v5-should-be-able-to-query-only-desired-domain-controllers-active-directory-dns-workaround&amp;amp;more=1&amp;amp;c=1&amp;amp;tb=1&amp;amp;pb=1&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;That link also contains a reference to an ACS defect (&lt;SPAN style="color: rgb(0, 0, 0); font-family: Arial, Helvetica, sans-serif; font-size: 13.4399995803833px; line-height: normal;"&gt;&lt;A href="https://tools.cisco.com/bugsearch/bug/CSCte92062"&gt;CSCte92062&lt;/A&gt;) that provides some ACS related confgs that you can use to restrict which DCs ACS is using.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;I hope this helps!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Feb 2015 06:23:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635407#M74300</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2015-02-26T06:23:03Z</dc:date>
    </item>
    <item>
      <title>To retrieve the AD join</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635408#M74304</link>
      <description>&lt;P&gt;To retrieve the AD join settings and status, use the &lt;B class="cKeyword"&gt; acs troubleshoot adinfo &lt;/B&gt; command in EXEC mode. This command can also be used to retrieve detailed information regarding the domain, users, and domain controllers.&lt;/P&gt;&lt;P class="pCE_CmdE"&gt;&lt;A name="pgfId-1149029"&gt;&lt;/A&gt;acs troubleshoot &lt;SPAN class="cCp_CmdPlain"&gt; adinfo &lt;/SPAN&gt; &lt;EM class="cCi_CmdItalic"&gt; parameter&lt;/EM&gt;&lt;/P&gt;&lt;P class="pCE_CmdE"&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_system/5-5/command/reference/cli/cli_app_a.html#pgfId-1149027"&gt;&lt;EM class="cCi_CmdItalic"&gt;http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_system/5-5/command/reference/cli/cli_app_a.html#pgfId-1149027&lt;/EM&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Feb 2015 08:56:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635408#M74304</guid>
      <dc:creator>mohanak</dc:creator>
      <dc:date>2015-02-26T08:56:35Z</dc:date>
    </item>
    <item>
      <title>Great answer, thanks! One</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635409#M74307</link>
      <description>&lt;P&gt;Great answer, thanks! One quick question from a rookie; where on the ACS do I create the subnet and edit the site as described in step 3?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Step 3:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;After you have allowed enough time for replication, Disjoin &amp;amp; Rejoin ACS to the Domain. This step will rejoin ACS to the appropriate Domain Controller&lt;/P&gt;&lt;P&gt;Create a subnet: 192.168.1.0/24&lt;/P&gt;&lt;P&gt;Edit the CLT0 Site &amp;amp; Add the Subnet: 192.168.1.0/24&lt;/P&gt;</description>
      <pubDate>Thu, 26 Feb 2015 13:51:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635409#M74307</guid>
      <dc:creator>bvj197222</dc:creator>
      <dc:date>2015-02-26T13:51:15Z</dc:date>
    </item>
    <item>
      <title>I believe these are all</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635410#M74308</link>
      <description>&lt;P&gt;I believe these are all changes/settings that you have to make on your domain controller.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM style="font-size: 14.3999996185303px; background-color: rgb(249, 249, 249);"&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Feb 2015 22:53:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-how-to-use-adinfo/m-p/2635410#M74308</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2015-02-26T22:53:39Z</dc:date>
    </item>
  </channel>
</rss>

