<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC External Authentication in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701363#M1094152</link>
    <description>&lt;P&gt;How and what do I need to check regarding these 67 users? These users are created in such way as another 550...&lt;/P&gt;</description>
    <pubDate>Tue, 11 Oct 2022 15:14:14 GMT</pubDate>
    <dc:creator>Imm</dc:creator>
    <dc:date>2022-10-11T15:14:14Z</dc:date>
    <item>
      <title>FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701205#M1094140</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have Cisco FMC, version is 7.0.1&lt;/P&gt;&lt;P&gt;I would like to configure access to the FMC based on AD Groups, integration done thought LDAP. At this moment we have 2 AD groups:&lt;/P&gt;&lt;P&gt;First - Full Access (Grant-FMC-Admin), Second - Read Only Security Analyst (Grant-FMC-ReadOnly)&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can see configuration on the screenshot.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="IrakliGvishiani_1-1665485275475.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/164497i5BABAA7AB61EE236/image-size/medium?v=v2&amp;amp;px=400" role="button" title="IrakliGvishiani_1-1665485275475.png" alt="IrakliGvishiani_1-1665485275475.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="IrakliGvishiani_0-1665485172982.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/164496iCD8C90E084E4EB56/image-size/medium?v=v2&amp;amp;px=400" role="button" title="IrakliGvishiani_0-1665485172982.png" alt="IrakliGvishiani_0-1665485172982.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;There is test result:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="IrakliGvishiani_0-1665485705711.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/164498i9C95E7DC49595E6B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="IrakliGvishiani_0-1665485705711.png" alt="IrakliGvishiani_0-1665485705711.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;As I have discovered, some users can login, some no. What is the problem?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 11:13:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701205#M1094140</guid>
      <dc:creator>Imm</dc:creator>
      <dc:date>2022-10-11T11:13:52Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701248#M1094142</link>
      <description>&lt;P&gt;This looks for me more of AD side users need to verify they are in correct Group&lt;/P&gt;
&lt;P&gt;compare working vs not working so you see the different in user profiles in AD ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 11:47:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701248#M1094142</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-10-11T11:47:59Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701297#M1094146</link>
      <description>&lt;P&gt;The issue seems to be related to hitting the maximum limit of query size limit as stated on the error. I would try to use a more specific base DN instead of the root one, and also a base filter that would match all the queried users.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 13:08:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701297#M1094146</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2022-10-11T13:08:06Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701333#M1094149</link>
      <description>&lt;P&gt;For example, User1 can be member of&amp;nbsp;&lt;SPAN&gt;Grant-FMC-Admin\Grant-FMC-ReadOnly and this user will have correct assigned role. But User2&amp;nbsp;can be member of&amp;nbsp;Grant-FMC-Admin\Grant-FMC-ReadOnly and this user can't login at all.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 14:05:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701333#M1094149</guid>
      <dc:creator>Imm</dc:creator>
      <dc:date>2022-10-11T14:05:58Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701362#M1094151</link>
      <description>&lt;P&gt;I tried to be more specific, but situation is the same.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 15:12:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701362#M1094151</guid>
      <dc:creator>Imm</dc:creator>
      <dc:date>2022-10-11T15:12:01Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701363#M1094152</link>
      <description>&lt;P&gt;How and what do I need to check regarding these 67 users? These users are created in such way as another 550...&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 15:14:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701363#M1094152</guid>
      <dc:creator>Imm</dc:creator>
      <dc:date>2022-10-11T15:14:14Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701384#M1094153</link>
      <description>&lt;P&gt;I don't personally think the issue is related to the users' attributes, I think it is just the size limit that is getting hits. Did you also try the base filter?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 15:45:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701384#M1094153</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2022-10-11T15:45:05Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701920#M1094172</link>
      <description>&lt;P&gt;You was right, I done more specific Base DN and now works. Thanks.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Oct 2022 12:53:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701920#M1094172</guid>
      <dc:creator>Imm</dc:creator>
      <dc:date>2022-10-12T12:53:21Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701923#M1094173</link>
      <description>&lt;P&gt;Glad to hear this has been fixed now and you're welcome.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Oct 2022 12:57:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/4701923#M1094173</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2022-10-12T12:57:00Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/5126610#M1113385</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I was able to find the method for the limitation to a specific group, but the result is still an error with found 0 users.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Opening connection to LDAP server - serverip:389 - CN="firepower management",CN="Managed Service Accounts",dc=domain,dc=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Current TLS Require Cert: 0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;binding&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;bind success&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;The directory server is up serverip:389&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;LDAP Server Primary Available&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Search Filter Test...&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Opening connection to LDAP server - serverip:389 - CN="firepower management",CN="Managed Service Accounts",dc=domain,dc=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Current TLS Require Cert: 0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;binding&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;bind success&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;starting search...&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;base :DC=domain,DC=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;filter :(memberof=CN="Managed Service Accounts",dc=domain,dc=com)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;user :fmc-1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;attrib :sAMAccountName&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap_result: 0 -Success&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;found 0 entries...&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Jun 2024 14:35:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/5126610#M1113385</guid>
      <dc:creator>northsidecenter</dc:creator>
      <dc:date>2024-06-06T14:35:45Z</dc:date>
    </item>
    <item>
      <title>Re: FMC External Authentication</title>
      <link>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/5344103#M1123363</link>
      <description>&lt;P&gt;same thing on 7.6 FMC&lt;/P&gt;</description>
      <pubDate>Mon, 03 Nov 2025 14:34:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-external-authentication/m-p/5344103#M1123363</guid>
      <dc:creator>s_SiD_s</dc:creator>
      <dc:date>2025-11-03T14:34:06Z</dc:date>
    </item>
  </channel>
</rss>

