<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic AD Sync not working properly in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ad-sync-not-working-properly/m-p/4811403#M1099377</link>
    <description>&lt;P&gt;I am having issues with a user based rule for an ACL. The rule should permit users to access certain URLs that are otherwise blocked. The rule does not currently permit users access as it should. This FMC was recently patched to Version 7.0.4 (Build 55), and was working before the patching. The device is a Firepower 1010 with FTD. There is a warning next to the rule stating "This rule contains a realm that has unresolved references. Please check realm &amp;gt; sync results to check what references were unresolved".&lt;/P&gt;
&lt;P&gt;I check the realm sync results, and I see that there is an error stating "this realm contains references to user or groups in another domain that have not been synchronized." I do see the users that should be permitted listed in the users. FMC seems to be synchronizing with AD regularly, as I looked in the logs and found the message "Apr 09 2023 01:01:09 firepower ActionQueueScrape.pl: [SFAUDIT] firepower.&amp;lt;somename&amp;gt;.com: System@localhost, Task Queue, Successful task completion : Download users/groups from &amp;lt;SomeDC&amp;gt;".&lt;/P&gt;
&lt;P&gt;What could be causing this? What else should I check?&lt;/P&gt;</description>
    <pubDate>Mon, 10 Apr 2023 19:08:32 GMT</pubDate>
    <dc:creator>zstamm</dc:creator>
    <dc:date>2023-04-10T19:08:32Z</dc:date>
    <item>
      <title>AD Sync not working properly</title>
      <link>https://community.cisco.com/t5/network-security/ad-sync-not-working-properly/m-p/4811403#M1099377</link>
      <description>&lt;P&gt;I am having issues with a user based rule for an ACL. The rule should permit users to access certain URLs that are otherwise blocked. The rule does not currently permit users access as it should. This FMC was recently patched to Version 7.0.4 (Build 55), and was working before the patching. The device is a Firepower 1010 with FTD. There is a warning next to the rule stating "This rule contains a realm that has unresolved references. Please check realm &amp;gt; sync results to check what references were unresolved".&lt;/P&gt;
&lt;P&gt;I check the realm sync results, and I see that there is an error stating "this realm contains references to user or groups in another domain that have not been synchronized." I do see the users that should be permitted listed in the users. FMC seems to be synchronizing with AD regularly, as I looked in the logs and found the message "Apr 09 2023 01:01:09 firepower ActionQueueScrape.pl: [SFAUDIT] firepower.&amp;lt;somename&amp;gt;.com: System@localhost, Task Queue, Successful task completion : Download users/groups from &amp;lt;SomeDC&amp;gt;".&lt;/P&gt;
&lt;P&gt;What could be causing this? What else should I check?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Apr 2023 19:08:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ad-sync-not-working-properly/m-p/4811403#M1099377</guid>
      <dc:creator>zstamm</dc:creator>
      <dc:date>2023-04-10T19:08:32Z</dc:date>
    </item>
    <item>
      <title>Re: AD Sync not working properly</title>
      <link>https://community.cisco.com/t5/network-security/ad-sync-not-working-properly/m-p/4811790#M1099392</link>
      <description>&lt;P&gt;Do you have a single domain or is there a trust / forest?&lt;/P&gt;
&lt;P&gt;You might have seen this already, but have a look at this link and see the cross-domain trust section which results in the same or similar error you are receiving.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/710/management-center-device-config-71/identity-realms.html#reference_9F6035406C884E24949A7EDAE8B868A9" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/710/management-center-device-config-71/identity-realms.html#reference_9F6035406C884E24949A7EDAE8B868A9&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Apr 2023 10:05:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ad-sync-not-working-properly/m-p/4811790#M1099392</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-04-11T10:05:49Z</dc:date>
    </item>
  </channel>
</rss>

