<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FMC Management Center - Admin Access - Active Directory - External Authentication - users found but &amp;quot;invalid because their format is not supported for this device&amp;quot; in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-management-center-admin-access-active-directory-external/m-p/3907328#M925385</link>
    <description>&lt;P&gt;I've followed this guide to setup our Active Directory as a source of external authentication for access to our Firepower Mangement Centre web GUI&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/user_accounts_for_management_access.pdf" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/user_accounts_for_management_access.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When testing I get the following result&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;User Test:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;"There were no users found with this filter.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;6 users were found with this filter but are invalid because their format is not supported for this appliance.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;See Test Output for details."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The results of the test show successful LDAP bind&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;user :&lt;BR /&gt;attrib :&lt;BR /&gt;ldap_result: 0 -Success&lt;BR /&gt;found 6 entries... &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;then shows 6 user entries which are the relevant users who are members of the 2 groups I wish to allow access to.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Below that list it then also shows :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-------------&lt;BR /&gt;search failed&lt;BR /&gt;Unsupported Users The following users (6) were found with this filter but are invalid because their format is not supported for this appliance:&lt;BR /&gt;---------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;and then lists an unbroken list of the same 6 users DN objects&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I cannot login as any of these users?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;What am I missing?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 17:23:36 GMT</pubDate>
    <dc:creator>PJR_CDF</dc:creator>
    <dc:date>2020-02-21T17:23:36Z</dc:date>
    <item>
      <title>FMC Management Center - Admin Access - Active Directory - External Authentication - users found but "invalid because their format is not supported for this device"</title>
      <link>https://community.cisco.com/t5/network-security/fmc-management-center-admin-access-active-directory-external/m-p/3907328#M925385</link>
      <description>&lt;P&gt;I've followed this guide to setup our Active Directory as a source of external authentication for access to our Firepower Mangement Centre web GUI&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/user_accounts_for_management_access.pdf" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/user_accounts_for_management_access.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When testing I get the following result&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;User Test:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;"There were no users found with this filter.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;6 users were found with this filter but are invalid because their format is not supported for this appliance.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;See Test Output for details."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The results of the test show successful LDAP bind&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;user :&lt;BR /&gt;attrib :&lt;BR /&gt;ldap_result: 0 -Success&lt;BR /&gt;found 6 entries... &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;then shows 6 user entries which are the relevant users who are members of the 2 groups I wish to allow access to.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Below that list it then also shows :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-------------&lt;BR /&gt;search failed&lt;BR /&gt;Unsupported Users The following users (6) were found with this filter but are invalid because their format is not supported for this appliance:&lt;BR /&gt;---------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;and then lists an unbroken list of the same 6 users DN objects&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I cannot login as any of these users?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;What am I missing?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:23:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-management-center-admin-access-active-directory-external/m-p/3907328#M925385</guid>
      <dc:creator>PJR_CDF</dc:creator>
      <dc:date>2020-02-21T17:23:36Z</dc:date>
    </item>
    <item>
      <title>Re: FMC Management Center - Admin Access - Active Directory - External Authentication - users found but "invalid because their format is not supported for this device"</title>
      <link>https://community.cisco.com/t5/network-security/fmc-management-center-admin-access-active-directory-external/m-p/3907330#M925386</link>
      <description>This is now resolved - I needed to add the "sAMAccountName" value to the UI Access Attribute Mapping Section</description>
      <pubDate>Tue, 13 Aug 2019 08:34:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-management-center-admin-access-active-directory-external/m-p/3907330#M925386</guid>
      <dc:creator>PJR_CDF</dc:creator>
      <dc:date>2019-08-13T08:34:49Z</dc:date>
    </item>
  </channel>
</rss>

