<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD AD Realm in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919137#M938652</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;, thanks for the feedback.&lt;/P&gt;&lt;P&gt;Do you have any documents for that one? That's the only privilege that I need to set in my service account? Does it include also lookup for the OU and Users?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Wed, 04 Sep 2019 19:01:58 GMT</pubDate>
    <dc:creator>fatalXerror</dc:creator>
    <dc:date>2019-09-04T19:01:58Z</dc:date>
    <item>
      <title>FTD AD Realm</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919082#M938648</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I checked the documentation but I cannot see what I am looking for.&lt;/P&gt;&lt;P&gt;This is about the integration of the FTD to the AD using the Realm, I would like to know what should be the AD service account privileges for the integration to work?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:27:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919082#M938648</guid>
      <dc:creator>fatalXerror</dc:creator>
      <dc:date>2020-02-21T17:27:27Z</dc:date>
    </item>
    <item>
      <title>Re: FTD AD Realm</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919096#M938650</link>
      <description>&lt;P&gt;The account must be&amp;nbsp;any Active Directory user with appropriate rights to create a Domain Computer account in the Active Directory domain.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2019 17:55:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919096#M938650</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-09-04T17:55:34Z</dc:date>
    </item>
    <item>
      <title>Re: FTD AD Realm</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919137#M938652</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;, thanks for the feedback.&lt;/P&gt;&lt;P&gt;Do you have any documents for that one? That's the only privilege that I need to set in my service account? Does it include also lookup for the OU and Users?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2019 19:01:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919137#M938652</guid>
      <dc:creator>fatalXerror</dc:creator>
      <dc:date>2019-09-04T19:01:58Z</dc:date>
    </item>
    <item>
      <title>Re: FTD AD Realm</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919149#M938655</link>
      <description>&lt;P&gt;Here's the reference:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/create_and_manage_realms.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/create_and_manage_realms.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;As far as I know and have seen it does include those features you mentioned.&lt;/P&gt;
&lt;P&gt;I note that those joining privileges are only if you need to use Kerberos for captive portals. Further down in the reference it mentions:&lt;/P&gt;
&lt;P&gt;"The distinguished username and password for a user with appropriate access to the user information you want to retrieve.&lt;/P&gt;
&lt;P class="p"&gt;Note the following:&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI class="li"&gt;
&lt;P class="p"&gt;For Microsoft Active Directory, the user does not need elevated privileges. You can specify any user in the domain.&lt;SPAN style="font-family: inherit;"&gt;"&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Wed, 04 Sep 2019 19:25:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ad-realm/m-p/3919149#M938655</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-09-04T19:25:23Z</dc:date>
    </item>
  </channel>
</rss>

