cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
73
Views
0
Helpful
0
Replies

ACI with LDAP

comunica@IM
Level 1
Level 1

Hi,

we're having issues with AAA in ACI. We configured LDAP authentication using these references:

https://www.cisco.com/c/en/us/support/docs/cloud-systems-management/application-policy-infrastructure-controller-apic/221812-configure-aci-ldap-authentication.html
https://unofficialaciguide.com/2019/07/31/configuring-ldap-authentication-with-cisco-apic-controller/

Although the user validated their credentials, the admin role were not set.

Analyzing the connection, it seems that APIC did not send the correct request to the OpenLDAP server. We didn't see the user's group definied in "LDAP Group Map Rules" section being sent in the request from APIC to OpenLDAP. We also don't see any queries regarding the memberOf attribute.

Our ACI version is 5.3.

Is there a document, link, or webpage with information?
Are there any commands we can use to debug or troubleshoot?
Any other suggestions?

Thanks,

0 Replies 0

Review Cisco Networking for a $25 gift card

Save 25% on Day-2 Operations Add-On License