cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
212
Views
1
Helpful
1
Replies

Duo duplication user error

Vishal6
Level 1
Level 1

Hi All,

I have integrated two AD server of different forest where same user resides. However i'm facing an issue of Authentication with message 'found multiple user matches'. 

As per below article if same user resides in different forest then it cause an override of user and authentication will be failed. Can i resolve this issue using username alias, username normalisation or any other way.

https://community.cisco.com/t5/managing-users/user-identities-with-ad-sync-and-multiple-domains/td-p/4880178

1 Reply 1

DuoKristina
Cisco Employee
Cisco Employee

There is nothing you can do in Duo itself to resolve this. The solution is to make sure whatever attribute you're using to find a user i.e. samaccountname or email is unique across forests so that when Duo SSO or the Duo Authentication Proxy performs the ldapsearch  for the user using the attribute value which identifies the user it only receives one result.

Duo, not DUO.
Quick Links