cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
955
Views
0
Helpful
2
Replies

ACS 5.2 integration with AD windows 2000 advanced SP4

jverdesca
Level 1
Level 1

Hi!,

I'm having a issue when configuring Cisco ACS 5.2 appliance 1121 to integrate windows 2000 Active Directory as an External Users Database.

I'm using an account with administrator privileges on AD (can create computer objects).

The ACS register itself successfully to the domain but it doesn't retrieve the AD Groups, even when i change the seach base and filter.

At this link says that ACS supports AD over Windows 2003, 2008 and 2008R2 but it doesnt say that not supports Windows 2000.

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/device_support/sdt52.html#wp71115

If someone can confirm if AD 2000 isn't supported or have the solution i'll apreciate your help

1 Accepted Solution

Accepted Solutions

Tarik Admani
VIP Alumni
VIP Alumni

This is not supported, when ACS attempts to join the domain it needs to know which version the domain controller is at along with the functional level of the domain. Please reference the following guide on how to troubleshoot this issue for you reference and maybe you can try to get this to work on your own, however you will be entitled for support based on the information you provided.

https://supportforums.cisco.com/docs/DOC-26787

Tarik Admani
*Please rate helpful posts*

View solution in original post

2 Replies 2

Tarik Admani
VIP Alumni
VIP Alumni

This is not supported, when ACS attempts to join the domain it needs to know which version the domain controller is at along with the functional level of the domain. Please reference the following guide on how to troubleshoot this issue for you reference and maybe you can try to get this to work on your own, however you will be entitled for support based on the information you provided.

https://supportforums.cisco.com/docs/DOC-26787

Tarik Admani
*Please rate helpful posts*

Hi Tarik,

Thanks for your help!!

It works, but i had to add the AD groups manually on the ACS, i mean ex. domain.com/groups/users. and Click ADD on the Directory Groups Window.

Hope it helps someone else!