cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Announcements
Choose one of the topics below to view our ISE Resources to help you on your journey with ISE

This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

653
Views
0
Helpful
1
Replies
Highlighted
Cisco Employee

ACS 5 integration with Active Directory and Kerberos FAST

Is there a new way to do kerberos with MS AD that breaks ACS? Seems like a customer enabled Kerberos FAST and broke the link to their ACS servers. Any insight into this issue?

Thanks

Tim

Everyone's tags (3)
1 ACCEPTED SOLUTION

Accepted Solutions
Highlighted
Cisco Employee

Re: ACS 5 integration with Active Directory and Kerberos FAST

ACS 5.8.x? TAC SR?

Since it's new in Windows 2012, I do not think it supported yet.

The things that are better left unspoken | New features in Active Directory Domain Services in Windows Server 2012, Part 11: Kerberos Armoring (FAST), says,

Flexible Authentication Secure Tunneling can be required  ... clients need to be running Windows 8.

View solution in original post

1 REPLY 1
Highlighted
Cisco Employee

Re: ACS 5 integration with Active Directory and Kerberos FAST

ACS 5.8.x? TAC SR?

Since it's new in Windows 2012, I do not think it supported yet.

The things that are better left unspoken | New features in Active Directory Domain Services in Windows Server 2012, Part 11: Kerberos Armoring (FAST), says,

Flexible Authentication Secure Tunneling can be required  ... clients need to be running Windows 8.

View solution in original post