cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
504
Views
0
Helpful
1
Replies

ACS with AD

Ibrahim Jamil
Level 6
Level 6

Hi

1)in ACS 4.2 with Agent connected to AD over LDAP , in reports/Failed Authentication / in username colunne some of useraccount Appears Like host/PC-.domain.local,why it shows us this putput not the exact username

2)How to check if the ACS and AD works fine

thanks

1 Reply 1

Bastien Migette
Cisco Employee
Cisco Employee

Hello Ibrahim,


Windows computer tries to authenticate using both machine and user credentials (these settings can be changed in the advanced parameters of your authentication tab on the network adapter setting on your machine).

the attempt with host/ just indicate that the computer tried to authenticate using its machine credentials.

to test if AD and ACS works fine, you can use this command on a switch that is configured to auth through AD via ACS:

switch#test aaa group radius USERNAME PASSWORD legacy

It should return a sucess.

Hope this help,

Bastien.