cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
1104
Views
0
Helpful
3
Replies

ACS5.1 getting disconnected from AD

Hi

     I managed to connect acs5.1 to the AD , user's will be able to get  authenticated against the AD when the state is shown "CONNECTED'.

     This will work ok for a day or so and goes into a 'DISCONNECTED' state , users will no more be able to authenticate .

     Is this a known error , or is this an error from the microsoft ws2k3 server side ?

  regards

iyer

3 Replies 3

Santosh Shetty
Level 1
Level 1

Check the error message you are getting, if it some clokc skew error, Check NTP status on ACS.

Kush Srivastava
Level 1
Level 1

Hi,

Please login to the ACS through the CLI, and make sure that the time, timezone and the DNS server is configured correctly. We need to make sure that the time and the timezone on the ACS is the same as on the AD servers.

You can use the CLI configuration guide at

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.1/command/reference/cli_app_a.html

Regards,

Kush

There are come fixes included in patches for  ACS 5.1 that could be relevant. It is impossible to tell since there are no ADagent logs included

In particular following CDETS could be relevant that was included in patch 5.

CSCtk08342: ACS becomes disconnected from Active Directory

Latest patch for 5.1 is 5.1.0.44.6 and can be downloaded from CCO