cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1468
Views
20
Helpful
2
Replies

AD: cannnot login using the user existed in the other AD

naoki_Japan
Spotlight
Spotlight

I configured two-way trusted relationship between windows Active Directly A and B.

B has computer information and A has user and password information.

Test PC belongs to B domain, and I tried logging into the PC using the user information registered in A domain controller.

However, the user cannot be found.

 

In the contrary,  on ISE, I can retrieve the attribute of the user in A AD from B AD, which I assume means the two-way trusted relationship can be configured correctly.

 

 

Then, why can not the test PC in B domain login using the user information in A AD?

1 Accepted Solution

Accepted Solutions

Hi @naoki_Japan ,

 please 1st take a look at Policy > Policy Sets > select your policy > at Authentication Policy check the Use:

AuthC Policy.png

 2nd at Administration > Identity Management > Identity Source Sequences > select your identity and double check the configuration.

 3rd at Administration > Identity Management > External Identity Sources > Active Directory > select your AD > Advanced Settings tab > check the Identity Resolution configuration:

Identity Resolution.png

  4th at Whitelisted Domains tab double check the Authenticate column.

 

Hope this helps !!!

View solution in original post

2 Replies 2

Hi @naoki_Japan ,

 please 1st take a look at Policy > Policy Sets > select your policy > at Authentication Policy check the Use:

AuthC Policy.png

 2nd at Administration > Identity Management > Identity Source Sequences > select your identity and double check the configuration.

 3rd at Administration > Identity Management > External Identity Sources > Active Directory > select your AD > Advanced Settings tab > check the Identity Resolution configuration:

Identity Resolution.png

  4th at Whitelisted Domains tab double check the Authenticate column.

 

Hope this helps !!!

I had made a mistake at 4th and miss-configured the white list. thanks !