cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
718
Views
0
Helpful
1
Replies

Cisco ACS 1121 integration with AD

jimanda6419
Level 1
Level 1

Has anyone successfully integrated the Cisco ACS 1121 with 5.1 and AD and been able to use multiple policies to permit or deny access to different NDG?  I am able to authenticate agains AD but I am having an issue with getting the policies to use the user memberOf attribute to set access levels.  Any ideas would be helpful.  

1 Reply 1

jrabinow
Level 7
Level 7

memberOf attribute is a multi value attribute; ie can contain multiple values. Polciy operations on multi valued attribute are not supported in ACS 5 except for group membership. Should check is similar conditions can be acheived using operations on the groups the user is a member of