12-10-2004 12:42 AM - edited 03-10-2019 01:55 PM
Hi,
Recently we introduced ACS 3.2 appliance to provide redudancy and backup to the existing ACS 3.2 Server (Win2K Server) for wireless access authentication.
The ACS server will forward the authentication request from wireless clients to the Active Directory (co-exist in the same server). Authentication is based on Cisco PEAP+digicert. The server is part of the Domain.
However, the new ACS appliance doesn't seems to work properly despite successfully replicating the configuration, user DB and installing digicert.
Is this due to the requirement for the ACS appliance to join the Domain which is similar to the existing server? So far, the only option available is to install/generate digicert under "System Configuration -> ACS Certificate Setup".
Has anyone experienced this before?
Thanks
Amrih
12-17-2004 06:52 AM
I am not sure if this is possible. From what I know, to any group we can apply just one server.
12-23-2004 09:17 AM
In order for the ACS appliance to perform AD authentication, you must install a small program on a member server for the appliance to pass auth info to. ACS uses the AD API that is peresent on every member server to contact AD. That API is not available on the appliance because it is not a full server. So to due AD auth, it must proxy that request to a full server. Check the docs, it will point you to the program you need.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide