01-28-2022 04:30 AM - edited 01-28-2022 04:36 AM
Hello,
I Would like to integrate my Cisco FTD (Version 6.6.4) with Active Directory (2019) using LDAPS over SSL. But we get this error (see attachment). Integration with pure LDAP works fine. But we need LDAPS over SSL.
How I can configure this? Are there any additional manipulations in Active Directory?
Thanks.
Solved! Go to Solution.
02-02-2022 10:31 PM - edited 02-02-2022 10:32 PM
Problem has been solved.
Just need to add LDAPs Root CA into Object/PKI/Cert Enrollment and then add this cert on FTD Devices/Certificates/Add.
01-28-2022 08:21 AM
- Check if this thread can be helpful : https://community.cisco.com/t5/network-security/firepower-1120-ldaps-not-working-but-ldap-is/td-p/4048083
M.
01-29-2022 07:08 AM
Did you configure the LDAPS FQDN or the IP? I would configure the FQDN and make sure it is included in the used certificate as a CN or a SAN.
01-29-2022 10:50 AM
I configured IP. I will try to change from IP to FQDN.
01-29-2022 11:09 AM
and please don't forget to create a DNS entry on your DNS server for that FQDN.
02-02-2022 10:31 PM - edited 02-02-2022 10:32 PM
Problem has been solved.
Just need to add LDAPs Root CA into Object/PKI/Cert Enrollment and then add this cert on FTD Devices/Certificates/Add.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide