cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1846
Views
5
Helpful
3
Replies

Cisco ise 3.0 can join Active directory but Tried to test user it fail

Hi All

I try to test user and password from ISE to AD but it show authentication result fail

but I can join Cisco ISE and AD and i can see all group user on AD from Cisco

Cisco ISE and AD can communicate with name can ping with name work and NTP is correct 

try to Diag  it all work correct

3 Replies 3

on ISE I see Message about User not found on AD but I recheck on AD it have user and can use with another device like ACS can use this user for authen but On cisco ISE  i can't find this user from cisco ise

A couple of things I would check are:

a) Check the status of the domain controllers in Administration > External Identity Sources > Active Directory.

b) Check that all the required domains are set with YES under the Allowed Domains tab.

c) Enable the invalid usernames disclosure under Administration > System >L Security Settings, this will help you to see the actual username on the authentication failure log.