10-13-2022 11:40 PM
Hi team,
I have a quick question regarding the AD authentication and the way how ISE does authenticate users from AD. So far I see, it is based on AD groups. Is it a way to set up a policy/condition for a specific user in a group instead of allowing all the users of the specified group to authenticate?
Many thanks
Solved! Go to Solution.
10-14-2022 01:38 AM
@Nick Mavrou you authenticate to an identity store (AD/LDAP etc), you then have to authorise, which is generally an AD group or if required you can define a specific AD username. In the authorisation rule you can use the condition "Network Access Username EQUALS <username>"
10-14-2022 01:38 AM
@Nick Mavrou you authenticate to an identity store (AD/LDAP etc), you then have to authorise, which is generally an AD group or if required you can define a specific AD username. In the authorisation rule you can use the condition "Network Access Username EQUALS <username>"
10-14-2022 02:04 AM
@Rob Ingram Sweet thank you very much sir. Much appreciate!
NM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide