I've set up EasyConnect (ISE 2.1.0.474) with my 2008 AD servers following the document posted on the community. I am seeing all working OK except I am not getting the group mapping. The connections are falling through the "Domain User" and Domain Admin" rules to the Limited Rule. In the live log I do see the username appended to the mac address in one entry and then a second entry for the user/ip mapping. The debug log looks the same as the posted document. In the debug I do not see any Group reference. How is the group mapped to the user with easyconnect? I believe my AD is working ok because external group mapping works when using an 802.1x client. How can I troubleshoot this to see why I am missing the user to group mapping?
Thanks