06-07-2017 07:37 PM - edited 03-11-2019 12:46 AM
Hi Team,
Right now the account we used to integrate in ACS to AD is super admin and they want to lower down the privilege account.
Below are the questions:
1. Minimun requirements of Joining AD to ACS
2. Exact delegate Account to Integrate
3. What are the effects if we will change the privilege? Will it disconnect the AD?
4. Lessen the privilege
06-07-2017 08:21 PM
The account requirements are as follows:
Source:
http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_system/5-8/ACS-ADIntegration/guide/Active_Directory_Integration_in_ACS_5-8.html#pgfId-411176
As long as the above permissions are retained, it should not harm the existing integration to change the account from a domain admin account to a lesser privileged one.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide