cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1582
Views
0
Helpful
3
Replies

Integration ISE with samba4

MarcinS
Level 1
Level 1

Hi,
I am working in a request where the SAMBA4 is working as Active Directory. When im trying to authenticate the user by 802.1x i got an error:

5400 Authentication failed
24403 User authentication against Active Directory failed

Search for matching accounts at join point - AD.local
Single matching account found in domain - AD.local
Identity resolution detected single matching account
RPC Logon request failed - STATUS_CONNECTION_ABORTED,ERROR_RPC_NETLOGON_FAILED,test@AD.local
Communication with domain controller failed - samba4.AD.local,ERROR_RPC_NETLOGON_FAILED
RPC Logon request failed - STATUS_CONNECTION_ABORTED,ERROR_RPC_NETLOGON_FAILED,test@AD.local
Communication with domain controller failed - samba4.AD.local,ERROR_RPC_NETLOGON_FAILED
RPC Logon request failed - STATUS_CONNECTION_ABORTED,ERROR_RPC_NETLOGON_FAILED,test@AD.local
Communication with domain controller failed - samba4.AD.local,ERROR_RPC_NETLOGON_FAILED
Failover threshold has been exceeded
User authentication against Active Directory failed - AD

When im chosed the test option i external identity sources 
when i set Authentication Type as kerberos i got an success result

Test Username : test
ISE NODE : ise.ad.local
Scope : Default_Scope
Instance : ad
Authentication Result : SUCCESS

but when i leave the option MS-RPC i got an error
Error : Authentication Encountered An Error Due To Network, AD DNS Misconfiguration. This May Be A Temporary

I was tryed also add integration as ldap but when i choose the "test bind to server" i got an error:
Ldap bind ended with an error

 

Im working on ise 3.1

I would be greatfull for help do resolve this problem

 

 

3 Replies 3

marce1000
VIP
VIP

 

 - Check logs on the samba server too when this happens , 

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

pgiouvanellis
Level 1
Level 1

Did you manage to solve this issue  ?

We are facing a smilar issue with our ISE Deployment.

 

Thanks 

official not support i guess here - contact TAC.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help