08-19-2015 03:57 AM - edited 03-10-2019 10:59 PM
Hello,
i'd like to set up a VPN authentication against Microsoft LDAP Directory.
The user should enters his email address which is stored in the MSFT LDAP attribute mail. How can i configure ISE to look in the attribute mail to find a user instead of the username?
thanks in advanced
Alex
Solved! Go to Solution.
08-19-2015 08:50 AM
You can use the "custom" schema setting in ISE under the external identity/LDAP and change the Subject attribute to "mail" instead of "samAccountName", which is the normal attribute ISE uses for searching for users in the LDAP structure. Then you can chech if it works, by going to the Attributes menu and search for an email address that you know should be there.
08-19-2015 08:50 AM
You can use the "custom" schema setting in ISE under the external identity/LDAP and change the Subject attribute to "mail" instead of "samAccountName", which is the normal attribute ISE uses for searching for users in the LDAP structure. Then you can chech if it works, by going to the Attributes menu and search for an email address that you know should be there.
08-19-2015 09:04 AM
Hi Jan, thanks a lot.
alex
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide