08-25-2005 01:16 AM - edited 03-10-2019 02:17 PM
I am testing 802.1x with dynamic vlan assignment on an ACS 3.3.3 for windows with a cat 3750.
When a new users logs into the machine, ACS is able to poll the AD for the users credentials, however the users gets placed int the default group, rather than the group mappings associated with Active Directory.
The error messages in CSAuth.log i see are the following
AUTH 08/24/2005 23:25:25 E 0365 1000 External DB [NTAuthenDLL.dll]: NetUserGetLocalGroups failed with result [5]
AUTH 08/24/2005 23:25:25 E 0365 1000 External DB [NTAuthenDLL.dll]: nt_GetUsersNTGroups failed
I Can manually move the users to the proper groups, however, why are they not being moved to their proper groups? Anyone else seen the problem/error messages above?
08-31-2005 05:52 AM
Can you check if it is mapped to an enabled group. Also try mapping to a new group.
07-11-2006 06:14 AM
Hi,
Did you ever get to the bottom of this issue. I have the same issue with ACS 3.3.3 for windows. I have not seen this issue on any other ACS Win / Appliance installs.
Thanks in advance
Allan
07-11-2006 06:42 AM
Managed to fix the problem by getting the ACS services to start with an account with Domain Admin privileges.
Allan
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide