08-27-2013 09:54 AM - edited 03-10-2019 08:49 PM
CISCO ACS 5.3
Using external data identity store: AD
Hi all,
Is there a way to lock down the authentication to one AD group only ?
In access policies authorization can be restricted to a group only but I cannot find a way to do it with authentication. For example,anyone in AD can try to ssh or telnet to a network a have access to non-privilege/level 1 . I want to restrict it to the "CISCO admins" group that I already created
Any help is appreciated
John
Solved! Go to Solution.
08-27-2013 09:58 AM
Hi JOhn,
Its not possible in Identity,You can only restrict the access in the AUthorization, By choosing the external groups:AD attribute from customize:
Best Regards:
Minakshi (Do rate the helpful posts )
08-27-2013 09:58 AM
Hi JOhn,
Its not possible in Identity,You can only restrict the access in the AUthorization, By choosing the external groups:AD attribute from customize:
Best Regards:
Minakshi (Do rate the helpful posts )
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide