Set up ACS 3.3 to authenticate users agains an AD database.(EAP-TLS)
I want to allow access by users who are authenticated by a Windows domain user database only when they have dial-in permission in their Windows account.
I select the Yes, refer to "Grant dialin permission to user" setting check box and checked the dialin permission in user properties of the AD.
With an IAS for Radius everything works fine, but when i stop the IAS and start the ACS, i can´t authenticate.
Failure : "Windows dialin permission required"
Does anyone have any idea what the problem is?