11-04-2015 02:50 AM - edited 03-12-2019 05:48 AM
Hello all
in my company we have ASA 5545 with firepower module on
we made integration between the AD and the firesight. also we have clearpass and we integrate the AD with the AD to force raduice to all users from domain
the case now any user login from a device joined the domain events recorded everything by the username, but if come from other device not joined
the domain but go throw the radius and the radius authenticate from AD , why i dont see his name , i only get his IP
where is the problem in my case
should i look more at clearpass config , or it related to AD or to the firesight ?
help ASAP
11-04-2015 10:15 AM
Hi,
I dont think it will be Firesight , but to confirm you can first check the AD event logs and search for that username ,check if you see the LOGON event corresponding to it. If yes then you can check the User agent logs and check the same. If User agent polls the username then User agent will foward the same thing to the Firesight Manager.
Regards,
Aastha Bhardwaj
Rate if that helps!!!
11-07-2015 01:17 AM
after checking the log file i found
Checking x.x.x.x for user momo @x Failed. Does admin have permission to see all processes on x.x.x.x
this log for non domain labtop, but auth by the clearpass radius
- logoff memo@x (x.x.x.x)
Checking x.x.x.x for user memo@x. Found
this log for joined domain device
so now is the problem related to the user i use to auth with the domain on asa
or it related to the domain it self that it cant resolve the non domain devices
it can resolve the joined domain perfect , so
is someone face this problem before ?
11-09-2015 02:02 PM
Hi,
I would recommend you to open up a case with Cisco TAC because we would need to check a few things before jumping on some conclusion.
Regards,
Aastha Bhardwaj
Rate if that helps!!!
11-10-2015 05:42 AM
i will check and update here
03-24-2017 02:51 PM
hi,
did you solve this?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide