enabling an access control list based on ldap users
I would like to ask you something:
I have a cisco asa firewall with 8.4 version and i want to create an access control list to enable the internet only to users from a group from the ldap server.
When i try to configure the access control list i write the source address, the destination address, but when i click on the "Users" field it saids that i have to configure the active directory server and agent. I configured the AD Server, i can communicate with the ldap server but in AD Agent it asks me for a secret key, which i don't know what to type.
When i wrote a random secret key it accept the rule and it read the group name from the ldap, but the acl it doesn't work. It permits the internet traffic for the whole source subnet and not for the specific users (which must come from the ldap) within the source subnet.
Does anyone has an clue on how to configure the AD Agent and the acl rule?
QuestionHello , somebody know if it´s possible to remove the device registration status from the MyDevices portal for the spanish page?By default the status is dispalyed (registered/Pending), this condition was fixed in the english page after load a...
Dears, Please note that I have ASA 5515 running version 9.4.(4)20 and managed through FDM. In addition, I have FMC version 126.96.36.199 for the IPS. I need to upgrade the only the ASA to the latest supported version that work with the FMC version 6.0...
To participate in this event, please use the button to ask your questions
This topic is a chance to clarify your questions about Cisco Threat Response, from its components and new features to ...
Community Live Slides- How to optimize your Cisco Security investments with Threat Response
(Live event - formerly known as Webcast- Tuesday February 18, 2020 at 10 am Pacific/ 1 pm Eastern / 7 pm Paris)
This event had place on Tuesday 18th, Februa...
Two main issues I am facing as part of ISE guest access POC lab.On any device on first attempt connections works smooth. However, if I disconnect and reconnect the SSID, its repeatedly giving "Couldn't get an IP address" or "No internet connection" on con...