04-23-2013 03:37 AM - edited 03-11-2019 06:33 PM
Hi,
I wish to integrate to Microsoft Windows 2008 AD. Apparently i am having trouble achieving this due to the error below;
ECSIntFw01# test aaa-server authentication AD1 username fraxxx password$ xxxx
Server IP Address or name: 10.3.x.x
INFO: Attempting Authentication test to IP address <10.3.x.x> (timeout: 12 seconds)
ERROR: Authentication Server not responding: AAA Server has been removed
My aim is in setting up Identity Options that would either help to allow/restrict permission based on users and/or groups that exist in the Active Directory Domain.
Kindly assist.
Frank
05-02-2013 02:52 AM
Hi Frank,
Please let us know what is the protocol that is being used.
Is it the LDAP authentication or the Radius authentication used?
Please check if you have the reachability to the AAA server from the firewall.
If not then try to add the route for the AAA serevr.
If the AAA server is reachable from the ASA then try to take the capture from the ASA and simultaneous wiresahrk capture on the AD as well when trying to authenticate.
Hope this helps you.
Thanks
Raj
05-02-2013 07:19 AM
Seems like you're using protocol as LDAP.
Would you please provide the output of following:
show run aaa-server
show ip
Would you need to setup this restriction for CLI or GUI users.
Regards,
Jatin
Do rate helpful posts-
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide