cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
916
Views
0
Helpful
1
Replies

Firepower mapping users to IPs

enelson11
Level 1
Level 1

I've seen this done and think I have done a good amount of the leg work, but I'm trying to figure out the details of setting up the identity policies to attach usernames to IPs within firepower. I have the AD agent install on the AD server, but I'm missing something as the usernames are not attaching to the IPs within firepower. Will I have to make use of the captive portal and if so, will they have to login each time they use the network?

1 Reply 1

Anthony Parker
Level 1
Level 1

You need to configure realms also.
Once you have done that, you need to configure an identity policy that maps networks to a realm then add that identity policy to your access policy.

That is passive authentication.

Using a captive portal is active authentication and isn't a requirement.  You can definite active vs passive in your identity policy.

Review Cisco Networking for a $25 gift card