cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
378
Views
0
Helpful
3
Replies

LDAP integration with Active Directory for Remote Access

Mohammed Yusuf
Level 1
Level 1

Hi Guys,

 

I managed to configure Active directory for VPN users. I could only map OU on base DN and subtree for authentication but I could not map the VPN security group I created for it.

Is there anything I missed or does it only allow OU not security group? 

3 Replies 3

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

I think this would answer your query:-

http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/91831-mappingsvctovpn.html

Thanks and Regards,

Vibhor Amrodia

It does not answer my question. Thanks :)

Hi Yusuf,

No Problem.

To match the Security groups on the AD , you have to create a DAP policy for it.

In that , you have to use the "ldap.memberOf" attribute to map the security group.

http://www.cisco.com/c/en/us/td/docs/security/asa/asa84/asdm64/configuration_guide/asdm_64_config/vpn_asdm_dap.html

Thanks and Regards,

Vibhor Amrodia

Review Cisco Networking for a $25 gift card