cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1816
Views
0
Helpful
4
Replies

NAC and SSO Doubts

Daniel Stefani
Level 1
Level 1

Hi,

I'm new here and am having a doubt.

I configured the NAC to do SSO with Microsoft AD. The user make login into the domain and the NAC Agent finds your credentials without problems.
When we make login on the local computer, the NAC agent requests credentials.
If I enter the credentials of the user's domain, occur a authentication error.
If I enter the credentials of the user created on CAM, the authentication pass with successful.

Is this normal or i'm makeing something wrong?

Tks
Daniel Stefani

4 Replies 4

Faisal Sehbai
Level 7
Level 7

Hello,

AD SSO only works with domain credentials, and not the local user credentials.

HTH,

Faisal

--

If you find this post helpful, please rate so others can find the answer easily

Hi Faisal,

Thanks for responding quickly,

But the situation is different from what you understand.

First I login with the local credentials in the station that is not in the domain.
Then comes a pop up of Nac Agent requesting credentials.
At the moment I enter the credentials of the domain and then the authentication error occurs.

I think that to work, I need to set the option to choose the Authentication Provider.

am I right?

Tks Again

Daniel Stefani

Daniel,

That's what I was explaining. If you have your agent set to do AD SSO, then you need to login to the Windows Domain, and not to your local computer. If you're logging in to your local computer and want to authenticate the agent to AD, you'll have to define a LDAP auth provider and enable that in your login pages.

HTH,

Faisal

--

If you find this post helpful, please rate so others can find the answer easily

Thanks again Faisal,

I'll do it.

Sincerely,
Daniel Stefani

Review Cisco Networking products for a $25 gift card