06-27-2018 09:44 PM - edited 02-21-2020 07:55 AM
Hi.
I have virtual FTD 6.2.3 and I can't to deploy RA VPN - "Login error". In trubelshoting section of VPN in Firepower MC i have this message:
AAA Marking LDAP server 172.20.10.100 in aaa-server group 172.20.10.100 as ACTIVE
AAA Marking LDAP server 172.20.10.100 in aaa-server group 172.20.10.100 as failed
Realm is configured. Test connection by AD IP and 389 port - "Test connection succeeded"
Test AD Join - "Test AD join failed", but groups and users are available and i can dowload them.
Realms reconfiguration does not help, NTP is configured.
Was Do anybody have same issue?
06-27-2018 11:04 PM
You need to have Service account in AD to join this device(FTD) in to AD Domain group.
Once you join this FTD to AD, in AD you should also see this is registered there in the AD Server.
Also good to look at Windows side in EVENT Viewer what is wrong ?
Below document explains more detailed :
BB
06-18-2019 10:04 PM
Thank you fof help. It was a problem with VM Windows AD server. in VM Windows server was up 2 interfaces and wrong route.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide