10-31-2011 11:00 AM - edited 03-10-2019 06:31 PM
Hello All - I am currently useing ACS 5.2 and have no problem using Tacacs+ with AD access.
But with Radius it seems I can only get the Local identity store to work, does anyone know if you need to do something special to get Radius to work with active directory with Cisco ACS?
Solved! Go to Solution.
11-02-2011 07:40 AM
Hello Bobby,
would you please include screen shot for:
1) access policies ->> default device admin ->> group mapping
2) access policies ->> default network adming->> group mapping
Kind regards
Talal
10-31-2011 12:35 PM
Just to note, I keep getting
Failure Reason :
11-02-2011 06:54 AM
Any help here?
11-02-2011 07:03 AM
Hello Bobby,
can you please attach screen shots of following configuration:
users and identity stores ->> active directory.
both TABs , genearal and direcotry groups.
Kind regards
Talal
11-02-2011 07:21 AM
It is working for Tacacs+ but not Radius
11-02-2011 07:29 AM
the Directory Groups has two groups, one for R/W and one for R/O.
11-02-2011 07:40 AM
Hello Bobby,
would you please include screen shot for:
1) access policies ->> default device admin ->> group mapping
2) access policies ->> default network adming->> group mapping
Kind regards
Talal
11-02-2011 08:50 AM
Ah, i looked there and noticed that the Default Network Admin was setup for Internal only, i moved it over to use the active directory, but now i'm getting
15015 Could not find ID Store
11-03-2011 12:33 AM
perfect ;o)
11-18-2011 08:39 AM
Bobby, I ran into the same issue with the "15015 Could not find ID Store" issue. It turned out to be an issue with communication between the ACS and AD. It looked like AD was connected successfully, but until I rebooted ACS, I kept getting the same error. It was like it couldn't see the AD security groups even though it could scan the AD tree successfully.
So, try rebooting ACS if you haven't already and see if that resolves the error.
11-18-2011 02:34 PM
Tim - I was able to get it to work after I setup the correct authentication in the ACS and tell it what shell to run.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide