I have the following setup on our ASA 5516-x ========================================== aaa-server remote_ldap (inside) host 10.x.x.x timeout 30 server-port 50002 ldap-base-dn dc=xxxxx, dc=local ldap-scope subtree ldap-naming-attribute sAMAccountName...