08-01-2011 05:21 PM - edited 07-03-2021 08:30 PM
We need to allow a certain AD group to authenticate to WCS as a lobby ambassador. I have an ACS 5.x, but there is very little documentation between WCS 7.0.116 and ACS 5.x. Any links or suggestions?
Sent from Cisco Technical Support iPhone App
08-13-2011 12:25 PM
I wrote this just for you ;-)
08-14-2011 04:57 PM
Nice work Nick! 5+
08-14-2011 07:05 PM
Hey Nick,
Thanks for the doc, I configured most of these settings last week, but I haven't had a chance to test yet because I am in the middle of a (500) 3502 deployment. I did see that you added the virtual domain in the shell, which I did not have. I should have time to test on Monday. Thanks again.
Sent from Cisco Technical Support iPhone App
08-14-2011 11:38 PM
it's mandatory, even if you don't use virtual domains, you have to put "root" then.
Cheers.
Nicolas
08-15-2011 02:29 PM
Hey Nicolas,
Getting closer, but I am receiving an error when logging into WCS. I ahve attached the error and the ACS config. Thanks again.
08-22-2011 02:10 AM
This looks impossible.
I've already seen such behaviors when the ACS says "runtime process not running" which is an issue which happens sometimes. When this happens, you can configure the ACS as you like but the authentication process keeps using the same config version and does not use all your changes. So a small reboot of the ACS to make sure you're not running into that problem can help.
Otherwise a sniffer trace on WCS/NCS to see if the attribute is really arriving there or not.
Nicolas
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: