AD users not authenticate with wifi ssid
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-27-2012 12:04 PM - edited 07-03-2021 10:34 PM
Hi i have configured acs 5.3. i integrated wth active directory also it got suceeded in test connection.but when am trying to conncet ssid its not getting authenticate,
wat r the users i created on acs they can able to login on wifi ssid
Please help this
- Labels:
-
Wireless Security
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-27-2012 06:06 PM
Well first off, are you doing PEAP or EAP-TLS? Did you install a certificate ins ACS 5.3? How did you configure your SSID? How did you configure your plicy in ACS? What does the log show in ACS when the device tries to authenticate. Here is a support doc, but has the ACS using the local database for user authentication. You should try this first and then we can work on the AD side.
https://supportforums.cisco.com/docs/DOC-22475
Here is another guide:
http://www.cisco.com/en/US/products/ps10315/products_configuration_example09186a0080b4cdb9.shtml
*** Please rate helpful posts ***
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-27-2012 10:59 PM
Thanks for ur response
am doing PEAP ,i not installed certificate in acs 5.3.ssid i configured wpa+wpa 2.
For only new user am using local database authentication in acs 5.3 that users are able to authenticate.
only domain controller user not able to authenticate

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-28-2012 03:55 AM
What is the identity store for your users?
Follow the link that Scott provided. ignore the certificate part and see how AD groups are mapped and used in the policies. That word file is very useful for you. Follow it and if you find it useful rate the doc.
You want to say "Thank you"?
Don't. Just rate the useful answers,
that is more useful than "Thank you".
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-28-2012 03:21 AM
In order to do any type of EAP, you need to have a certificate installed in ACS. That is why the authentication is not working.
Sent from Cisco Technical Support iPhone App
*** Please rate helpful posts ***
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-28-2012 03:24 AM
Here is a self signed cert
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/user/guide/admin_config.html#wp1138745
Sent from Cisco Technical Support iPhone App
*** Please rate helpful posts ***
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-29-2012 09:28 AM
hi
now am able to authenticate with domain controller id,but which i created on acs user not able to authenticate,at that time in acs logs subject not found error is coming
please help this,
by
veeramani.g
