04-01-2009 02:20 PM - last edited on 03-25-2019 05:25 PM by ciscomoderator
Hello,
I want to know if Cisco has solved the problem (MD5) between ACS and Active Directory?? because I want to configure 802.1x in a switch and it will integrate with Active Directory (Data Base)
The Solution is:
Switch <--> ACS (Authentication)<--> AD (Data Base)
Also i want to know if exist any solution no NAC Appliance that can use 802.1x integrate with AD in switch infraestructure??
Best Regards
04-01-2009 02:41 PM
MD5 between ACS and AD ? If you want to use AD then you need to use MSCHAP since MD5 is not supported by AD.
Here is the compatibility chart,
http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs32/user02/o.htm#wp623530
Regards,
~JG
Do rate helpful posts
04-01-2009 02:52 PM
then ... this work?? if is yes, please could you send me a example??
Best regards
04-02-2009 05:22 AM
NAC appliance does not use 802.1x. They are independent of each other. I've never personally configured both for the same site so I wouldn't know what to expect if you did.
04-09-2009 05:59 AM
I have hit the same challenge, where I need to authenticate the users against AD and I don't want to use the local CiscoSecure Database in ACS. For hundreds of users, there is no way I'm going to manage a database in ACS for user access. I have to manage the users in AD. I opened a case with Cisco and MS-CHAP is not supported by Cisco ACS, as I was provided this URL link:
Additionally, I was directed to the URL: http://www.ciscotaccc.com/kaidara-advisor/security/showcase?case=K24308566
I'm so stuck...there has to be way to use IEEE 802.1x with an external database such as LDAP.
04-15-2009 04:04 AM
from what I am reading, it looks like you would set up the ACS as the radius server to authenticate to Active Directory. In this instance you still manage the users with Active Directory.
thanks,
Alex Pfeil
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: