cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
293
Views
0
Helpful
1
Replies

LDAP group lookup does not work well from ACS

gautamzone
Level 1
Level 1

Dear Friends,

We are planning for a solution that requires ACS to do an LDAP query into the LDAP database.

The lookup is basically for user groups in LDAP. We also have a local ACS group configured with the same name. When we try to do a Database group mapping, it fails. The user is logging into the network via dial-up. His user should be in that specific ACS group but he is being put in Default Group. So, my problem is that database group mapping is not working.

We have ensured that the group is in the same case sensitive format as the LDAP

group.

Any suggestions please

Thanks and Regards

Gautam

1 Reply 1

gautamzone
Level 1
Level 1

Let me share with you the LDAP configuration.

User Directory Subtree:

cn=users,dc=x,dc=y,dc=edu

Group Directory Subtree:

cn=groups,dc=x,dc=y,dc=edu

User Object Type: uid

User Object Class: Person

Group Object Type: cn

Group Object Class: posixGroup

Group Attribute Name: memberUID

We are using LDAP v3 and its working.

Thanks and Regards

Gautam

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card