cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
526
Views
0
Helpful
1
Replies

ACS 5.0 + AD+ ASA

riteshmalpani
Level 1
Level 1

Hi Guys,

I am trying to setup authentication of VPN users using RADIUS.I have ACS version 5.0.0.21

In first step I configured VPN using local database of users. Got that to work find.
Later, I configured RADIUS server and run
test aaa-server authentication ..... Got successful authentication message on ASA.

Now I am trying to combine the two and have no luck.I did debug on ASA and found that my AAA server is Down. I doubt about the ASA and ACS integration or there is some operability issue. I have checked all my configuration.

Please help.

ASA configuration:

group-policy testacs internal
group-policy testacs attributes
dns-server value x.x.x.x
vpn-tunnel-protocol IPSec webvpn
default-domain value abc.in

tunnel-group testacs type remote-access
tunnel-group testacs general-attributes
address-pool testacs-acs-pool
authentication-server-group NEWACS5.1 LOCAL
default-group-policy testacs
password-management
tunnel-group testacs ipsec-attributes
pre-shared-key *

aaa-server NEWACS5.1 protocol radius
aaa-server NEWACS5.1 (IT_Server_ZONE) host u.u.u.u

key Rain!@#b0w

Regards

Ritesh

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

Hi Ritesh,

It seems to be matching bugID: CSCsy17858, the bug also affects remote access "Tunnel-Client-Endpoint".

Please update the ACS with the latest patch. Can be downloaded from here:

http://www.cisco.com/cgi-bin/tablebuild.pl/acs5_patches

Hope that helps.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: