cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
529
Views
0
Helpful
1
Replies

ACS 5.0 + AD+ ASA

riteshmalpani
Level 1
Level 1

Hi Guys,

I am trying to setup authentication of VPN users using RADIUS.I have ACS version 5.0.0.21

In first step I configured VPN using local database of users. Got that to work find.
Later, I configured RADIUS server and run
test aaa-server authentication ..... Got successful authentication message on ASA.

Now I am trying to combine the two and have no luck.I did debug on ASA and found that my AAA server is Down. I doubt about the ASA and ACS integration or there is some operability issue. I have checked all my configuration.

Please help.

ASA configuration:

group-policy testacs internal
group-policy testacs attributes
dns-server value x.x.x.x
vpn-tunnel-protocol IPSec webvpn
default-domain value abc.in

tunnel-group testacs type remote-access
tunnel-group testacs general-attributes
address-pool testacs-acs-pool
authentication-server-group NEWACS5.1 LOCAL
default-group-policy testacs
password-management
tunnel-group testacs ipsec-attributes
pre-shared-key *

aaa-server NEWACS5.1 protocol radius
aaa-server NEWACS5.1 (IT_Server_ZONE) host u.u.u.u

key Rain!@#b0w

Regards

Ritesh

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

Hi Ritesh,

It seems to be matching bugID: CSCsy17858, the bug also affects remote access "Tunnel-Client-Endpoint".

Please update the ACS with the latest patch. Can be downloaded from here:

http://www.cisco.com/cgi-bin/tablebuild.pl/acs5_patches

Hope that helps.