07-29-2013 11:41 AM - edited 03-10-2019 08:42 PM
I have two ACS boxes that I use here at work. The primary is working fine, but lately the secondary stopped to working. I checked it today and it is saying that the AD connectivity status is DISCONNECTED. I tested the connection and it is succesful. I checked the time settings and name servers as well and they all seem to be good. Anyone have any idea where else I should look to find the issue? They are using version 5.3.0.40
Thanks.
07-29-2013 02:00 PM
If you have already checked the basic stuff then we can jump to adclient debugs to see whats happening.
From the ACS CLI
--------------------------
acs/admin# acs-config
Escape character is CNTL/D.
Username: GUI-USERNAME
Password: GUI-PASSWORD
acs/admin(config-acs)#
acs/admin(config-acs)# debug-adclient enable
Duplicate the issue and run the below listed command to see the live logs
show acs-logs filename ACSADAgent.log
~BR
Jatin Katyal
**Do rate helpful posts**
07-29-2013 02:13 PM
Hi Bryan Roth
Try to update the two ACS 5.3.0.40.4 or higher version by installing a patch. There is a bug fixed in this version you indicated which resolves operating problems with Active Directory.
To rule out problems like a bug would be a good advice.
Regards
07-29-2013 10:09 PM
Much like the two previous posts, if you are looking for help in troubleshooting AD connectivity and ACS, here is a guide that i wrote up that may be assistance.
https://supportforums.cisco.com/docs/DOC-26787
Tarik Admani
*Please rate helpful posts*
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: