cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
504
Views
0
Helpful
2
Replies

ACS with AD Query

tyagi.v
Level 1
Level 1

hi,

While Integrating ACS with Windows AD,why it is required to make the Account with name Cisco ??

Please check the attachment.

2 Replies 2

Collin Clark
VIP Alumni
VIP Alumni

A COMPUTER account with the name Cisco is required, not a USER account. If you read the doc again, it states that the AAA protocol can not get the actual workstation name, so it uses a dummy computer account of Cisco. That satifies AD and AAA can pass/fail the authentication.

HTH and don't forget to rate!

jasjsingh
Level 1
Level 1

To satisfy Windows requirements for authentication requests, Cisco Secure

ACS must specify the Windows workstation that the user is attempting to log into.

Because Cisco Secure ACS cannot determine this information from authentication requests sent by AAA clients, it uses a generic workstation name for all Requests. The workstation name used is "CISCO".

In the local domain and in each trusted domain and child domain that Cisco Secure ACS will use to authenticate users, ensure both of the following:

"A computer account named "CISCO" exists.