Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Help! LDAP on ACS 1120 appliance

Hi all,

I configured LDAP on acs 1120 appliance,but i don't know how to fill parameter on ldap configuration:

Subject ObjectClass

Subject Name Attribute

Certificate Attribute

Group ObjectClass

Group map attribute

Subject search base

Group search base

My domain name is hph.tct.vn

Mapping group on AD server is internetAccess

Help me, please

Thankss

2 REPLIES
New Member

Re: Help! LDAP on ACS 1120 appliance

Hi Pham,

If you are using Active Directory, I suggest you use the free tool LDP.EXE (Support Tools or Resource Kit) to find more information about your

schema..

Any way, try the following options:

Subject Search Base DC= hph, DC=tct, DC=vn

Group Search Base   DC= hph, DC=tct, DC=vn

Subject ObjectClass user

Subject Name Attribute sAMAccountName

Group Objectclass group

Group Map Attribute member

Group Objects Contain References to Subjects distinguished name

Obs. Is better to restrict the ACS where will look for subjects or groups, but you didn't in your message where the users/groups that will be used in ACS are....

My Best Regards,

Andre Lomonaco

New Member

Re: Help! LDAP on ACS 1120 appliance

Hi lomonaco,

The group that will be used in ACS is NguoiDungThue

The group that will be used in Active Directory server is InternetAccess
And i don't know how to mapping 2 groups

Thanks for your help,

Best Regards

1033
Views
0
Helpful
2
Replies
CreatePlease login to create content