Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

LDAP group lookup does not work well from ACS

Dear Friends,

We are planning for a solution that requires ACS to do an LDAP query into the LDAP database.

The lookup is basically for user groups in LDAP. We also have a local ACS group configured with the same name. When we try to do a Database group mapping, it fails. The user is logging into the network via dial-up. His user should be in that specific ACS group but he is being put in Default Group. So, my problem is that database group mapping is not working.

We have ensured that the group is in the same case sensitive format as the LDAP

group.

Any suggestions please

Thanks and Regards

Gautam

1 REPLY
New Member

Re: LDAP group lookup does not work well from ACS

Let me share with you the LDAP configuration.

User Directory Subtree:

cn=users,dc=x,dc=y,dc=edu

Group Directory Subtree:

cn=groups,dc=x,dc=y,dc=edu

User Object Type: uid

User Object Class: Person

Group Object Type: cn

Group Object Class: posixGroup

Group Attribute Name: memberUID

We are using LDAP v3 and its working.

Thanks and Regards

Gautam

179
Views
0
Helpful
1
Replies