Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Users might experience few discrepancies in Search results. We are working on this on our side. We apologize for the inconvenience it may have caused.
New Member

Group NT authenticated users

Hi,

When the vpn users are authenticated with NT accounts, they will be put into the default group by default.

Is there a way to change the default behavior?

Thanks,

Wei

3 REPLIES
Cisco Employee

Re: Group NT authenticated users

Are you talkng about the VPN3000 default group, or the ACS server default group?

If the VPN3000, they'll be put into whatever group they have configured in the VPN client.

If the ACS, the you can set up Database Group mappings under the External User Database section and map users into a specific ACS group dependent on what Windows NT groups they're members of.

New Member

Re: Group NT authenticated users

It is about VPN3000 default group. The VPN Client is Microsoft VPN client.

The Client is also authenticated with certificate. I can see during the group authenticate (using "ou"), the client is put into correct group. But for the user authentication, it changes to use the default group again.

Regards,

Wei

New Member

Re: Group NT authenticated users

Hi!

From what I know the Windows VPN client does not support Cisco groups which is why all users connecting thru it will end up in the VPN3000 Base Group.

Regards

211
Views
0
Helpful
3
Replies
CreatePlease to create content