Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

Issues on NAC AD SSO

Hi,

During my Demo of the NAC solution I'm having a hard time with NAC's AD SSO. I have already added the AD on the server and the status is "STARTED" but when i logged on to the machine it doesn't perform SSO. I have checked that the CAS is not listening to PORT 8910 although I have allowed the required TCP and UDP ports. What could be the problem with this?

Regards,

Vanessa Joy Zamora

6 REPLIES

Re: Issues on NAC AD SSO

Hi Guys,

In addition I'm using NAC 4.7.2 for the test machine I'm using Winows 7 OS.

Re: Issues on NAC AD SSO

Vanessa,

CAS should be listening on 8910. If it's not then somethings not right.

Please post your CAS logs here for review. Also what sort of AD are you authenticating against? (2k3/2k8/2k)?    

Faisal

Re: Issues on NAC AD SSO

Hi,

Here's the CAS logs.

Re: Issues on NAC AD SSO

Vanessa,

You didn't answer what your AD is. Also what version of CCA are you running? Windows 7 required 4.7.x of CCA.

HTH,

Faisal

Re: Issues on NAC AD SSO

Hi Faisal,

The AD that we are using is Windows Server 2003 and the NAC version is 4.7.2.

Thanks

Vanessa

Re: Issues on NAC AD SSO

Vanessa,

Okay. How did you run the ktpass command on your AD for the user that you're using for the CAS AD SSO setup?

Do you have the output saved from that ktpass run? Also can you verify what version of ktpass did you use?

Faisal

646
Views
0
Helpful
6
Replies