cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
292
Views
0
Helpful
1
Replies

VPN 3015/ACS/ACTIVE DIRECTORY

ciscoacs
Level 1
Level 1

to overcome the issue of vpn concentrators not being able to work with cisco secure acs internal database and password expiry i am now trying to have the concentrator request the acs to use active directory. i have tried many different configurations but do not seem to be able to get this to work. has anyone got it to work yet?

this is how i have configured the box:

1. vpn concentrator uses internal database which uses radius with expiry

2. this group is linked to a radius/acs authentication server

3. my username and password is configured to use windows database and i have linked this is the external database section.

my error is unknown domain.

just wondered if anyone had any ideas?

thanks

sam

1 Reply 1

jsivulka
Level 5
Level 5

See if these two configuration examples help you:

1) Configuring the Cisco VPN 3000 Series Concentrators to Support the NT Password Expiration Feature Using the RADIUS Server

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2284/products_configuration_example09186a00800946b9.shtml

2)VPN 3000 RADIUS with Expiry Feature Using Microsoft Internet Authentication Server

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2284/products_configuration_example09186a00800c3917.shtml