Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

VPN Concentrator with ACS

Hi,

I'm trying to get ACS to force users into a particular group when they authenticate on a VPN Concentrator. I have set the Class IETF attribute 25 and set OU=<groupname>;

However when i try to authenticate the debugs on the VPN3K say 'OU=<groupname>; does not point to a filter!'. However i have filters applied on the groups the same as a configuration example?

Is there something i could be missing?

Thanks in advance for your help!

Andy

1 REPLY
joe Bronze
Bronze

Re: VPN Concentrator with ACS

Make sure you check the authentication servers for the group. under the group itself (one of the tabs) make sure you have the correct authentication server and are not inheriting it from the default group.

the next thing i would check is under the login

configuration, there is a section on "group delimiter" and stripping attributes, make sure nothing is being removed when they login.

-Joe

110
Views
0
Helpful
1
Replies
CreatePlease to create content