Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Effective permissions for LDAP user that is a member of multiple groups?

We use AD and LDAP group maps to authenticate to UCS, and I'm trying to understand the effective permissions when a user is a member of multiple LDAP groups, each with different UCSM permissions.

I expected that UCS would grant access based on the union of the effective permissions specified in UCS, but instead it appears to use the permissions of just one of the groups, and it's unclear whether the selection is random or deterministic. If this is expected behaviour, is there a way to affect the selection process?

Cheers,

Paul

102
Views
0
Helpful
0
Replies