It appears that to authenticate a user connecting via remote vpn to AD is to use MS IAS (radius). I have enabled IAS on the DC, created the radius client (ASA 5510) and successfully tested a connection in the ASDM.
I have a few questions/issues though.
1. Currently, I can only get PAP to test connect from the ASA AAA server setup to the DC IAS radius server. How can I change it use an encrypted mode?
2. Cisco docs indicate that to get a security device like an ASA to communcate and authenticate vpn users from an AD radius or ldap server requires an .ldif file be created with ldap attribute mappings and then imported back to AD using ldifde. There are quite a few ldap attributes, what security appliance authorication attribute mappings are required for user authentication?
Hello i noticed that you were able to get your ASA to authenticate via radius with your active directory box. I was wondering what configuration you used. I am currently getting an error code 48 about a connection attempt not matching a remote access policy, on the domain controller. which i believe has something to do with our encryption. I am running AD 2000 on Server 2003 Is there anything special you had to do to get this to work? I have seen some posts about having to scale back the encryption when using 2003 so it will handle the PAP. Any help is appreciated.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :