Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

Cisco WSA S170 AsynOS 7.5.2 LDAP group query debug

Dear support forum members,

     I have some problems with the Cisco WSA S170 (AsynOS 7.5.2). It looks like a bug. I have two users in my Active Directory(AD), both of them are members of the InternetGrp6 AD group, both of them are in the same organization unit in the AD tree, but WSA could not identify that one of them member of the InternetGrp6.

     I understand that WSA do this over the LDAP query to AD controller, but I could not found the way how do I debug LDAP query. This will give me ability to find out what happened during the user group LDAP query.

 

Thanks in advance!

Best regards,

Alexander.

P.S. Sorry for my English.

  • Web Security
2 REPLIES
Bronze

HI, While troubleshooting

Hi,

 

You can run the command "testauthconfig" from the CLI and check for any errors.

For further testing you might have to go to TAC.

 

Regards,

Kush

Hi,First of all I would like

Hi,

First of all I would like to thank you for assistance!

It is a pity, but I received  "Unknown command: ldapsearch" in the SSH CLI session.


AsyncOS 7.5.2 for Web build 304 installed.

 

Best regards,

Alexander.

86
Views
0
Helpful
2
Replies