QUESTION POSED ON: 07 February 2008
I have a lab set up with a Win2003 server domain called dot1xdom.com, a user called dot1xuser1 as a member of a group called dot1xusers. Cisco documentation for ACS is extremely unclear in demonstrating how to define the values required in the Generic LDAP schema section.
I have searched for two months and found that others have had similar issues. I cannot work out with any confidence the required values for the following: User Directory Subtree, Group Directory Subtree, User Object Type, User Object Class, Group Object Type, Group Object Class, Group Attribute Name. I have succeeded in getting the switch access experiment running with IAS RADIUS but NOT with Cisco ACS. Can you help me?
|