I've built a test unhardened DC and the authentication works ok, so it must be a hardening policy from the cis benchmark. Did you harden you DC's.
Cheers
Daniel
The authentication is being rejected by Active Directory, I think it may have something to do with the AD being hardened to CIS benchmark. I believe ACS uses NTLM so it maybe a security setting in the local security policy on the DC.
I haven't used ACS before but the setup seems fairly straight...
The error from the ACS is
acsxp/server Warning Server 0 Authentication for user jbloggs failed for reason = 0
acsxp/server Error Protocol request from 192.0.0.1: User jbloggs rejected by RemoteServer: AD (Invalid Password)
The radius config is
aaa new-model
aaa authentication login AAA group...
Hi,
I've installed a Cisco Secure ACS Express as a radius server for all of my switches/routers so that I can use Active Directory as user database.
I've configured the switches/routers and Cisco Secure ACS Express but when I try and authenicate I recieve a failure.
I've checked the logs on...
Theres a "dialer-list 1 protocol ip permit" in the above configuration is this what you meant?
I think that I could possibly be an issue with the natting as when the ISDN interface comes up I can ping the internet from the router but not from the PC's on the LAN?????
Thanks Daniel
Hi All,
I currently have a cisco 1800 configured with a serial interface, i've configured a isdn backup. When I shut down the serial interface the isdn dials up connects and I can ping from the router but not out from PC's on the LAN.
Below is my configuration, i'd be grateful for any help...
Hi,
I'm trying to follow MS best practices by installing a Standalone Root CA on a workgroup server then an Enterprise Subordinate CA on a member server.
I've installed both CA servers and issued a certificate from the Root CA to the Enterprise Subordinate CA, but the Enterprise Subordinate CA...
I'm running Backup Exec 12d and i'm trying to backup an ISA 2006 server
I've tried the following but can't get it to work.
1. Media Server must be configured to use Dynamic Port Range from 10000 - 10025
2. Create Ports and Protocol using ISA Protocol tab in right pane. ISA Server must be...
I'm trying to PAT rdp traffic from an external IP to an internal IP but its not working. The client VPN works fine.
Please help, thanks inadvance for any responses.
PIX Version 7.2(3)
!
hostname PIX
domain-name pix.org
enable password twM2DBp5KWm3aWPK encrypted
names
!
interface Ethernet0...
I recently installed some agents manually in a DMZ and i followed http://support.microsoft.com/kb/904866
Everything is fine other than i get the following warnings every minute
Event ID 26027 Microsoft Operations Manager
The MOM Server is configured to use Mutual Authentication, but the MOM...
Hi we've recently started recieving the following error on the front end exchange server.
Event Type: Error
Event Source: Microsoft Operations Manager
Event Category: None
Event ID: 9121
Date: 15/11/2007
Time: 10:54:00
User: NT AUTHORITY\SYSTEM
Computer: LILONEXC02
Description:
An error...
Hi I'm running a Cisco 877W router IOS C870-AdvsecurityK9-m version 12.4
I need to install a SSL VPN Gateway which has both an internal and external interfaces.
This router only supports 1 Vlan
How do i present an external port to the Cisco 877W router's 4 port switch??
Thanks inadvance
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.