Guest

Preview Tool

Cisco Bug: CSCtb62208 - Improve ACS Active Directory TLS support

Last Modified

Mar 15, 2016

Products (1)

  • Cisco Secure Access Control Server for Windows

Known Affected Releases

4.2(0.1) 4.2(1.1)

Description (partial)

Symptom:
PEAP EAP-MSCHAP machine authentications and/or EAP-TLS user/machine authentication may all start to fail with an "External user not found" error, even when the user or machine account is known to exist.

The AUTH.log may show messages like the following:

 host/machine.domain.com is not a valid machine name
 host/machine.domain.com not found
 Could not find user host/machine.domain.com
Conditions:
The problem is triggered when connectivity between ACS software or the ACS remote agent and an LDAP server is interrupted.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.