Guest

Preview Tool

Cisco Bug: CSCzv54990 - Group Membership based Policy matching can fail if the same group is...

Last Modified

Nov 12, 2016

Products (1)

  • Cisco Web Security Appliance

Known Affected Releases

6.3.4-201 7.5.0-000

Description (partial)

Symptom:
If you have two access policies A and B (with A higher in order than B) and have the same AD group configured in both but with case-mismatching between the group names in the two policies. Users from the AD group will be matching policy B even though they should ideally be matching policy A since we are supposed to operate in top down fashion.

Conditions:
Group Membership based Policy matching can fail if the same group is spelled in different cases in multiple policies
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.