Re: ACS and AD issue

From: Martin Schumacher <martin1.schumacher_at_gmail.com>
Date: Mon, 28 Oct 2013 08:18:58 +0100

Hi,

sorry for the delay but I am preparing for my next lab exam at the moment.

Look under Access Policies -> Service Selection Policies -> at the bottom
is a policy called "default".
If you did not change it initially it should state permit access.
Change that to "deny access" and it will block the access.
Or you could also create a more specific rule above that and also block
access but it is easier to change the default rule.

Let me know if this works for you.

Greetings

Martin

2013/10/25 Gaurav Thukral <pearlgaurav_at_gmail.com>

> Hi Martin
>
> I am unable to do that. Could you please guide me on this.
>
> Regards
> Gaurav
>
> Sent from my iPhone ignore my typos
>
>
> On 25-Oct-2013, at 5:11 PM, Martin Schumacher <
> martin1.schumacher_at_gmail.com> wrote:
>
> Hi,
>
> change we default rule from permit to deny.
>
> Greetings
>
> Martin
>
>
> 2013/10/25 Gaurav Thukral <pearlgaurav_at_gmail.com>
>
>> Hi All
>>
>> I am facing a weird issue.
>>
>> ACS is authenticated with AD.ACS Server is fetching the below mentioned
>> containers from the AD.
>>
>> *ABC.com/Enterprise/Groups/Network *
>>
>> So only users which belong to this container should be able to login to
>> devices via ssh but the issue is normal AD user(not part of this
>> container)
>> is also able to ssh to the devices and able to reach user mode.
>>
>> Let me know if anyone encountered the same problem in the past.
>>
>> Regards
>> Thanks & Regards,
>> Gaurav Thukral
>>
>>
>> Blogs and organic groups at http://www.ccie.net
>>
>> _______________________________________________________________________
>> Subscription information may be found at:
>> http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Mon Oct 28 2013 - 08:18:58 ART

This archive was generated by hypermail 2.2.0 : Fri Nov 01 2013 - 07:35:39 ART