Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > Cisco > Using Cisco ACS to authenticate against LDAP through SSL

Reply
Thread Tools

Using Cisco ACS to authenticate against LDAP through SSL

 
 
Silvio Arcangeli
Guest
Posts: n/a
 
      10-20-2003
Hi everybody,
I'm setting up an authentication system for an intranet, and I have some
problems configuring it, I hope someone can help me out.

We're using Cisco ACS Secure Server 3.2, and we want to perform the
authentications over our LDAP server (actually, it is a virtual LDAP, from
Radiant Logic, we have to deal with several data sources).

The LDAP server is running fine, I tested it with a Java client, and it
works both with SSL and with clear-text connections.

With the Cisco ACS I made it to perform clear-text authentications, but when
it comes to setting it up to use SSL it seems I can't find a way to have it
run...

ACS requires a copy of the LDAP server's cert7.db to connect to it through
SSL. Since my LDAP server is not Netscape, it doesn't provide any cert7.db
file. So I downloaded the NSS tools (a 2002 version, since the last ones are
generating cert8.db, and ACS won't accept it).
Using the tools created a db file, and stuffed my certificate into it
(giving it "TC" trust arguments for SSL authentications), but ACS is still
not working...
When I try to authenticate it fails, and the reports just say "External DB
reports error condition". I checked the logs of my LDAP server, and it seems
it correctly receives a bind (I can see "connect/disconnect" pairs on the
SSL port each time ACS tries to authenticate the user).

Does anybody have a clue on what could be the cause for this problem?
I really don't know what to do about it...

Silvio Arcangeli


 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Cannot login from ACS Admin -Cisco ACS 3.1 Sakirana Karabudak Cisco 5 12-16-2009 04:49 PM
Using Cisco ACS with LDAP wlampe@gmail.com Cisco 1 07-26-2005 04:07 AM
After ACS upgrade ppp stops authenticate. Bjoern Frantzen Cisco 1 04-29-2005 02:50 PM
831 Routers, VPN to 3030 Concentrator and authenticate with ACS ? RasnCain Cisco 0 02-28-2005 05:42 PM
Cisco Secure ACS and SSL LDAP Silvio Arcangeli Cisco 0 10-21-2003 05:04 PM



Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57