Cisco Cisco ASA 5580 Adaptive Security Appliance Leaflet
14-15
思科 ASA 系列命令参考,S 命令
第 14 章 show uauth 至 show xlate 命令
show user-identity ad-groups
示例
以下示例展示如何显示属于身份防火墙的指定域昵称的用户组:
ciscoasa# show user-identity ad-groups CSCO filter sampleuser1
Domain: CSCO AAA Server Group: CISCO_AD_SERVER
Group list retrieved successfully
Number of Active Directory Groups 6
dn: CN=group.reg.sampleuser1,OU=Organizational,OU=Cisco Groups,DC=cisco,DC=com
sAMAccountName: group.reg.sampleuser1
dn: CN=group.temp.sampleuser1,OU=Organizational,OU=Cisco Groups,DC=cisco,DC=com
sAMAccountName: group.temp.sampleuser1
...
ciscoasa# show user-identity ad-groups CSCO import-user-group count
Total AD groups in domain CSCO stored in local: 2
ciscoasa# show user-identity ad-groups CSCO import-user-group
Domain: CSCO
Groups:
group.SampleGroup1
group.SampleGroup2
...
本示例展示如何运行此命令将过滤字符串应用于访问列表和对象组命令的结果。运行
show
user-identity ad-users CSCO filter SampleGroup1
命令将获得指定字符串的 sAMAccountName:
ciscoasa# show user-identity ad-users CSCO filter SampleGroup1
Domain:CSCO AAA Server Group: CISCO_AD_SERVER
User list retrieved successfully
Number of Active Directory Users: 2
dn: CN=SampleUser1,OU=Employees,OU=Cisco Users,DC=cisco,DC=com
sAMAccountName: SampleUser2
dn: CN=SAMPLEUSER2-WXP05,OU=Workstations,OU=Cisco Computers,DC=cisco,DC=com
sAMAccountName: SAMPLEUSER2-WXP05$
相关命令
命令
说明
user-identity enable
创建思科身份防火墙实例。