Cisco Cisco ASA 5580 Adaptive Security Appliance Leaflet

Page of 1214
 
14-15
思科 ASA 系列命令参考,命令
 
 14       show uauth  show xlate 命令
  show user-identity ad-groups
示例
以下示例展示如何显示属于身份防火墙的指定域昵称的用户组:
 
ciscoasa# show user-identity ad-groups CSCO filter sampleuser1
Domain: CSCO        AAA Server Group:       CISCO_AD_SERVER
Group list retrieved successfully
Number of Active Directory Groups       6
dn: CN=group.reg.sampleuser1,OU=Organizational,OU=Cisco Groups,DC=cisco,DC=com
sAMAccountName: group.reg.sampleuser1
dn: CN=group.temp.sampleuser1,OU=Organizational,OU=Cisco Groups,DC=cisco,DC=com
sAMAccountName: group.temp.sampleuser1
...
ciscoasa# show user-identity ad-groups CSCO import-user-group count
Total AD groups in domain CSCO stored in local: 2
ciscoasa# show user-identity ad-groups CSCO import-user-group 
Domain: CSCO
Groups:
        group.SampleGroup1
        group.SampleGroup2
...
本示例展示如何运行此命令将过滤字符串应用于访问列表和对象组命令的结果。运行
 show 
user-identity ad-users CSCO filter SampleGroup1
 命令将获得指定字符串的 sAMAccountName:
ciscoasa# show user-identity ad-users CSCO filter SampleGroup1 
Domain:CSCO    AAA Server Group:  CISCO_AD_SERVER
User list retrieved successfully
Number of Active Directory Users: 2
dn: CN=SampleUser1,OU=Employees,OU=Cisco Users,DC=cisco,DC=com
sAMAccountName: SampleUser2
dn: CN=SAMPLEUSER2-WXP05,OU=Workstations,OU=Cisco Computers,DC=cisco,DC=com
sAMAccountName: SAMPLEUSER2-WXP05$
相关命令
命令
说明
user-identity enable
创建思科身份防火墙实例。