Security

last person joined: 22 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

How to define VSA attribute length

This thread has been viewed 2 times
  • 1.  How to define VSA attribute length

    Posted Mar 16, 2018 04:31 AM

    Hi All,

     

    I am Muthu. working for Nokia ( Formerly Alcatel-lucent).Planning to use

    ClearPass Policy Manager
    6.6.0.81015  on CP-VA-500 platform

     

    would like to know how to define the VSA attibute length to 2 bytes rather than standard 1 byte.

     

    The attributes which we are going to use are given below it list atrtibutes name , value and type.

    ATTRIBUTE       A-ESAM-PoL-Fwd-ID                 0x06A1  string

    ATTRIBUTE       A-ESAM-PoL-Vp-ID                  0x06A2  integer

    ATTRIBUTE       A-ESAM-PoL-Client-Type            0x06A3  integer

    The above attributes have been validated in the Free radius server and it works fine. would like to know how to define and use them in Aruba clearpass.

     

    Thanks in Advance,

    S.Muthukannan



  • 2.  RE: How to define VSA attribute length

    Posted Mar 19, 2018 06:36 AM

    I've not tried thie but, can't you just export the Nokia RADIUS dictionary from ClearPass to an XML file, add the new attributes to the file, then import the file with the new attributes.

     

    And enable the Nokia RADIUS dictionary if it's not already enabled.

     



  • 3.  RE: How to define VSA attribute length

    EMPLOYEE
    Posted Mar 19, 2018 07:19 AM

    You Could use the type OctetArray in the dictionary to return hex values.

    Do refer both the solutions in the below article and see if you get some direction with your requirement.


    https://community.arubanetworks.com/t5/Security/returning-HEX-radius-VSA-s/m-p/127929#



  • 4.  RE: How to define VSA attribute length

    Posted Mar 28, 2018 07:46 AM

    raised a TAC case 5328193205