Security

 View Only
last person joined: 18 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

TEAP with LDAP Authorization

This thread has been viewed 30 times
  • 1.  TEAP with LDAP Authorization

    Posted May 01, 2021 06:59 AM
    Hi there,

    I can't get any LDAP attributes when using TEAP.
    I can see in access tracker that Authentication:username is set the the correct user, and the queries use %{Authentication:username}, but the attributes all come blank and not role mapping based on LDAP attributes occur.
    Any idea how to fix?

    Thanks

    ------------------------------
    Ricardo Duarte
    ------------------------------


  • 2.  RE: TEAP with LDAP Authorization

    Posted May 02, 2021 06:14 AM
    I will answer myself.
    I modified my "Authentication" query to match either the built-in sAMAccountName but also userPrincipalName.
    Somehow, when adding userPrincipalName to the query it stops working with TEAP. Works fine with other EAP methods tho.

    But still I can't get "Groups" to show. I can get memberOf, but Groups is empty with TEAP.

    ------------------------------
    Ricardo Duarte
    ------------------------------