Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

RADIUS ACCOUNTING MSG: User-Role in "standards-attribute" instead vendor specific attribute ?

This thread has been viewed 4 times
  • 1.  RADIUS ACCOUNTING MSG: User-Role in "standards-attribute" instead vendor specific attribute ?

    Posted Sep 06, 2012 08:06 AM

    Hi community,

     

    Using RADIUS authentication and Accounting message, the assigned user-role of a client is included in the vendor-specific attribute (type 1) . 

    The UTM device (RADIUS acc. receiver) which has to interprete the radius accounting message can't handle vendor specific attributes with multiple entries

     

    Is there a way in the controller to "modify" the default that the user-role is inluced in e.g. "Filter-ID", which is a standard-attribute ? 

     (as radius authentication messages uses the Filter-ID attribute)

     

    Thanks a lot for your input.

    kind regards rolf

     

     

     



  • 2.  RE: RADIUS ACCOUNTING MSG: User-Role in "standards-attribute" instead vendor specific attribute ?

    EMPLOYEE
    Posted Sep 06, 2012 04:25 PM

    There is no way to do that.



  • 3.  RE: RADIUS ACCOUNTING MSG: User-Role in "standards-attribute" instead vendor specific attribute ?

    Posted Sep 07, 2012 04:44 AM

    Hi Joseph,

    Ok, but thanks for the quick reply.

    kind regards rolf