well everything seemed to have worked apart from the Aruba-User-Role bit.
looking at Firewall policies /[System Role|Policies] I can see the stuff I sent back
Clearpass is sending back
adius:Aruba:Aruba-CPPM-Role | test_cppm_role_enforcement-3110-4 ip access-list session super_user_role any any any permit log ! user-role cppmrole access-list session super_user_role ! |
Radius:Aruba:Aruba-User-Role | cppmrole |
where super_user_role is the default "allowall" with logging
However, Firewall policies / User Role doesn;t have a cppmrole entry. Should I be sending back the System Role test_cppm_role_enforcement-3110-4 ?
Rgds
alex