Hello everybody,

does anybody know if it's possible to assign a VLAN to a user based on 
AD groups? Not via the portal but with EAP authentication.

In my view this would imply getting FreeRADIUS to check the memberOf 
attribute and setting the VLAN for the node accordingly. I understand 
the only means to distinguish users is the node_info->category 
attribute. This would have to be set by FreeRADIUS then. Or is there 
another, straight forward way?

The basic idea is to distinguish user groups. Well, the RBAC idea but 
without the need to manage users on the PF server or assigning role to 
users on the PF server.

Any ideas appreciated.

Andreas

------------------------------------------------------------------------------
LogMeIn Central: Instant, anywhere, Remote PC access and management.
Stay in control, update software, and manage PCs from one command center
Diagnose problems and improve visibility into emerging IT issues
Automate, monitor and manage. Do more in less time with Central
http://p.sf.net/sfu/logmein12331_d2d
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to