Reset Search
 

 

Article

HOW TO Match Rules To Inbound RADIUS Client Attribute Value Pairs (AVP) in Extreme Control

« Go Back

Information

 
TitleHOW TO Match Rules To Inbound RADIUS Client Attribute Value Pairs (AVP) in Extreme Control
Objective
  • To create rules that will match specific inbound RADIUS attribute value pairs for authentication and authorization.
Environment
  • Extreme Control (NAC)
  • RADIUS User Groups
Procedure
In Access Control Group Editor a User Groups entry can be created to match on RADIUS attributes.
  1. Navigate to Control -> Access Control -> Group Editor -> User Groups.
  2. Click Add.
  3. Enter a name in the Name: field.
  4. Enter a (optional) description in the Description: field.
  5. Select Type "User: RADIUS User Group"
  6. In the Add New Group window, select the appropriate Match Mode, either Any, All or Exists.
  7. Under RADIUS User Group Entry Editor, Click Add.
  8. Select an Attribute Name from the pulldown.
  9. Assign a value to match in the Attribute Value: field.
  10. Enter a (optional) description in the Entry Description: field.
  11. Click Add.
  12. (optional) Repeat Steps 7 through 11 to add additional attribute value pairs.
  13. Click Save & Close.
Assign the newly created User Group to the applicable rule in the Rules database.
Additional notes
In the Add Entry -> Attribute Name window in step 9 you may edit and prefix the selected attribute with either "request:" or "response:" to force matching on inbound requests only or outbound responses if acting as a RADIUS proxy.

Feedback

 

Was this article helpful?


   

Feedback

Please tell us how we can make this article more useful.

Characters Remaining: 255