Dell PowerConnect W Clearpass 100 Software ArubaOS Integration Guide - Page 37

Con the RADIUS User Role, RADIUS user role definition

Page 37 highlights

Amigopod and ArubaOS Integration Application Note Configure the RADIUS User Role The RADIUS user role is a collection of one or many RADIUS standard or vendor-specific attributes (VSAs). These attributes can be used to signal role-based access control context back to the Aruba controller as shown in Figure 30. Figure 30 RADIUS user role definition The Aruba-User-Role is an example of an Aruba VSA that allows a RADIUS authentication session to automatically have a user role applied. The example of auth-guest is a user role that is defined as part of the campus VRD baseline configuration. Amigopod automatically calculates the available time of a guest session and return this value in the session-timeout attribute so the controller can manage the termination of the session. For example, if a guest account was created with a 2-hour expiry, Amigopod returns a session-timeout value of 7200 seconds. Aruba Networks, Inc. Amigopod Configuration | 37

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51

Aruba Networks, Inc.
Amigopod Configuration
|
37
Amigopod and ArubaOS Integration
Application Note
Configure the RADIUS User Role
The RADIUS user role is a collection of one or many RADIUS standard or vendor-specific attributes
(VSAs). These attributes can be used to signal role-based access control context back to the Aruba
controller as shown in
Figure 30
.
Figure 30
RADIUS user role definition
The
Aruba-User-Role
is an example of an Aruba VSA that allows a RADIUS authentication session to
automatically have a user role applied. The example of auth-guest is a user role that is defined as part
of the campus VRD baseline configuration.
Amigopod automatically calculates the available time of a guest session and return this value in the
session-timeout attribute so the controller can manage the termination of the session. For example, if a
guest account was created with a 2-hour expiry, Amigopod returns a session-timeout value of 7200
seconds.