Forum Discussion

Sinistrad_29710's avatar
Sinistrad_29710
Icon for Nimbostratus rankNimbostratus
Dec 07, 2016

Attribute string Syntax

Hi all,

 

I am using external authentication on my F5, and want to configure different AD groups for different roles, but it is not working, on the RADIUS I see that the traffic is allowed, but on F5 I have Login Error, maybe I have an error on the attribute string. Please help ? These are the details

 

Authentication : I put information for my RADIUS server External Users : - Role : No access - Partition Access : All - Terminal Access : Disabled

 

Remote Role groups : - Group Name : EU_ACCS_ASA_EDC_ADMIN - Line Order : 1 - Attribute String : memberOF=CN=EU_ACCS_ASA_EDC_ADMIN,CN=Groups,CN=Paris,CN=FR,CN=EMEA,DC=PM,DC=intra - Assign role : Administrator

 

Thank you

 

1 Reply

  • So you want to use RADIUS auth to authenticate the users but then use AD Groups Membership to hand out the permissions?

     

    If you want to use AD groups for remote role groups you will need to setup AD for your authentication method.

     

    -Seth