Forum Discussion

ekaleido's avatar
ekaleido
Icon for Cirrus rankCirrus
Oct 06, 2015

APM and Network Access Based on user's OU

I have several hundred clients who connect via SSLVPN and authenticate against a client AD domain. I need to apply access policy to each user based on their OU?

 

For example, username "Bruce.Leroy" is part of an OU=clientX and has access to 10.10.13.0/24

 

Any help is, as always, greatly appreciated.

 

1 Reply

  • After authentication add an AD query and create branch rules based on the

    expr { [mcget {session.ad.last.attr.ou}] contains "CN=MY_OU, DC=MY_DOMAIN" }
    .