Forum Discussion

F5-Oetti's avatar
F5-Oetti
Icon for Nimbostratus rankNimbostratus
Dec 06, 2017

BigIQ How to assign Radius Authenticated user to a User-Goup?

Hello, I got a brand new BigIQ and want to setup rolebased access for some users, who should only manage the Pools what they are responsible for. I could setup that without any problem as long as the users are defined as locally authenticated at the BigIQ. Then I could add them to a user-group and it worked fine... but my idea is to get the users authenticated by Radius. But when I define a user as Radius Authenticated it is no longer possible to assign that user to a User Group. I use BiIQ in Version 5.3.0-0.0.1119 So my question is how can I fix that problem?

 

Any good tip would be highly appreciated.

 

Regards Gerhard

 

4 Replies

  • You will have to use radius VSAs. You then will have to map those VSAs to user groups with in BIG IQ.

     

    Have different AD groups match on different radius network policies that use the VSA that matches the group.

     

    F5 Radius VSAs

     

    • F5-Oetti's avatar
      F5-Oetti
      Icon for Nimbostratus rankNimbostratus

      Thank you for the answer,

       

      I feel this time nt familiar enough about this topic will ask my supporter for an example in my setup.

       

      Best Regards Gerhard

       

  • You will have to use radius VSAs. You then will have to map those VSAs to user groups with in BIG IQ.

     

    Have different AD groups match on different radius network policies that use the VSA that matches the group.

     

    F5 Radius VSAs

     

    • F5-Oetti's avatar
      F5-Oetti
      Icon for Nimbostratus rankNimbostratus

      Thank you for the answer,

       

      I feel this time nt familiar enough about this topic will ask my supporter for an example in my setup.

       

      Best Regards Gerhard