<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Radius LDAP mapping for SGT in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/radius-ldap-mapping-for-sgt/m-p/3709931#M492775</link>
    <description>&lt;P&gt;Hello Team,&lt;/P&gt;
&lt;P&gt;It needs to be simple mistake, i had it working, now it's not working.&lt;/P&gt;
&lt;P&gt;I authorize user in LDAP which hits authz rule having the following authorization profile:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.36.53.png" style="width: 960px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18917iD9D2C7FC9471D82F/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.36.53.png" alt="Screen Shot 2018-09-19 at 23.36.53.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Customer1_RODC is LDAP connection with physicalDeliveryOffice attribute:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.38.37.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18918iD644DD9F56146C09/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.38.37.png" alt="Screen Shot 2018-09-19 at 23.38.37.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Now when i do authorize user, i can see the following in auth logs:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.36.32.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18920i7E1D1360169303BA/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.36.32.png" alt="Screen Shot 2018-09-19 at 23.36.32.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Now - why value of physicalDeliveryOfficeName which is equal to 18 is not mapped ? And instead -01 is added to a string representation ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It was working fine, but probably i have lost connectivity to LDAP, but i have readed it along with attribute.&lt;/P&gt;
&lt;P&gt;Could you please confirm ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Michal&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 19 Sep 2018 21:43:49 GMT</pubDate>
    <dc:creator>Michal Garcarz</dc:creator>
    <dc:date>2018-09-19T21:43:49Z</dc:date>
    <item>
      <title>Radius LDAP mapping for SGT</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-ldap-mapping-for-sgt/m-p/3709931#M492775</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;
&lt;P&gt;It needs to be simple mistake, i had it working, now it's not working.&lt;/P&gt;
&lt;P&gt;I authorize user in LDAP which hits authz rule having the following authorization profile:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.36.53.png" style="width: 960px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18917iD9D2C7FC9471D82F/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.36.53.png" alt="Screen Shot 2018-09-19 at 23.36.53.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Customer1_RODC is LDAP connection with physicalDeliveryOffice attribute:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.38.37.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18918iD644DD9F56146C09/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.38.37.png" alt="Screen Shot 2018-09-19 at 23.38.37.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Now when i do authorize user, i can see the following in auth logs:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-09-19 at 23.36.32.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/18920i7E1D1360169303BA/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-09-19 at 23.36.32.png" alt="Screen Shot 2018-09-19 at 23.36.32.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Now - why value of physicalDeliveryOfficeName which is equal to 18 is not mapped ? And instead -01 is added to a string representation ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It was working fine, but probably i have lost connectivity to LDAP, but i have readed it along with attribute.&lt;/P&gt;
&lt;P&gt;Could you please confirm ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Michal&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Sep 2018 21:43:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-ldap-mapping-for-sgt/m-p/3709931#M492775</guid>
      <dc:creator>Michal Garcarz</dc:creator>
      <dc:date>2018-09-19T21:43:49Z</dc:date>
    </item>
    <item>
      <title>Re: Radius LDAP mapping for SGT</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-ldap-mapping-for-sgt/m-p/3729373#M492776</link>
      <description>&lt;P&gt;IIRC we need the entire RHS of cisco-av-pair as the value of the AD/LDAP attribute; e.g. &lt;SPAN&gt;Cisco:cisco-av-pair = AD1:description&lt;/SPAN&gt;.&lt;/P&gt;</description>
      <pubDate>Sun, 21 Oct 2018 17:52:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-ldap-mapping-for-sgt/m-p/3729373#M492776</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-10-21T17:52:49Z</dc:date>
    </item>
  </channel>
</rss>

