cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
607
Views
4
Helpful
1
Replies

ACS 5.2 ldap authorization issue

lni1
Level 1
Level 1

Dear,

We have users using a GPRS connection authenticating against ACS :

Fields received in radius package : Username & Calling-line_id

We have an ldap directory containing the same 2 fields : userPrincipalName & TelephoneNumber

1)Is it possible to match the 2 fields received in the radius package against the 2 fields in LDAP, and based

on that granting/denying access ? (some sort of mulitple key).

2)Is it possible to match the calling-line-id against an ldap attribute (authorization section) ?

The issue is that we have 3000+ GPRS users, and creating 3000+ entries in the end user filter is not

really an option.

Many thanks,

Lieven Stubbe

Belgian Railways

1 Reply 1

jrabinow
Level 7
Level 7

On second question; it is possible to match the calling-line-id against an ldap attribute (authorization section)

This requries an attribute-to-attribute comparison capability that is availabe in ACS release 5.3 on higher. If decide to upgrade I would recommend to upgrade to ACS 5.4