cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
353
Views
0
Helpful
1
Replies

is it possible to use special characters in the radius role names?

PrabhuK
Level 1
Level 1

I have a quick question on the current radius configuration. is it possible to use special characters in the radius role names? possible in ISE or ACS ? why because we are currently seeing error messages specific for these in our checkpoint logs.

Example:

role name 'radius-group-CACS:0a80ac32tcUqztluplzQKkTC9NCRbylcDNMAPQTFZ6qJ78qbhHc:us-dev--ise-tac/352612984/73821' for user thakkali

1 Reply 1

Arne Bier
VIP
VIP

Hi @PrabhuK 

 

What do you mean by special characters? These characters all look like valid ASCII characters to me.

 

Can you please explain what you mean by "radius role name"? 

In what context is the Checkpoint log relevant to ISE? Are you using ISE as the RADIUS server for Checkpoint Device Administration?  

 

In ISE we don't talk about roles. Perhaps this is Checkpoint terminology that relates to the RADIUS attributes that are handed back during Authorization to allow admins to get the correct RBAC?  You need to check your ISE Authorization Policies and Profiles to see what ISE is returning to the Checkpoint.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: