08-29-2017 08:46 AM
Hi,
For an ISE deployment using an NPS server for MFA, can ISE send the NAS-ID to simplify policies on the NPS side? i.e. Is it possible in an ISE authentication policy to add/include radius av pairs while authenticating against a RADIUS Token server?
Thanks,
-Dan
Solved! Go to Solution.
08-29-2017 10:11 AM
To add/remove/modify RADIUS attributes, you must use RADIUS Proxy.
Craig
08-29-2017 10:11 AM
To add/remove/modify RADIUS attributes, you must use RADIUS Proxy.
Craig
08-31-2017 09:51 AM
The customer wants to send the NAS-ID Radius attribute to the RADIUS token server.
How can I send the unique NAS-ID to the external RADIUS token server? I am not seeing how to configure that in ISE.
Can you let me know where and how that is configured in ISE?
-Dan
08-31-2017 10:06 AM
Already responded to question. You cannot manipulate the RADIUS request attributes for RADIUS Token, only for RADIUS Proxy.
08-31-2017 10:48 AM
How/Where do you modify/view the attributes that are sent to the radius proxy? In ISE 2.3, when you configure proxy service in the authentication policy, you are only allowed to enter authentication conditions. There is little configuration in the Proxy setup.I can see where there are dictionary attributes defined, but don't see how those are applied when communication with the external radius server. So the original question, How do I view and or modify what is being sent to the external radius server. It may be simple and I am missing it.
08-31-2017 11:25 AM
Administration > Network Resources > RADIUS Server Sequences > (Sequence_Name) > Advanced Attribute Settings
08-31-2017 11:30 AM
Got it now. Tab was not showing up in my Chrome browser. Switched to FF and now it makes sense. Thanks
08-14-2019 10:05 AM
Did it work by sending the NAS-ID?
I'm having a similar request from a customer who is using MS NSP as an external radius server but haven't got the chance to configure it yet.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide