4/27/2016

2008 R2 NPS server set group and class or filter-id attribute

class and filter-ID is applying for identify the user group in "access-accept" of RADIUS packets, and then NAS will base on this attribute to identify the user role.

In general, freeradius can create account + class attribute for grouping users
But NPS can't bind user account and group at the same time.
The followings guide how to build relationship to account and class attribute.

1.create group at active directory

2.bind user into group
3.create network policy + configure class attribute, like teacher or student
4.configure class attribute, remove service type and frame protocol first

Once user authenticated successfully, the account will earn a user role for group the users. Like teacher and student and then managed them by firewall policy.

沒有留言:

我確診了COVID-19 怎麼會?

 一直自認為天選之人的我,終究還是感染COVID-19,  我是怎麼感染上的? 應該是家人之間互相傳染的 感染上有什麼症狀? 初期會覺得喉嚨怪怪地,然後一症狀就會愈來愈明顯 看診有哪些步驟? 先打電話到診所說有快篩陽,要約視訊看診,先西醫看診並上傳給衛生局,拿到居隔單,掛中醫申請...