Dynamic VLAN attribute in LDAP or AD?

Ivan Kalik tnt at kalik.net
Mon Aug 24 23:27:01 CEST 2009


> So, by looking at this more carefully I'll have to do a bunch of
> if/else's or cases?  What if for instance I have 500 departments/groups
> - 500 different vlans?  I'll have to test each one?
>
> I guess what I was hoping to do was something like:
>
> Get attribute "n" for user y (where n = a value used for
> Tunnel-Private-Group-Id"
>
> Thoughts?

Use ms-RADIUS-FramedIntefaceId from AD schema and map it in ldap.attrmap.
IAS uses that for VLAN id.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list