Dynamic VLAN attribute in LDAP or AD?

Ivan Kalik tnt at kalik.net
Mon Aug 24 23:27:01 CEST 2009

> So, by looking at this more carefully I'll have to do a bunch of
> if/else's or cases?  What if for instance I have 500 departments/groups
> - 500 different vlans?  I'll have to test each one?
> I guess what I was hoping to do was something like:
> Get attribute "n" for user y (where n = a value used for
> Tunnel-Private-Group-Id"
> Thoughts?

Use ms-RADIUS-FramedIntefaceId from AD schema and map it in ldap.attrmap.
IAS uses that for VLAN id.

Ivan Kalik
Kalik Informatika ISP

More information about the Freeradius-Users mailing list