Radius group Filter Id
I pass the attributes user group and the user is correctly assigned to the group according to the attribute, but at the same time it is also included in the default group radius-users. Therefore, the Policy control rules do not work.
How to set the user to be only in the group by attribute?
USG40 latest FW V4.38
Thank you.
Best Answers
-
Hello,
Thank You. I also contacted Zyxel official support. We had a TV session and the problem could not be solved. It seems like a bug.0 -
Hi @dejmal69
We had addressed this case as an issue and will fix it in the future release. Thanks for your feedback.
5
All Replies
-
Hi @dejmal69
You have to make sure RADIUS authentication has added into Auth. Method rule.
Otherwise device will not send authentication request to external RADIUS server.
(Configuration > Object > Auth. Method)
And also you can setup user Group Identifier setting for your RADIUS group user.
Then user object can be referenced by other functions. (i.g. L2TP/SSL VPN…etc)
1 -
Thank You for answer. I have the same setting. Authentication is ok, but group is ignored in firewall rules.0
-
I have two groups. eg. host and home. I will set a lan to wan policy where the homegroup is set. I authenticate two devices. One home, one guest. But both have connections.The rule allows users from another group.When I'm there, I'll prepare screenshots.0
-
Here are screenshots.Two users on two devices. Each in a different groupPolicy control. Only group radadmini is alowed.log. both devices are allowed by the same rule.That's a problem. It is necessary to restrict according to the rules of the user group. Otherwise, authentication does not make sense.Am I making a mistake somewhere? I suspect that the problem is because all users are authenticated to the default group at the same time
0 -
It looks issue happen in Wireless client which authenticate by 802.1X.
Currently we still analysis the symptom, and will let you know conclusion of this.
0 -
Hello,
Thank You. I also contacted Zyxel official support. We had a TV session and the problem could not be solved. It seems like a bug.0 -
Hi @dejmal69
We had addressed this case as an issue and will fix it in the future release. Thanks for your feedback.
5 -
Hello,Thank You very much.0
-
Hello,
Thanks for Your support. In WK24 fw is fixed this issue.0
Categories
- All Categories
- 415 Beta Program
- 2.3K Nebula
- 141 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 218 USG FLEX H Series
- 262 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1K Wireless
- 39 Wireless Ideas
- 6.3K Consumer Product
- 245 Service & License
- 382 News and Release
- 81 Security Advisories
- 27 Education Center
- 8 [Campaign] Zyxel Network Detective
- 3.1K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight