> So, by looking at this more carefully I'll have to do a bunch of > if/else's or cases? What if for instance I have 500 departments/groups > - 500 different vlans? I'll have to test each one? > > I guess what I was hoping to do was something like: > > Get attribute "n" for user y (where n = a value used for > Tunnel-Private-Group-Id" > > Thoughts?
Use ms-RADIUS-FramedIntefaceId from AD schema and map it in ldap.attrmap. IAS uses that for VLAN id. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html