Currently have NAC configured to proxy network access for computer authentication using eap-tls and also switch management access to FreeRadius.
Computer authorisation is being done by querying host name to a valid entry in LDAP.
Switch authorisation is being done by querying username and password to kerberos.
Each works in the that a radius Accept is being returned to the switch in each case. The problem I have is that NAC is reporting the filter-id as null when doing switch management login.
So my question is, can NAC, just as you can do with a typical profile, change / add the filter id radius attribute to include "Enterasys:mgmt=su" instead of having to configure it somehow in FreeRadius.
Many thanks in advance.
Note: In NAC when editing the switch I have the "Gateway RADIUS Attributes to send = Extreme Policy"