Users Guide

The following figure displays the Active Directory or Generic LDAP Configure Filter > Attributes tab:
Figure 175: Active Directory or Generic LDAP Configure Filter > Attributes Dialog
Specify the Active Directory/LDAP Configure Filter Page > Attributes tab parameters as described in the
following table:
Parameter Action/Description
Enter values
for
parameters
Policy Manager parses the filter query (created in the Filter tab and shown at the top of the
Attributes tab) and prompts to enter the values for all dynamic session parameters in the query.
For example, if you have %{Authentication:Username} in the filter query, you are prompted to
enter the value for it. You can enter wildcard character (*) here to match all entries.
NOTE: If there are thousands of entries in the directory, entering the wildcard character (*) can
take a while to fetch all matching entries.
Execute 1. After entering the values for all dynamic parameters, click Execute to execute the filter query.
You can see all entries that match the filter query.
2. Click on one of the entries (nodes) to view the list of attributes for that node.
3. Click on the attribute names that you want to use as role mapping attributes.
Name Specify the name of the attribute.
Alias Name Specify the alternative name for the attribute. By default, this is the same as the attribute name.
Enable As
Click this check box to enable this attribute value to be used directly as a role in an enforcement
policy. This bypasses the step of assigning a role in Policy Manager through a role-mapping policy.
Table 103: Active Directory/LDAP Configure Filter Page > Attributes Parameters
Dell Networking W-ClearPass Policy Manager 6.6 | User Guide Authentication Methods and Sources | 219