- Community Home
- >
- Welcome
- >
- Other HPE Product Questions
- >
- Clearpass service Matching with AD group
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-03-2025 01:11 AM
07-03-2025 01:11 AM
Clearpass service Matching with AD group
Hello everyone,
I have two ClearPass services that are very similar in their matching conditions. The difference is that the service I’m currently working on uses FortiAuthenticator for authentication instead of Active Directory (AD). The problem is that the first service in the list is matching all requests because the conditions are almost identical, so it “captures” all authentications.
I want to make sure that the service using FortiAuthenticator only matches if the user belongs to a specific AD group—this way, only users who require 2FA are matched by this service. If the user is not in that group, the request should fall through to the other service which authenticates via AD without 2FA.
How can I add a condition to the ClearPass service to check the user’s AD group membership during authentication so the correct service matches based on whether the user should have 2FA or not?
Thanks in advance.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-03-2025 01:15 AM
07-03-2025 01:15 AM
Query: Clearpass service Matching with AD group
Hello,
Thank you for posting! HPE Networking forum has moved to Airheads Community. For HPE Aruba Networking product queries, request you to visit and post your query here.
You can refer to this link for more details.
Please click on "Thumbs Up/Kudo" icon to give a "Kudo".
Thank you for being a HPE valuable community member.