Which components can use Active Directory authorization attributes in the decision-making process?
In ClearPass Policy Manager, an Active Directory authorization source collects directory attributes for role-mapping rules. Attributes defined in an AD/LDAP authentication source can also be used directly as attributes in an enforcement policy, so both role-mapping and enforcement policies can make decisions using them.
Community Discussion