This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Client Authentication Agent causes user's group to reset to "Open Group" on login.

I have a number of users divided into different groups with different access and time limitations.  I've found that whenever a user logs in using CAA on Windows, their group changes back to the "Open Group".

All the users in question are authenticated via LDAP and the Open group is the default group.  However, that seems like it should only apply to their first login.  After their account is created in XG, the assigned group should stay and not be reset during an authentication action.



This thread was automatically locked due to age.
Parents
  • I am also facing the same issue in SOPHO XG 210 Firewall. I have replaced the Cyberoam 50ING Firewall and installed SOPHO XG210 in H.A(Active/Active) Mode.

    I am using LDAP authentication in Cyberoam also. It's working fine. But in Sopho XG 210 model facing an issue. 

    I have set Default Group "Silver" while first time LDAP users are login into Sophos firewall via the Captive portal then I will change the Group according to the user's Department. Like: HR, Account. But the user's logout from the captive portal and re-login then again it follows into the "Silver" group. which is wrong. 

    This feature is properly working in Cyberoam 50ING. So, I think Sopho needs to look at this feature and if it's not available then Sophos needs to plan to implement the same.

    New Users are very disappointed due to this.

Reply
  • I am also facing the same issue in SOPHO XG 210 Firewall. I have replaced the Cyberoam 50ING Firewall and installed SOPHO XG210 in H.A(Active/Active) Mode.

    I am using LDAP authentication in Cyberoam also. It's working fine. But in Sopho XG 210 model facing an issue. 

    I have set Default Group "Silver" while first time LDAP users are login into Sophos firewall via the Captive portal then I will change the Group according to the user's Department. Like: HR, Account. But the user's logout from the captive portal and re-login then again it follows into the "Silver" group. which is wrong. 

    This feature is properly working in Cyberoam 50ING. So, I think Sopho needs to look at this feature and if it's not available then Sophos needs to plan to implement the same.

    New Users are very disappointed due to this.

Children
No Data