Use Regex expression for username matching in rules


<< Back to Knowledge Search

Solution

Overview

You want to create a username Regex for use in policy.

Cause
Resolution

You can use a Regex for username matching in a source condition, but you can only do this if the authentication realm used is either LDAP or RADIUS, not natively with IWA. You can however configure your ActiveDirectory as an LDAP realm and then use this method.

For example you want to create a rule to allow any access to all users whose username matches the format of admin-XXXXX. In this example, ActiveDirectory has been defined as an LDAP realm using the LDAP Attribute Name sAMAccountName:

LDAP Attribute Object

You can now use this object as a source condition in your policy:

Access Layer

Workaround
Additional Information
Bug Number
InQuira Doc IdKB5113
Attachment

Article Feedback

Hide Properties
First Published      10/01/2014
Last Modified      10/01/2014
Last Published      10/01/2014
Article Audience
Product      ProxySG
Topic      Authentication, Configuration / WUI / CLI, Control, Installation / Configuration, Policy Management
Article Number      000014405
Summary     
Was this helpful?
Comments:
 
Previous MonthNext Month
SunMonTueWedThuFriSat