Windows server 2008 R2 NPS and please let me ask a question.
Although it seems that the setup network policy is operating,
the RADIUS attribute is not effective by some network policies.
=> network policy has setup the RADIUS attribute in Filter-ID, respectively.
The environment is as follows.
Setup three network policies called the present A, B, and C.
- The Windows user group A is added to the network policy A.
- The Windows user group D who added some users who belong to the user group B and C is added to the network policy B.
- The user group who calls it B, and the user group who calls it C are added to the network policy C, respectively.
(The group which nested the user group of B and C is a network policy called C.)
Although, as for A and B, the RADIUS attribute of a network policy is normally evaluated at this time,
the RADIUS attribute of the user who belongs to the group which C nested is not evaluated well.
The network policy itself can be taken for operating normally from an event log.
About the thing except having been estimated by the network policy of A, and the network policy of B as a priority of a network policy,
I think that it is estimated by the network policy called C.
But B(user who belongs to the group of B and C which were not evaluated by the user group of D),
It is not estimated by the network policy of C.
Is there any example of the fault of the network policy of the nested group not being evaluated normally?
Thanks