Users Guide

Table Of Contents
381| Roles and Policies Dell Networking W-Series ArubaOS 6.5.x| User Guide
7. (Optional) If the user role contains more than one firewall policy, use the up and down arrows to assign
priorities to each role. The higher the policy on the list, the higher its priority.
8. In the Misc. Configuration section, enter configuration values as described in
Table 80.
9. Click Apply.
10.Next, you must assign the user role to a AAA profile. After assigning the user role you can use the show
reference user-role <role> command to see the profiles that reference this user role. For more
information, see Assigning User Roles on page 382
Field Description
Role name Name of the user role
Re-authentication
Interval (optional)
Time, in minutes, after which the client is required to reauthenticate. Enter a value
between 0-4096. 0 disables reauthentication.
Default: 0 (disabled)
Role VLAN ID
(optional)
By default, a client is assigned a VLAN on the basis of the ingress VLAN for the client to
the controller. You can override this assignment and configure the VLAN ID that is to be
assigned to the user role. You configure a VLAN by navigating to the Configuration >
Network > VLANs page.
Bandwidth Contract
(optional)
You can assign a bandwidth contract to provide an upper limit to upstream or
downstream bandwidth utilized by clients in this role. You can select the Per User option
to apply the bandwidth contracts on a per-user basis instead of to all clients in the role.
For more information, see Configuring Bandwidth Contracts for AppRF 2.0 on page 396.
VPN Dialer
(optional)
This assigns a VPN dialer to a user role. For details about VPN dialer, see Virtual Private
Networks on page 342.
Select a dialer from the drop-down list and assign it to the user role. This dialer will be
available for download when a client logs in using captive portal and is assigned this role.
L2TP Pool (optional) This assigns an L2TP pool to the user role. For more details about L2TP pools, see Virtual
Private Networks on page 342.
Select the required L2TP pool from the list to assign to the user role. The inner IP
addresses of VPN tunnels using L2TP will be assigned from this pool of IP addresses for
clients in this user role.
PPTP Pool (optional) This assigns a PPTP pool to the user role. For more details about PPTP pools, see Virtual
Private Networks on page 342.
Select the required PPTP pool from the list to assign to the user role. The inner IP
addresses of VPN tunnels using PPTP will be assigned from this pool of IP addresses for
clients in this user role.
Table 80: User Role Parameters