Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
mguevara
Explorer

Permission Denied when using GAIA OS Radius authentication with Okta

Hi, 

 

We are wanting to implement GAIA OS radius authentication via Okta,  we are able to login, however we are receiving permission denied. 

 

[Expert@vfcorpfw01:0]# id
uid=96(_nonlocl) gid=100(users) groups=100(users)
[Expert@vfcorpfw01:0]# cat /var/log/messages
cat: /var/log/messages: Permission denied
[Expert@vfcorpfw01:0]# cpconfig
/bin/cpconfig_start: line 12: /opt/CPshared/5.0/tmp/.CPprofile.sh: Permission denied

Screenshot 2023-09-01 095304.png

 

Do we need to set both of the following attributes in the radius side, or just one of them?

CP-Gaia-User-Role = adminRole

CP-Gaia-SuperUser-Access = 1

This is what we have in the okta radius side, I don't see a way to configure both of the attributes. Has anyone configured Radius auth for Gaia OS in okta? How did you configure it? 



Screenshot 2023-09-01 104049.png

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

I suspect you’ll need both attributes but cannot confirm.

0 Kudos
MSpA
Participant
Participant

Hi,

did you manage to give the right permissions? I am facing the same issue but it seems like Okta cannot pass the 2 attributes.

Any update on this?

Thank you!

0 Kudos
Emerson_Oli
Explorer

I have the same problem, I found the checkpoint link stating that it is necessary to have both parameters.

https://support.checkpoint.com/results/sk/sk120972

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events