RADIUS Server User Roles

A role refers to a logical entity used for determining user access to devices and application. HPE Aruba Networking Central On-Premises roles for RADIUS Remote Authentication Dial-In User Service is a networking protocol that provides centralized authentication, authorization, and accounting management for users who connect and use a network service server users must be modified based on the new roles supported by HPE GreenLake. These roles cannot be assigned with custom role names, if the role names match with previous predefined roles.

For Radius users, RRP (Resource Restriction Policy) is not supported. To successfully login to HPE Aruba Networking Central On-Premises, you should pass Role and Scope as mentioned in the table.

The following tables describes the new RADIUS server roles.

Table 1: User Roles

Existing Role

New Roles

admin

HPE Aruba Networking Central On-Premises Administrator

readonly

HPE Aruba Networking Central On-Premises View Only

readwrite

HPE Aruba Networking Central On-Premises View Edit

guestoperator

HPE Aruba Networking Central On-Premises Guest Operator

Equivalent HPE GreenLake User Roles

Radius Server uses single role for both HPE Aruba Networking Central On-Premises and HPE GreenLake account. The following table lists the equivalent HPE GreenLake roles for the HPE Aruba Networking Central On-Premises roles:

Table 2: Equivalent User Roles

HPE Aruba Networking Central On-Premises Roles

Equivalent HPE GreenLake Roles

admin

Account Administrator

readonly

Observer

readwrite

Operator

guestoperator

Observer

HPE Aruba Networking Central On-Premises Administrator

Account Administrator

HPE Aruba Networking Central On-Premises view only

Account Administrator

HPE Aruba Networking Central On-Premises view edit

Operator

HPE Aruba Networking Central On-Premises guest operator

Oberserver

Custom

Observer