General
When creating an Authorization Profile, one of the options under Common Tasks is Security Group.
When selecting a Security Group, you may optionally specify a Virtual Network (select from the dropdown list or enter desired text string value) and also optionally specify a VLAN name string.
When editing an Authorization Profile that contains a previously saved Security Group with optional VLAN name string, the VLAN name string may be lost.
Symptom
When editing an Authorization Profile that contains a previously saved Security Group with optional VLAN name string, the VLAN name string is not saved when saving changes to the Authorization Profile unless the VLAN name string is re-entered correctly. This can be seen in the display of RADIUS attributes shown at the lower portion of the Authorization Profile Screen.
If the VLAN name string is not manually re-entered, then a null string is stored for VLAN Name when saving changes (previously entered VLAN Name string is lost).
Conditions
Problem occurs when editing an Authorization Profile that contains a previously saved Security Group with optional VLAN name string.
Workaround
Manually re-enter VLAN name string before saving changes when editing Authorization Profile.
Alternately, do not use Security Group option; use VLAN option to specify VLAN, and use Advanced Attribute Settings to specify attributes for Security Group Tag, SGT Name, and VN
cisco-av-pair = cts:security-group-tag=
cisco-av-pair = cts:sgt-name=
cisco-av-pair = cts:vn=
Further Problem Description