Hi,
Thanks for posting here.
As far as I know, we cannot simply build rules to match user condition request based on specific AD attributes (such as nickname). Please note that every network policy must have configured condition. Once connection request match the condition, it will
go through this policy to determine if it can get access or not. The following are the available conditions which can configure for network policy:
• Groups
• HCAP
• Day and time restrictions
• Network Access Protection
• Connection properties
• RADIUS client properties
• Gateway
For domain user, we can use group condition to specify user which belong to one of the specified groups. Your understanding is highly appreciated.
Detailed information about Network Policy Conditions Properties, please refer to the following Link:
http://technet.microsoft.com/en-us/library/cc731220(WS.10).aspx
Best Regards,
Aiden
Aiden Cao
TechNet Community Support
