HPE Networking Aruba Central NAC provides cloud-based network access control for authenticating users and devices, applying role-based access, and enforcing policy across wired and wireless networks. In this setup, Central NAC (CNAC) makes policy decisions for selected WLANs, while Microsoft Entra ID validates user identity and provides directory attributes such as group membership
For AOS 10 bridge mode deployments, this enables centralised, identity-based access control with consistent role assignment and simplified operations for corporate, guest, BYOD, and IoT devices.
This technote "Central NAC & Entra ID integration for Bridge Mode APs" covers:
• WLAN and user roles configuration
• Entra ID configuration
• CNAC Identity Stores configuration and its Authentication Profiles and Authorization Policy configuration

Hope you'll find it useful and as always please send through your feedback for improvement.
------------------------------
If my post was useful accept solution and/or give kudos.
Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
------------------------------