Hello,
Please add RADIUS Vendor-Specific Attributes (VSA) for IPsec 'Mode Configs'. This parameter will be very helpful to push Mode Config settings depends on RADIUS policy (based on groups / LDAP)
At this moment RADIUS standard attribute (Framed-Pool) is not enough because we cannot decide about Split Networks and DNS settings.