I'm trying to configure 6.0R2 such that different roles will present different IVE source addresses to backend systems. To test this I've configured the IVE such that the primary address is 10.10.10.1 and the ip alias is 10.10.10.2. I then used the Roles --> General --> Vlan/Source IP page to assign a role to the alias ip address. When a user mapped to that role submits a request to a backend system thru the IVE the backend system sees the primary address, 10.10.10.1. Am I missing a step somewhere?
Even though you have defined the specific VLAN/Source IP on the role at Users>User Roles>General>SourceIP/VLAN page, if you have not enabled the option on the General tab, the policy will not apply. Please be sure that on the general tab of the role(s) you want to apply the source IP policy to that the VLAN/Source IP option is enabled (it is at the top of the section, next to where you enable session and UI options).