Cisco Systems Servers Benutzerhandbuch

Seite von 654
Chapter 6      Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-34
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Step 7
To create associations that assign a particular PIX command authorization set to 
be effective on a particular NDG, for each association, follow these steps:
a.
Select the Assign a PIX Command Authorization Set on a per Network 
Device Group Basis
 option.
b.
Select a Device Group and an associated Command Set.
c.
Click Add Association.
Result: The associated NDG and PIX command authorization set appear in 
the table.
Note
To remove or edit an existing PIX command authorization set association, you 
can select the association from the list and then click Remove Association
Configuring IETF RADIUS Settings for a User Group
These parameters appear only when both the following are true:
A AAA client has been configured to use one of the RADIUS protocols in 
Network Configuration.
Group-level RADIUS attributes have been enabled in Interface 
Configuration: RADIUS (IETF).
RADIUS attributes are sent as a profile for each user from Cisco Secure ACS to 
the requesting AAA client. To display or hide any of these attributes, see the 
. For a list 
and explanation of RADIUS attributes, see 
 
For more information about how your AAA client uses RADIUS, refer to your 
AAA client vendor documentation.