Cisco Cisco Unified Operations Manager 8.5 White Paper
Operations Manager Deployment Best Practices
All contents are Copyright © 1992–2006 Cisco Systems, Inc. All rights reserved.
Page 79 of 112
Step 9
To update the settings, click Submit+Restart.
Step 10
In the same way, create the association for the group that contains the user
Frank and Network Device
Frank and Network Device
Note: In this example, a User Group is assigned a Network Operator.
Secured Views is now operational for users Joe and Frank.
Assume that both Joe and Frank access the Config Editor screen.
In Operations Manager, the group /OM@IPCOM-DEMO5/System Defined Groups/
Cisco IP Telephony Applications/Call Manager Express contains two devices:
Secured Views is now operational for users Joe and Frank.
Assume that both Joe and Frank access the Config Editor screen.
In Operations Manager, the group /OM@IPCOM-DEMO5/System Defined Groups/
Cisco IP Telephony Applications/Call Manager Express contains two devices:
• 172.20.118.47
• 172.20.118.48
• 172.20.118.48
When the two users (Joe and Frank) access the same group in the Config Editor screen,
they see different devices in the group.
The view for Joe when he accesses the group /CS@IPCOM-DEMO5/System Defined
Groups/Routers/ Cisco 7200 Series Routers/Cisco 7204 Router is as follows.
Joe sees only device 172.20.118.47 in the group, and Frank’s login enables him to see
only device 172.20.118.48.
Why Do We Need to Create a New Role in ACS?
In ACS, the administrator can assign only one role for a user in a network device group.
If a user requires privileges other than those associated with the current role, to operate
on a Network Device Group, a custom role should be created. All necessary privileges to
enable the user to operate in the Network Device Group should be given to this role.
only device 172.20.118.48.
Why Do We Need to Create a New Role in ACS?
In ACS, the administrator can assign only one role for a user in a network device group.
If a user requires privileges other than those associated with the current role, to operate
on a Network Device Group, a custom role should be created. All necessary privileges to
enable the user to operate in the Network Device Group should be given to this role.