Cisco Cisco Unified Operations Manager 8.5 White Paper

Page of 112
 
Operations Manager Deployment Best Practices 
All contents are Copyright © 1992–2006 Cisco Systems, Inc.   All rights reserved. 
Page 79 of 112 
Step 9 
To update the settings, click Submit+Restart.  
Step 10 
In the same way, create the association for the group that contains the user 
Frank and Network Device  
 
Note: In this example, a User Group is assigned a Network Operator. 
Secured Views is now operational for users Joe and Frank.  
Assume that both Joe and Frank access the Config Editor screen.  
In Operations Manager, the group /OM@IPCOM-DEMO5/System Defined Groups/ 
Cisco IP Telephony Applications/Call Manager Express contains two devices:  
•  172.20.118.47  
•  172.20.118.48  
 
When the two users (Joe and Frank) access the same group in the Config Editor screen, 
they see different devices in the group.  
The view for Joe when he accesses the group /CS@IPCOM-DEMO5/System Defined 
Groups/Routers/ Cisco 7200 Series Routers/Cisco 7204 Router is as follows. 
 
Joe sees only device 172.20.118.47 in the group, and Frank’s login enables him to see 
only device 172.20.118.48. 
 
Why Do We Need to Create a New Role in ACS?  
In ACS, the administrator can assign only one role for a user in a network device group.  
If a user requires privileges other than those associated with the current role, to operate 
on a Network Device Group, a custom role should be created. All necessary privileges to 
enable the user to operate in the Network Device Group should be given to this role.