Cisco Systems Servers Manuale Utente

Pagina di 654
6-37
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter 6      Setting Up and Managing User Groups
Configuration-specific User Group Settings
Configuring Ascend RADIUS Settings for a User Group
 The Ascend RADIUS parameters appear only when both the following are true:
A AAA client has been configured to use RADIUS (Ascend) or RADIUS 
(Cisco IOS/PIX) in Network Configuration.
Group-level RADIUS (Ascend) attributes have been enabled in Interface 
Configuration: RADIUS (Ascend).
Ascend RADIUS represents only the Ascend proprietary attributes. You must 
configure both the IETF RADIUS and Ascend RADIUS attributes. Proprietary 
attributes override IETF attributes.
The default attribute setting displayed for RADIUS is 
Ascend-Remote-Addr
.
Note
To hide or display Ascend RADIUS attributes, see the 
.
To configure and enable Ascend RADIUS attributes to be applied as an 
authorization for each user in the current group, follow these steps:
Step 1
Confirm that your IETF RADIUS attributes are configured properly. For more 
information about setting IETF RADIUS attributes, see the 
Step 2
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 3
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top. 
Step 4
From the Jump To list at the top of the page, choose RADIUS (Ascend).
Step 5
In the Ascend RADIUS Attributes table, determine the attributes to be authorized 
for the group by selecting the check box next to the attribute. Be sure to further 
define the authorization for that attribute in the field next to it. For more 
information about attributes, see 
 or your 
AAA client documentation.