Cisco Systems Servers Manuale Utente

Pagina di 654
7-49
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter 7      Setting Up and Managing User Accounts
Advanced User Authentication Settings
Step 3
In the BBSM RADIUS Attributes table, to specify the attributes that should be 
authorized for the user, follow these steps:
a.
Select the check box next to the particular attribute.
b.
Further define the authorization for that attribute in the box next to it.
c.
Continue to select and define attributes, as applicable.
For more information about attributes, se
 or your AAA client documentation.
Step 4
Do one of the following:
a.
If you are finished configuring the user account options, click Submit to 
record the options.
b.
To continue to specify the user account options, perform other procedures in 
this chapter, as applicable.
Setting Custom RADIUS Attributes for a User
Custom RADIUS parameters appear only if all the following are true:
You have defined and configured the custom RADIUS VSAs. (For 
information about creating user-defined RADIUS VSAs, see the 
.)
A AAA client has been configured in Network Configuration that uses a 
RADIUS protocol that supports the custom VSA.
The Per-user TACACS+/RADIUS Attributes check box is selected under 
Advanced Options in the Interface Configuration section.
User-level RADIUS (custom name) attributes you intend to apply have been 
enabled under RADIUS (custom name) in the Interface Configuration 
section.
 You must configure both the IETF RADIUS and the custom RADIUS attributes. 
Proprietary attributes override IETF attributes.