Cisco Systems Servers Manuale Utente

Pagina di 654
Chapter 8      Establishing Cisco Secure ACS System Configuration
Cisco Secure ACS Active Service Management
8-50
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Custom actions—You can define other actions for Cisco Secure ACS to 
take upon failure of the login process. Cisco Secure ACS can execute a 
batch file or executable upon the failure of the login process. To make a 
batch or executable file available in the on failure list, place the file in the 
following directory:
drive
:\
path
\CSMon\Scripts
where drive is the local drive where you installed Cisco Secure ACS and 
path is the path from the root of drive to the Cisco Secure ACS directory.
Take No Action—Leave Cisco Secure ACS operating as is.
Generate event when an attempt is made to log in to a disabled 
account
—Specifies whether or not Cisco Secure ACS generates a Windows 
event when a user attempts to login to your network using a disabled account.
Setting Up System Monitoring
To setup Cisco Secure ACS System Monitoring, follow these steps:
Step 1
In the navigation bar, click System Configuration.
Step 2
Click ACS Service Management.
Result: The ACS Active Service Management Setup page appears.
Step 3
To have Cisco Secure ACS test the login process, follow these steps:
a.
Select the Test login process every X minutes check box.
b.
Type the number of minutes that should pass between each login process test 
in the X box.
c.
From the on failure list, select the action Cisco Secure ACS should take when 
the login test fails.
Step 4
To have Cisco Secure ACS generate a Windows event when a user attempts to 
login to your network using a disabled account, select the Generate event when 
an attempt is made to log in to a disabled account
 check box.