Cisco Systems Servers Manuale Utente

Pagina di 654
Chapter 12      Administering External User Databases
Database Group Mappings
12-12
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Additionally, users authenticated by an ODBC external user database can also be 
assigned to a specified Cisco Secure ACS group. Group specification by ODBC 
database authentication overrides group mapping. For more information about 
specifying group membership for users authenticated with an ODBC database, see 
th
Creating a Cisco Secure ACS Group Mapping for a Token Server, ODBC Database, 
or LEAP Proxy RADIUS Server Database
 To set or change a token server, ODBC, or LEAP Proxy RADIUS Server database 
group mapping, follow these steps:
Step 1
In the navigation bar, click External User Databases.
Step 2
Click Database Group Mappings.
Step 3
Click the name of the token server, LEAP Proxy RADIUS Server, or ODBC 
database configuration for which you want to configure a group mapping.
Result: The Define Group Mapping table appears.
Step 4
From the Select a default group for database list, click the group to which users 
authenticated with this database should be assigned.
Tip
The Select a default group for database list displays the number of users 
assigned to each group.
Step 5
Click Submit.
Result: Cisco Secure ACS assigns unknown and cached users authenticated by the 
external database type you selected in Step 3 to the Cisco Secure ACS group 
selected in Step 4. For users authenticated by an ODBC, ActivCard, or LEAP 
Proxy RADIUS Server database, the mapping is only applied as a default if those 
databases did not specify a Cisco Secure ACS group for the user.