Cisco Systems Servers Manuale Utente

Pagina di 654
Appendix A      Troubleshooting Information for Cisco Secure ACS
TACACS+ and RADIUS Attribute Issues
A-18
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
TACACS+ and RADIUS Attribute Issues
Condition
Recovery Action
TACACS+ and RADIUS 
attributes do not appear on the 
Group Setup page.
Ensure that you have at least one RADIUS or TACACS+ AAA 
client configured in the Network Configuration section and that, in 
the Interface Configuration section, you have enabled the attributes 
you need to configure.
Note
Some attributes are not customer-configurable in 
Cisco Secure ACS; instead, their values are set by 
Cisco Secure ACS.
Beginning with Cisco Secure ACS Version 2.3, some TACACS+ 
attributes no longer appear on the Group Setup page. This is because 
IP pools and callback supersede the following attributes:
TACACS+
addr
addr-pool
callback-dialstring
Ascend RADIUS
8, Framed-IP-Address
19, Callback-Number
218, Ascend-Assign-IP-Pool
Additionally, these attributes cannot be set via database 
synchronization, and 
ip:addr=n.n.n.n
 is not allowed as a Cisco 
vendor-specific attribute (VSA)
Novell NDS or Generic LDAP 
Group Mapping not working 
correctly.
Make sure you have correctly configured Group Mapping for the 
applicable database. For more information, see