Cisco Cisco 5760 Wireless LAN Controller Manual Técnico

Página de 7
Contents
Introduction
Prerequisites
Requirements
Components Used
Configuration
Create a few test users in ACS
Setting up Policy elements and shell profiles
Creating privilege 15 level shell access profile
Creating command sets for admin user
Creating shell profile for read only user
Create a service selection rule to match the tacacs protocol
Create authorization policy for full administration access.
Create authorization policy for read only administration access.
Configuring the 5760 for tacacs
Accessing the same 5760 with the 2 different profiles
Related Cisco Support Community Discussions
Introduction
This document will explain how to create Cisco ACS Tacacs+  authentication and authorization
profiles with different privilege levels  and Integrate it with 5760 for access to WebUI. This feature
is supported from 3.6.3 onwards (But not on 3.7.x at time of this writing).
Prerequisites
Requirements
It is assumed that the reader is familiar with Cisco ACS and Converged Access controller
configuration. This document only focuses on the interaction between those 2 components in the
scope of tacacs+ authorization.
Components Used
The information in this document is based on these software and hardware versions:
Cisco Converged Access 5760, release 3.6.3
Cisco Acess Control Server (ACS) 5.2
Configuration
Create a few test users in ACS