Руководство По Устранению Ошибки для Cisco Cisco ASA 5520 Adaptive Security Appliance

Скачать
Страница из 5
Click the Save button at the bottom of the screen.
c. 
Step 2
Add Client−Type Attribute
In order to utilize the new attribute for policy decisions, add the attribute to an authorization rule in the
conditions section.
In ISE, navigate to Policy > Authorization.
1. 
Create a new rule or modify an existing policy.
2. 
In the conditions section of the rule, expand the conditions pane and select either Create a New
Condition
 (for a new rule) or Add Attribute/Value (for a pre−existing rule).
3. 
In the Select Attribute field, navigate to Cisco−VPN3000 >
Cisco−VPN3000:CVPN3000/ASA/PIX7x−Client−Type.
4. 
Choose the appropriate operator (Equals or Not Equals) for your environment.
5. 
Choose the Authentication type you wish to match.
6. 
Assign an Authorization Result appropriate to your policy.
7. 
Click Done.
8. 
Click Save.
9. 
After the rule is created, the Authorization Condition should look similar to the example in Figure 3.
Figure 3: Authorization Condition Example