Configuration-specific User Group Settings
Step 7
Note
Configuring IETF RADIUS Settings for a User Group
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
6-34
To create associations that assign a particular PIX command authorization set to
be effective on a particular NDG, for each association, follow these steps:
Select the Assign a PIX Command Authorization Set on a per Network
a.
Device Group Basis option.
b.
Select a Device Group and an associated Command Set.
c.
Click Add Association.
Result: The associated NDG and PIX command authorization set appear in
the table.
To remove or edit an existing PIX command authorization set association, you
can select the association from the list and then click Remove Association.
These parameters appear only when both the following are true:
A AAA client has been configured to use one of the RADIUS protocols in
•
Network Configuration.
Group-level RADIUS attributes have been enabled in Interface
•
Configuration: RADIUS (IETF).
RADIUS attributes are sent as a profile for each user from Cisco Secure ACS to
the requesting AAA client. To display or hide any of these attributes, see the
"Protocol Configuration Options for RADIUS" section on page
and explanation of RADIUS attributes, see
For more information about how your AAA client uses RADIUS, refer to your
AAA client vendor documentation.
Chapter 6
Setting Up and Managing User Groups
Appendix D, "RADIUS Attributes."
78-13751-01, Version 3.0
3-10. For a list