Cisco Servers User Manual page 164

For windows 2000/nt servers
Table of Contents

Advertisement

Common User Group Settings
page of the Interface Configuration section for single group IP-based filter options
and single group CLI/DNIS-based filter options to appear in the
Cisco Secure ACS HTML interface.
Note
When an authentication request is forwarded by proxy to a Cisco Secure ACS
server, any NARs for TACACS+ requests are applied to the IP address of the
forwarding AAA server, not to the IP address of the originating AAA client.
To set NARs for a user group, follow these steps:
Step 1
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
To apply a previously configured shared NAR to this group, follow these steps:
Step 3
Note
a.
b.
c.
Tip
To view the server details of the shared NARs you have selected to apply, you
can click on either View IP NAR or View CLID/DNIS NAR, as applicable.
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
6-8
To apply a shared NAR, you must previously have configured it under
Network Access Restrictions in the Shared Profile Components
section. For more information, see the
Restrictions Configuration" section on page
Select the check box labeled Only Allow network access when.
To specify whether one or all shared NARs must apply for a member of the
group to be permitted access, select one of the following two options:
All selected shared NARS result in permit
Any one selected shared NAR results in permit
Select a shared NAR name in the Shared NAR list and then click —> (right
arrow button) to move the name into the Selected Shared NARs list.
Chapter 6
Setting Up and Managing User Groups
"Shared Network Access
5-7.
78-13751-01, Version 3.0

Advertisement

Table of Contents
loading

This manual is also suitable for:

Secure acs 3.0

Table of Contents