Configuring A Shell Command Authorization Set For A User Group - Cisco 3.3 User Manual

For windows server version 3.3
Table of Contents

Advertisement

Chapter 6
User Group Management

Configuring a Shell Command Authorization Set for a User Group

Note
Step 1
Step 2
Step 3
Step 4
Step 5
78-16592-01
Use this procedure to specify the shell command authorization set parameters for
a group. There are four options:
None—No authorization for shell commands.
Assign a Shell Command Authorization Set for any network device—One
shell command authorization set is assigned, and it applies to all network
devices.
Assign a Shell Command Authorization Set on a per Network Device
Group Basis—Enables you to associate particular shell command
authorization sets to be effective on particular NDGs.
Per Group Command Authorization—Enables you to permit or deny
specific Cisco IOS commands and arguments at the group level.
This feature requires that you have previously configured a shell command
authorization set. For detailed steps, see
page
5-31.
To specify shell command authorization set parameters for a user group, follow
these steps:
In the navigation bar, click Group Setup.
The Group Setup Select page opens.
From the Group list, select a group, and then click Edit Settings.
The Group Settings page displays the name of the group at its top.
From the Jump To list at the top of the page, choose TACACS+.
The system displays the TACACS+ Settings table section.
Use the vertical scrollbar to scroll to the Shell Command Authorization Set
feature area.
To prevent the application of any shell command authorization set, select (or
accept the default of) the None option.
Configuration-specific User Group Settings
Adding a Command Authorization Set,
User Guide for Cisco Secure ACS for Windows Server
6-33

Advertisement

Table of Contents
loading

This manual is also suitable for:

Secure access control serverSecure acs

Table of Contents