Chapter 7
User Management
Step 2
Step 3
Step 4
Setting Custom RADIUS Attributes for a User
78-16592-01
Before configuring BBSM RADIUS attributes, be sure your IETF RADIUS
attributes are configured properly. For more information about setting IETF
RADIUS attributes, see
In the BBSM RADIUS Attributes table, to specify the attributes that should be
authorized for the user, follow these steps:
Select the check box next to the particular attribute.
a.
Further define the authorization for that attribute in the box next to it.
b.
Continue to select and define attributes, as applicable.
c.
For more information about attributes, see
Attributes", or your AAA client documentation.
Do one of the following:
If you are finished configuring the user account options, click Submit to
•
record the options.
To continue to specify the user account options, perform other procedures in
•
this chapter, as applicable.
Custom RADIUS parameters appear only if all the following are true:
You have defined and configured the custom RADIUS VSAs. (For
•
information about creating user-defined RADIUS VSAs, see
RADIUS Vendors and VSAs, page
A AAA client is configured in Network Configuration that uses a RADIUS
•
protocol that supports the custom VSA.
The Per-user TACACS+/RADIUS Attributes check box is selected under
•
Advanced Options in the Interface Configuration section.
User-level RADIUS (custom name) attributes you want to apply are enabled
•
under RADIUS (custom name) in the Interface Configuration section.
You must configure both the IETF RADIUS and the custom RADIUS attributes.
Proprietary attributes override IETF attributes.
Setting IETF RADIUS Parameters for a User, page
9-28.)
User Guide for Cisco Secure ACS for Windows Server
Advanced User Authentication Settings
Appendix C, "RADIUS
Custom
7-38.
7-53