Figure 15: User In Domain "Global" With A Predefined Role; Figure 16: User In Domain "Global" With Custom Role "R1 - Juniper NETWORK AND SECURITY MANAGER 2010.3 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Chapter 3: Configuring Role-Based Administration
created in the global domain, it is automatically inherited into the subdomain and can
be assigned to a subdomain user.
NOTE: A role defined in a subdomain belongs only to that subdomain.
Assigning Roles
If a user is defined in the local database, NSM uses a role mapping list from the local
database. Otherwise, the RADIUS administrator must configure the role mapping list for
each user on the RADIUS server.
Figure 15 on page 71 through Figure 21 on page 73 show examples of assigning predefined
and custom roles through RADIUS. All examples assume that the user will be
authenticated and authorized using a RADIUS server.

Figure 15: User in Domain "global" with a Predefined Role

Figure 16: User in Domain "global" with Custom Role "r1"

The "r1" role was created in the NSM in "global" domain.
Copyright © 2010, Juniper Networks, Inc.
71

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.3

Table of Contents