Cisco Systems 3.3 Server User Manual


 
6-49
User Guide for Cisco Secure ACS for Windows Server
78-16592-01
Chapter 6 User Group Management
Configuration-specific User Group Settings
Note The MS-CHAP-MPPE-Keys attribute value is autogenerated by
Cisco Secure ACS; there is no value to set in the HTML interface.
Step 6 To save the group settings you have just made, click Submit.
For more information, see Saving Changes to User Group Settings, page 6-56.
Step 7 To continue specifying other group settings, perform other procedures in this
chapter, as applicable.
Configuring Nortel RADIUS Settings for a User Group
The Nortel RADIUS attribute configurations appear only when both the following
are true:
A network device has been configured in Network Configuration that uses a
RADIUS protocol that supports the Nortel RADIUS VSA.
Group-level Nortel RADIUS attributes have been enabled on the RADIUS
(Nortel) page of the Interface Configuration section.
Nortel RADIUS represents only the Nortel VSA. You must configure both the
IETF RADIUS and Nortel RADIUS attributes.
Note To hide or display Nortel RADIUS attributes, see Setting Protocol Configuration
Options for Non-IETF RADIUS Attributes, page 3-17. A VSA applied as an
authorization to a particular group persists, even when you remove or replace the
associated AAA client; however, if you have no AAA clients of this (vendor) type
configured, the VSA settings do not appear in the group configuration interface.
To configure and enable Nortel RADIUS attributes to be applied as an
authorization for each user in the current group, follow these steps:
Step 1 Confirm that your IETF RADIUS attributes are configured properly.
For more information about setting IETF RADIUS attributes, see Configuring
IETF RADIUS Settings for a User Group, page 6-38.