Cisco Systems 3.3 Server User Manual


 
13-57
User Guide for Cisco Secure ACS for Windows Server
78-16592-01
Chapter 13 User Databases
ODBC Database
EAP-TLS Authentication Procedure Input, page 13-67
EAP-TLS Procedure Output, page 13-68
Result Codes, page 13-69
Configuring a System Data Source Name for an ODBC External User
Database, page 13-70
Configuring an ODBC External User Database, page 13-71
What is Supported with ODBC User Databases
Cisco Secure ACS supports the use of ODBC external user databases for the
following features:
Authentication—Cisco Secure ACS supports ASCII, PAP, ARAP, CHAP,
MS-CHAP (versions 1 and 2), LEAP, EAP-TLS, EAP-MD5,
PEAP(EAP-GTC), and EAP-FAST (phase zero and phase two) authentication
using a relational database via the ODBC authenticator feature. Other
authentication protocols are not supported with ODBC external user
databases.
Note Authentication protocols not supported with ODBC external user
databases may be supported by another type of external user database.
For more information about authentication protocols and the external
database types that support them, see Authentication
Protocol-Database Compatibility, page 1-10.
Group Specification—Cisco Secure ACS supports group assignment for
users authenticated by an ODBC user database. Authentication queries to the
ODBC database must contain the group number you want to assign a user to.
For unknown users authenticated by an ODBC user database, group
specification overrides group mapping.
For more information about expected query output, see PAP Procedure
Output, page 13-65, CHAP/MS-CHAP/ARAP Procedure Output,
page 13-66, and EAP-TLS Procedure Output, page 13-68.