Cisco Systems Servers Server User Manual


 
6-29
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
To configure TACACS+ settings for a user group, follow these steps:
Step 1 In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2 From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 3 From the Jump To list at the top of the page, choose TACACS+.
Result: The system displays the TACACS+ Settings table section.
Step 4 To configure services and protocols in the TACACS+ Settings table to be
authorized for the group, follow these steps:
a. Select the check box next to the service/protocol (for example, PPP IP).
b. Under each service/protocol that you selected in the previous step, select
attributes and then type in the corresponding values, as applicable, to further
define authorization for that service/protocol.
For more information about attributes, see Appendix C, TACACS+
Attribute-Value Pairs, or your AAA client documentation.
Tip For access control lists (ACLs) and IP address pools, the name of the ACL or
pool as defined on the AAA client should be entered. (An ACL is a list of
Cisco IOS commands used to restrict access to or from other devices and users
on the network.)
Note Leave the box blank if the default (as defined on the AAA client)
should be used.
Note You can define and download an ACL. Click Interface
Configuration, click TACACS+ (Cisco IOS), and then select
Display a window for each service selected in which you can
enter customized TACACS+ attributes. A box opens under each
service/protocol in which you can define an ACL.