Cisco Systems Servers Server User Manual


 
7-41
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter 7 Setting Up and Managing User Accounts
Advanced User Authentication Settings
Setting Cisco VPN 3000 Concentrator RADIUS Parameters for a User
The Cisco VPN 3000 Concentrator RADIUS attribute configurations appear only
if all the following are true:
A AAA client has been configured to use RADIUS (Cisco VPN 3000) in
Network Configuration.
The Per-user TACACS+/RADIUS Attributes check box is selected under
Advanced Options in the Interface Configuration section.
User-level RADIUS (Cisco VPN 3000) attributes you intend to employ have
been enabled under RADIUS (Cisco VPN 3000) in the Interface
Configuration section.
Cisco VPN 3000 Concentrator RADIUS represents only the Cisco VPN 3000
Concentrator VSA. You must configure both the IETF RADIUS and Cisco VPN
3000 Concentrator RADIUS attributes.
Note To hide or display Cisco VPN 3000 Concentrator RADIUS attributes, see the
Setting Protocol Configuration Options for RADIUS (Cisco VPN 3000)
section on page 3-15.
To configure and enable Cisco VPN 3000 Concentrator RADIUS attributes to be
applied as an authorization for the current user, follow these steps:
Step 1 Perform Steps 1 through 3 of the Adding a Basic User Account section on
page 7-5.
Result: The User Setup Edit page opens. The username being added or edited
appears at the top of the page.
Step 2 Before configuring Cisco VPN 3000 Concentrator RADIUS attributes, be sure
your IETF RADIUS attributes are configured properly.
For more information about setting IETF RADIUS attributes, see the Setting
IETF RADIUS Parameters for a User section on page 7-37.