Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-24
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
•
Verify that you have configured your password validation options. For more
information, see
Local Password Management, page 8-5
.
•
Set up your AAA client to use Cisco IOS Release 11.2.7 or later and to send
a watchdog accounting packet (aaa accounting new-info update) with the IP
address of the calling station.
To set password aging rules for a user group, follow these steps:
Step 1
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 3
From the Jump To list at the top of the page, choose Password Aging.
Result: The Password Aging Rules table appears.
Step 4
To set password aging by date, select the Apply age-by-date rules check box and
type the number of days for the following options, as applicable:
•
Active period
•
Warning period
•
Grace period
Note
Up to 5 characters are allowed in each field.
Step 5
To set password aging by use, select the Apply age-by-uses rules check box and
type the number of logins for each of the following options, as applicable:
•
Issue warning after x logins
•
Require change after x logins
Note
Up to 5 characters are allowed in each field.
Step 6
To force the user to change the password on the first login after an administrator
has changed it, select the Apply password change rule check box.
Step 7
To enable a Greetings message display, select the Generate greetings for
successful logins check box.