
Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-40
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Note
To hide or display the Cisco Aironet RADIUS VSA, see
Setting Protocol
Configuration Options for Non-IETF RADIUS Attributes, page 3-16
. A VSA
applied as an authorization to a particular group persists, even when you remove
or replace the associated AAA client; however, if you have no AAA clients of this
(vendor) type configured, the VSA settings do not appear in the group
configuration interface.
To configure and enable the Cisco Aironet RADIUS attribute to be applied as an
authorization for each user in the current group, follow these steps:
Step 1
Confirm that your IETF RADIUS attributes are configured properly. For more
information about setting IETF RADIUS attributes, see
Configuring IETF
RADIUS Settings for a User Group, page 6-37
.
Step 2
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 3
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 4
From the Jump To list at the top of the page, choose RADIUS (Cisco Aironet).
Step 5
In the Cisco Aironet RADIUS Attributes table, select the [5842\001]
Cisco-Aironet-Session-Timeout check box.
Step 6
In the [5842\001] Cisco-Aironet-Session-Timeout box, type the session timeout
value (in seconds) that Cisco Secure ACS is to send in the IETF RADIUS
Session-Timeout (27) attribute when the AAA client is configured in Network
Configuration to use the RADIUS (Cisco Aironet) authentication option. The
recommended value is 600 seconds.
For more information about the IETF RADIUS Session-Timeout attribute, see
Appendix C, “RADIUS Attributes,”
or your AAA client documentation.
Step 7
To save the group settings you have just made, click Submit.
For more information, see
Saving Changes to User Group Settings, page 6-53
.
Step 8
To continue specifying other group settings, perform other procedures in this
chapter, as applicable.