7-31
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Chapter 7 Setting Up and Managing User Accounts
Advanced User Authentication Settings
To specify device-management application command authorization for a user,
follow these steps:
Step 1
Perform Step 1 through Step 3 of
Adding a Basic User Account, page 7-5
.
Result: The User Setup Edit page opens. The username being added or edited is
at the top of the page.
Step 2
Scroll down to the Settings table and to the applicable
device-management command authorization feature area within it.
Step 3
To prevent the application of any command authorization for actions performed
in the applicable device-management application, select (or accept the default of)
the None option.
Step 4
To assign command authorization for the applicable device-management
application at the group level, select the As Group option.
Step 5
To assign a particular command authorization set that affects device-management
application actions on any network device, follow these steps:
a.
Select the Assign a device-management application for any network device
option.
b.
Then, from the list directly below that option, select the command
authorization set you want applied to this user.
Step 6
To create associations that assign a particular command authorization set that
affects device-management application actions on a particular NDG, for each
association, follow these steps:
a.
Select the Assign a device-management application on a per Network Device
Group Basis option.
b.
Select a Device Group and an associated device-management application.
c.
Click Add Association.
Result: The associated NDG and command authorization set appear in the
table.