6-31
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
Step 6
To save the group settings you have just made, click Submit.
For more information, see
Saving Changes to User Group Settings, page 6-53
.
Step 7
To continue specifying other group settings, perform other procedures in this
chapter, as applicable.
Configuring a Shell Command Authorization Set for a User Group
Use this procedure to specify the shell command authorization set parameters for
a group. There are four options:
•
None—No authorization for shell commands.
•
Assign a Shell Command Authorization Set for any network device—One
shell command authorization set is assigned, and it applies to all network
devices.
•
Assign a Shell Command Authorization Set on a per Network Device
Group Basis—Enables you to associate particular shell command
authorization sets to be effective on particular NDGs.
•
Per Group Command Authorization—Enables you to permit or deny
specific Cisco IOS commands and arguments at the group level.
Note
This feature requires that you have previously configured a shell command
authorization set. For detailed steps, see
Command Authorization Sets
Configuration, page 5-16
.
To specify shell command authorization set parameters for a user group, follow
these steps:
Step 1
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.