Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-42
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Step 6
To save the group settings you have just made, click Submit.
For more information, see
Saving Changes to User Group Settings, page 6-53
.
Step 7
To continue specifying other group settings, perform other procedures in this
chapter, as applicable.
Configuring Cisco VPN 3000 Concentrator RADIUS Settings for a
User Group
The Cisco VPN 3000 Concentrator RADIUS attribute configurations appear only
if both the following are true:
•
A AAA client has been configured to use RADIUS (Cisco VPN 3000) in
Network Configuration.
•
Group-level RADIUS (Cisco VPN 3000) attributes have been enabled on the
RADIUS (Cisco VPN 3000) page of the Interface Configuration section.
Cisco VPN 3000 Concentrator RADIUS represents only the Cisco VPN 3000
Concentrator VSA. You must configure both the IETF RADIUS and Cisco VPN
3000 Concentrator RADIUS attributes.
Note
To hide or display Cisco VPN 3000 Concentrator RADIUS attributes, see
Setting
Protocol Configuration Options for Non-IETF RADIUS Attributes, page 3-16
. A
VSA applied as an authorization to a particular group persists, even when you
remove or replace the associated AAA client; however, if you have no AAA
clients of this (vendor) type configured, the VSA settings do not appear in the
group configuration interface.
To configure and enable Cisco VPN 3000 Concentrator RADIUS attributes to be
applied as an authorization for each user in the current group, follow these steps:
Step 1
Confirm that your IETF RADIUS attributes are configured properly.
For more information about setting IETF RADIUS attributes, see
Configuring
IETF RADIUS Settings for a User Group, page 6-37
.