Appendix F RDBMS Synchronization Import Definitions
Action Codes
F-30
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
351
DEL_UDV
V1
Removes the vendor with the IETF code specified in V1
and any defined VSAs.
Note
Action code 351 does not remove any instances of
VSAs assigned to Cisco Secure ACS groups or
users. If Cisco Secure ACS has AAA clients
configured with the UDV specified in V1, the
delete operation fails.
352
ADD_VSA
VN, V1,
V2, V3
Adds a new VSA to the vendor specified by the vendor
IETF code in V1.
VN is the VSA name. If the vendor name is MyCo and the
attribute is assigned a group ID, we recommend prefixing
the vendor name or an abbreviation to all VSAs. For
example, VSAs could be “MyCo-Assigned-Group-Id”.
Note
VSA names must be unique to both the vendor
and to the Cisco Secure ACS dictionary. For
example, “MyCo-Framed-IP-Address” is allowed
but “Framed-IP-Address” is not, because
“Framed-IP-Address” is used by IETF action
code 8 in the RADIUS attributes.
V2 is the VSA number. This must be in the 0-255 range.
V3 is the VSA type as one of following values:
•
INTEGER
•
STRING
•
IPADDR
By default, VSAs are assumed to be outbound (or
authorization) attributes. If the VSA is either
multi-instance or used in accounting messages, use
SET_VSA_PROFILE (Action code 353).
Table F-6
Action Codes for Modifying Network Configuration (continued)
Action
Code
Name
Required
Description