Cisco Systems OL-25111-01 manual Changing the AAA Mode to ACS in Common Services

Page 66

Appendix C Security Configuration with Cisco Secure ACS

Changing the AAA Mode to ACS in Common Services

For details about how to perform each of the previous tasks, see the Common Services online help.

Changing the AAA Mode to ACS in Common Services

Before you perform this procedure, complete the tasks in Configuring the System Identity User in Common Services, page C-3and Setting Up the Cisco Secure ACS Server, page C-3.

Step 1 Select Administration > Server Administration (Common Services) > Security > AAA Mode Setup. The AAA Mode Setup page appears.

Step 2 Next to Select a Type, select the ACS radio button. The page refreshes, displaying appropriate options. Step 3 Under Server Details, enter an IP address for the Cisco Secure ACS server and enter a port.

Step 4 Under Login, enter:

ACS Admin Name—Enter the name of the administrator you created in step 1. (See Setting Up the Cisco Secure ACS Server, page C-3.)

ACS Admin Password—Enter the password for the administrator you created in step 1. (See Setting Up the Cisco Secure ACS Server, page C-3.)

ACS Shared Secret Key— Enter the shared secret you entered when you added the Service Monitor server to Cisco Secure ACS as a AAA client in step 2. (See Setting Up the Cisco Secure ACS Server, page C-3.)

Step 5 Decide whether to select Register all installed applications with ACS.

Note If Service Monitor is registered with ACS and you register it again, you lose any custom roles that were previously configured in Cisco Secure ACS for Service Monitor. The same is true for Common Services. (To selectively register an application, see Registering an Application to Cisco Secure ACS from the Command Line, page C-5.)

Step 6 Select the appropriate radio button (HTTP or HTTPS) under Current ACS Administrative Access Protocol.

Step 7 Click Apply to complete the mode change. An ACS verification status message is displayed; do one of the following:

Click OK—Registers Service Monitor and Common Services tasks and users to ACS; overwrites any existing custom roles for Service Monitor and Common Services.

Click Cancel—Prevents registration to ACS from occurring.

Installation Guide for Cisco Unified Service Monitor

 

C-4

OL-25111-01

 

 

 

Image 66
Contents Installation Guide for Cisco Unified Service Monitor Americas HeadquartersPage N T E N T S Common Services Database Password A-9 Licensing Process B-3 OL-25111-01 Audience ConventionsConvention Product Documentation Related DocumentationObtaining Documentation and Submitting a Service Request Preface Installation Guide for Cisco Unified Service Monitor Prerequisites Product OverviewServer and Client System Requirements Server RequirementsGuidelines, Description Specifications Configuration Notes,LAN Settings Client RequirementsVMware Guidelines Component Minimum RequirementPrerequisites Server and Client System Requirements Windows 2003 /Windows Server Features Enabling and Disabling Fips on a Windows ServerProtocol Port Number Service Name Port UsagePort Protocol Number Service Name 50001 SOAPMonitorOL-25111-01 Installing, Uninstalling, and Upgrading Service Monitor Preparing to Install Service MonitorPreparing the Server Gathering Information to Provide During Installation NTP Configuration NotesEnsuring That Required Ports Are Free Installing Cisco Unified Service Monitor Page For more information, see NTP Configuration Notes, Starting Cisco Unified Service Monitor Preparing to Upgrade to Service MonitorUpgrade Paths Backing Up Service Monitor Files and DatabaseUnderstanding the Effect an Upgrade Has on Your Data Deleting Cisco 1040 Configuration Files from Tftp Servers Preventing Extra Processing After UpgradeUpgrading to Service Monitor Configuring NTPUpgrading to Service Monitor 8.6 from 8.0 OL-25111-01 Adding Service Monitor to Unified Communications Manager Performing Post-Upgrade Configuration for Cisco 1040s Sample Cisco 1040 Sensor Configuration Files Default 1040 Sensor Configuration File-QOVDefault.CNFUninstalling and Reinstalling Service Monitor Uninstalling Service MonitorUninstalling Service Monitor, Reinstalling Service Monitor, Reinstalling Service Monitor Configuring Your System for Snmp Queries OL-25111-01 Configuring Security Configuring Users ACS and Local RbacConfiguring Security, Configuring Service Monitor, Enabling SSL Between the Browser and the Server Https//servernamehttps portConfiguring Service Monitor OL-25111-01 Password Information User Inputs for Typical InstallationSettings Value Passwords, see Password InformationUser Inputs for Custom Installation Fixing Problems That Can Occur After You Change PasswordsA-7 Admin and guest On passwords, see Password InformationOccur After You Change Passwords, page A-7 Existing passwords, leave the fields blank Settings Value Fixing Problems That Can Occur After You Change Passwords Password InformationPassword Rules for a New Installation Password Changed Potential Problem WorkaroundPassword Rules for an Upgrade Installation Password Rules for ReinstallationPassword Descriptions Changing Passwords Common Services Guest PasswordChanging the casuser Password Installation Guide for Cisco Unified Service Monitor OL-25111-01 Licensing Overview, page B-1 Licensing Process, page B-3 Licensing OverviewVerifying License Status ColumnLicensing Scenarios Column DescriptionScenario What to Do Documentation and Submitting a Service Request Licensing ProcessLicensing Messages Registering a License File with Service Monitor Obtaining a PAKObtaining a License File Table B-2 License Registration Result OL-25111-01 Security Configuration with Cisco Secure ACS Service Monitor Integration NotesCisco Secure ACS Support Common Services Local Login Module Authentication Roles Role DescriptionSetting Up the Cisco Secure ACS Server Configuring the System Identity User in Common ServicesChanging the AAA Mode to ACS in Common Services Assigning Roles to Users and User Groups in Cisco Secure ACS Installation Guide for Cisco Unified Service Monitor D E IN-2 IN-3 IN-4

OL-25111-01 specifications

Cisco Systems OL-25111-01 is a comprehensive online training course designed to enhance the knowledge and skills of IT professionals in managing Cisco networking environments. This course covers a wide array of topics that are essential for anyone aiming to achieve proficiency in Cisco technologies and solutions.

One of the main features of the OL-25111-01 course is its structured curriculum, which is tailored to provide a step-by-step learning experience. It delves into crucial aspects such as Cisco architecture, access control lists (ACLs), and the fundamentals of routing and switching. These foundational elements form the backbone of Cisco networking and are vital for configuring and managing network devices effectively.

The course places a significant emphasis on hands-on experience through virtual labs, allowing participants to practice real-world networking scenarios. This practical approach is invaluable for reinforcing theoretical knowledge and preparing students for real-world challenges. Moreover, the course offers guidance on troubleshooting, ensuring that learners are equipped to identify and resolve network issues proficiently.

Another notable aspect of OL-25111-01 is its focus on Cisco's latest technologies. This includes insights into Software-Defined Networking (SDN), network automation, and security measures that are essential in today’s cyber landscape. By integrating modern technologies into the curriculum, Cisco ensures that participants remain competitive in an ever-evolving industry.

The training also incorporates an interactive format, featuring quizzes and assessments that help reinforce learning. Feedback mechanisms are built into the course, allowing participants to identify areas for improvement and solidify their understanding of complex concepts. This adaptive learning environment facilitates a deeper comprehension of Cisco's networking principles.

Furthermore, Cisco Systems OL-25111-01 is aligned with industry certification programs, making it an excellent preparatory tool for professionals seeking to obtain Cisco certifications. The course is designed to enhance career advancement opportunities by providing the requisite knowledge and skills that employers seek.

In summary, Cisco Systems OL-25111-01 is an essential training resource for IT professionals aiming to excel in Cisco networking. With its comprehensive curriculum, practical labs, focus on modern technologies, and alignment with certification programs, this course equips learners with the tools they need to succeed in a competitive job market. Whether you are a seasoned IT professional or a newcomer to the field, this course serves as a valuable stepping stone in your networking career.