Chapter26 Authentication, Authorization, and Accounting
AAA Servers and Groups
26-24
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08

Enable/Disable AAA

AAA is enabled by default. If you click Disable, SDM displays a message telling
you that it will make configuration changes to ensure that the router can be
accessed. Disabling AAA will prevent you from configuring your router as an
Easy VPN server, and will prevent you from associating user accounts with
command line interface (CLI) views.

AAA Servers and Groups

This read-only field displays a count of the AAA servers and server groups. Th e
router relays authentication, authorization, and accounting req uests to AAA
servers. AAA servers are organized into groups to provide the router with
alternate servers to contact if the first server contacted is not available.

Authentication Policies

This read-only field lists configured authentication policies. Authentication
policies define how users are identified. To edit authentication policies, click the
Login sub-node under Authentication Policies in the AAA tree.

Authorization Policies

This read-only field lists configured authorization policies. Authorization policies
define the methods that are used to permit or deny a user login. To edit
authorization policies, click Authorization Policies in the AAA tree.
To edit authorization policies (Exec Authorization and Network Authorization),
click the Exec and Network sub-nodes respectively under the Authorization
Policies node in the AAA tree.
AAA Servers and Groups
This window provides a description of AAA servers and AAA server groups.