6-37
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter6 Setting Up and Managing User Groups Configuration-specific User Group Settings
Configuring Ascend RADIUS Settings for a User Group
The Ascend RADIUS parameters appear only when both the following are true:
A AAA client has been configured to use RADIUS (Ascend) or RADIUS
(Cisco IOS/PIX) in Network Configuration.
Group-level RADIUS (Ascend) attributes have been enabled in Interface
Configuration: RADIUS (Ascend).
Ascend RADIUS represents only the Ascend proprietary attributes. You must
configure both the IETF RADIUS and Ascend RADIUS attributes. Proprietary
attributes override IETF attributes.
The default attribute setting displayed for RADIUS is Ascend-Remote-Addr.
Note To hide or display Ascend RADIUS attributes, see the Setting Protocol
Configuration Options for RADIUS (Ascend) section on page3-14.
To configure and enable Ascend RADIUS attributes to be applied as an
authorization for each user in the current group, follow these steps:
Step 1 Confirm that your IETF RADIUS attributes are configured properly. For more
information about setting IETF RADIUS attributes, see the Configuring IETF
RADIUS Settings for a User Group section on page 6-34.
Step 2 In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 3 From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 4 From the Jump To list at the top of the page, choose RADIUS (Ascend).
Step 5 In the Ascend RADIUS Attributes table, determine the attributes to be authorized
for the group by selecting the check box next to the attribute. Be sure to further
define the authorization for that attribute in the field next to it. For more
information about attributes, see Appendix D, RADIUS Attributes, or your
AAA client documentation.