Chapter6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-44
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Configuring Juniper RADIUS Settings for a User Group
Juniper RADIUS represents only the Juniper VSAs. You must configure both the
IETF RADIUS and Juniper RADIUS attributes.
Note To hide or display Juniper RADIUS attributes, see the Setting Protocol
Configuration Options for RADIUS (Juniper) section on page 3-19.
To configure and enable Juniper RADIUS attributes to be applied as an
authorization for each user in the current group, follow these steps:
Step 1 Confirm that your IETF RADIUS attributes are configured properly.
For more information about setting IETF RADIUS attributes, see the
Configuring IETF RADIUS Settings for a User Group section on page 6-34.
Step 2 In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 3 From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 4 From the Jump To list at the top of the page, choose RADIUS (Juniper).
Step 5 In the Juniper RADIUS Attributes table, specify the attributes to be authorized for
the group by selecting the check box next to the attribute. Where applicable,
further define the authorization for that attribute in the field next to it. For more
information about attributes, see Appendix D, RADIUS Attributes, or the
documentation for network devices using RADIUS.
Note The MS-CHAP-MPPE-Keys attribute value is generated by
Cisco Secure ACS; there is no value to set in the HTML interface.