Chapter7 Se tting Up and Managing User Accounts
Advanced User Authentication Settings
7-38
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
To configure IETF RADIUS attribute settings to be appl ied as an authorization for
the current user, follow these steps:
Step 1 Perform Steps 1 through 3 of the “Adding a Basic User Account” section on
page 7-5.
Result: The User Setup Edit page opens. The username being added or edited
appears at the top of the page.
Step 2 In the IETF RADIUS table, for each attribute that you need to authorize for the
current user, select the check box next to the attribute and then further define the
authorization for the attribute in the box or boxes next to it, as applicable.
Step 3 Do one of the following:
a. If you are finished configuring the user account options, click Submit to
record the options.
b. To continue to specify the user account options, perform other procedures in
this chapter, as applicable.
Setting Cisco IOS/PIX RADIUS Parameters for a User The Cisco IOS RADIUS parameters appear only if all the following are true:
•A AAA client has been configured to use RADIUS (Cisco IOS/PIX) in
Network Configuration.
•The Per-user TACACS+/RADIUS Attributes check box is selected under
Advanced Options in the Interface Configuration section.
•User-level RADIUS (Cisco IOS/PIX) attributes have been enabled under
RADIUS (Cisco IOS/PIX) in the Interface Configuration section.
Cisco IOS RADIUS represents only the Cisco IOS VSAs. You must configure
both the IETF RADIUS and Cisco IOS RADIUS attributes.