7-49
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter7 Setting Up and Managing User Accounts Advanced User Authentication Settings
Step 3 In the BBSM RADIUS Attributes table, to specify the attributes that should be
authorized for the user, follow these steps:
a. Select the check box next to the particular attribute.
b. Further define the authorization for that attribute in the box next to it.
c. Continue to select and define attributes, as applicable.
For more information about attributes, see Appendix D, RADIUS
Attributes, or your AAA client documentation.
Step 4 Do one of the following:
a. If you are finished configuring the user account options, click Submit to
record the options.
b. To continue to specify the user account options, perform other procedures in
this chapter, as applicable.
Setting Custom RADIUS Attributes for a User
Custom RADIUS parameters appear only if all the following are true:
You have defined and configured the custom RADIUS VSAs. (For
information about creating user-defined RADIUS VSAs, see the
User-Defined RADIUS Vendors and VSA Sets section on page E-27.)
A AAA client has been configured in Network Configuration that uses a
RADIUS protocol that supports the custom VSA.
The Per-user TACACS+/RADIUS Attributes check box is selected under
Advanced Options in the Interface Configuration section.
User-level RADIUS (custom name) attributes you intend to apply have been
enabled under RADIUS (custom name) in the Interface Configuration
section.
You must configure both the IETF RADIUS and the custom RADIUS attributes.
Proprietary attributes override IETF attributes.