12-21
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Chapter12 Administering External User Databases Database Group Mappings
Step 8 Repeat Step 7 until the group mappings are in the order you need.
Step 9 Click Submit.
Result: The Group Mappings for database page displays the group set mappings
in the order you defined.
RADIUS-Based Group Specification
For some types of external user databases, Cisco Secure ACS supports the
assignment of users to specific Cisco Secure ACS groups based upon the
RADIUS authentication response from the external user database. This is
provided in addition to the unknown user group mapping described in the Group
Mapping by External User Database section on page 12-10. RADIUS-based
group specification overrides group mapping. The database types that support
RADIUS-based group specification are as follows:
LEAP Proxy RADIUS server
CRYPTOCard token server
ActivCard token server
Vasco token server
RADIUS token server
Cisco Secure ACS supports per-user group mapping for users authenticated with
a LEAP Proxy RADIUS Server database. This is provided in addition to the
default group mapping described in the Group Mapping by External User
Database section on page 12-10.