2.Fill in the user name and password fields, and click Grant All to give all configuration rights to the administrator. If desired, an administrator’s privileges can be limited to individual groups and components in order to have separate administrators for different parts of the network and network policies.

Click Submit to complete the process.

Figure 7-5 Administration privileges

Cisco Secure ACS certificate setup

ACS should be configured with a digital certificate for establishing client trust when challenging the client for its credentials. Cisco Secure ACS uses the X.509 v3 digital certificate standard. Certificate files must be in Base64-encoded X.509 format or Distinguished Encoding Rules (DER)-encoded binary X.509 format. Also, Cisco Secure ACS supports manual certificate enrollment and provides the means for managing a certificate trust list (CTL) and certificate revocation lists (CRL). You must complete a certificate installation process and restart Cisco Secure ACS before beginning the PEAP configuration.

Chapter 7. Network enforcement subsystem implementation

219

Page 237
Image 237
IBM Tivoli and Cisco manual Cisco Secure ACS certificate setup, 219